服务器安装的是apache
网站是用ThinkPHP框架开发的,自带的验证码图片
会员注册页面,用到了验证码,html页面:
注册时,程序判断验证码图片的代码:
if($_SESSION['verify'] != md5($_POST['verify']))
exit('验证码错误!');
程序应该是没有问题的,因为我在本机测试和服务器上测试是正常的
可是今天有个人说注册时,明明验证码输入是对的,结果提示:验证码错误!
他说用IE和FF浏览器都不行……
我自己上去测试注册了新会员可以,其他也有其他人注册会员,同样成功。
不知道像我这种情况,是哪里出了问题?
我怀疑是不是web环境:apache+php出了问题?
回复讨论(解决方案)
个别人不可以
说明问题跟客户端有关,或者全在客户端
个别人不可以
说明问题跟客户端有关,或者全在客户端
嗯,不过这位朋友换了台电脑注册,还是说验证码错误。
奇怪,会不会是客户端那边的网络问题?导致验证码图片显示出来的和真实的不一样
加一句
if(isset($_SESSION['verify']) && $_SESSION['verify']!=NULL && $_SESSION['verify']!=''){
//继续判断verify值是否相等;
}else{
echo 'session[verify]值不存在 或为空,检查服务器的session功能是否正常';
}
加一句
if(isset($_SESSION['verify']) && $_SESSION['verify']!=NULL && $_SESSION['verify']!=''){
//继续判断verify值是否相等;
}else{
echo 'session[verify]值不存在 或为空,检查服务器的session功能是否正常';
}
嗯,这个方法不错,我试下。
如果SESSION['verify']值不存在或者为空的话,就应该可以判断是服务器的问题了吧
他的浏览器设置问题。
加一句
if(isset($_SESSION['verify']) && $_SESSION['verify']!=NULL && $_SESSION['verify']!=''){
//继续判断verify值是否相等;
}else{
echo 'session[verify]值不存在 或为空,检查服务器的session功能是否正常';
}
果然,有个朋友登录提示“session[verify]值不存在 或为空,检查服务器的session功能是否正常”
难道真的是服务器这端出了问题?
服务器安装的是apache
网站是用ThinkPHP框架开发的,自带的验证码图片
会员注册页面,用到了验证码,html页面:
注册时,程序判断验证码图片的代……
楼主可以了解下无法正确操作用户的浏览器是否有禁用COOKIE等情况
楼主可以了解下无法正确操作用户的浏览器是否有禁用COOKIE等情况
我看到有人说“PHP里边cookie和session没有必然关系”
那我现在的情况,应该是web环境问题了?如果真是这样,我打算换个环境
火狐中正常,其他浏览器都是表现为session未定义,

PHPidentifiesauser'ssessionusingsessioncookiesandsessionIDs.1)Whensession_start()iscalled,PHPgeneratesauniquesessionIDstoredinacookienamedPHPSESSIDontheuser'sbrowser.2)ThisIDallowsPHPtoretrievesessiondatafromtheserver.

The security of PHP sessions can be achieved through the following measures: 1. Use session_regenerate_id() to regenerate the session ID when the user logs in or is an important operation. 2. Encrypt the transmission session ID through the HTTPS protocol. 3. Use session_save_path() to specify the secure directory to store session data and set permissions correctly.

PHPsessionfilesarestoredinthedirectoryspecifiedbysession.save_path,typically/tmponUnix-likesystemsorC:\Windows\TemponWindows.Tocustomizethis:1)Usesession_save_path()tosetacustomdirectory,ensuringit'swritable;2)Verifythecustomdirectoryexistsandiswrita

ToretrievedatafromaPHPsession,startthesessionwithsession_start()andaccessvariablesinthe$_SESSIONarray.Forexample:1)Startthesession:session_start().2)Retrievedata:$username=$_SESSION['username'];echo"Welcome,".$username;.Sessionsareserver-si

The steps to build an efficient shopping cart system using sessions include: 1) Understand the definition and function of the session. The session is a server-side storage mechanism used to maintain user status across requests; 2) Implement basic session management, such as adding products to the shopping cart; 3) Expand to advanced usage, supporting product quantity management and deletion; 4) Optimize performance and security, by persisting session data and using secure session identifiers.

The article explains how to create, implement, and use interfaces in PHP, focusing on their benefits for code organization and maintainability.

The article discusses the differences between crypt() and password_hash() in PHP for password hashing, focusing on their implementation, security, and suitability for modern web applications.

Article discusses preventing Cross-Site Scripting (XSS) in PHP through input validation, output encoding, and using tools like OWASP ESAPI and HTML Purifier.


Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

VSCode Windows 64-bit Download
A free and powerful IDE editor launched by Microsoft

DVWA
Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is very vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, to help web developers better understand the process of securing web applications, and to help teachers/students teach/learn in a classroom environment Web application security. The goal of DVWA is to practice some of the most common web vulnerabilities through a simple and straightforward interface, with varying degrees of difficulty. Please note that this software

Atom editor mac version download
The most popular open source editor

Notepad++7.3.1
Easy-to-use and free code editor

SublimeText3 English version
Recommended: Win version, supports code prompts!
