国内流行的内容管理系统(CMS)多端全媒体解决方案 https://www.dedebiz.com
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

288 lines
10KB

  1. <?php
  2. /**
  3. * @version $id:common.inc.php 3 17:44 2010-11-23 tianya $
  4. * @package DedeBIZ.Libraries
  5. * @copyright Copyright (c) 2022 DedeBIZ.COM
  6. * @license https://www.dedebiz.com/license
  7. * @link https://www.dedebiz.com
  8. */
  9. //系统默认运行模式为安全模式,模板管理、标签管理、数据库管理、模块管理等功能已暂停,如果您需要这些功能,DEDEBIZ_SAFE_MODE后面值`TRUE`改为`FALSE`恢复使用
  10. define('DEDEBIZ_SAFE_MODE', TRUE);
  11. //生产环境使用`production`,如果采用`dev`模式,会有一些php的报错信息提示,用于开发调试
  12. if (!defined('DEDE_ENVIRONMENT')) {
  13. define('DEDE_ENVIRONMENT', 'production');
  14. }
  15. if (!defined('DEBUG_LEVEL')) {
  16. if (DEDE_ENVIRONMENT == 'production') {
  17. define('DEBUG_LEVEL', FALSE);
  18. } else {
  19. define('DEBUG_LEVEL', TRUE);
  20. }
  21. }
  22. if (DEDE_ENVIRONMENT == 'production') {
  23. ini_set('display_errors', 0);
  24. if (version_compare(PHP_VERSION, '5.3', '>='))
  25. {
  26. error_reporting(E_ALL & ~E_NOTICE & ~E_DEPRECATED & ~E_STRICT & ~E_USER_NOTICE & ~E_USER_DEPRECATED);
  27. } else {
  28. error_reporting(E_ALL & ~E_NOTICE & ~E_STRICT & ~E_USER_NOTICE);
  29. }
  30. } else {
  31. error_reporting(-1);
  32. ini_set('display_errors', 1);
  33. }
  34. define('DEDEINC', str_replace("\\", '/', dirname(__FILE__)));
  35. define('DEDEROOT', str_replace("\\", '/', substr(DEDEINC, 0, -6))); //站点根目录
  36. define('DEDEDATA', substr(DEDEINC, 0, -6).'data');
  37. define('DEDESTATIC', DEDEROOT.'/static');
  38. define('DEDEMEMBER', DEDEROOT.'/user');
  39. define('DEDETEMPLATE', DEDEROOT.'/theme');
  40. define('DEDEBIZURL', "https://www.dedebiz.com");//DedeBiz商业支持
  41. define('DEDEBIZCDN', "https://cdn.dedebiz.com");//DedeBizCDN镜像
  42. define('DEDEVER', 6);//当前系统大版本
  43. define('DEDEPUB', '
  44. -----BEGIN PUBLIC KEY-----
  45. MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAvupO2Lixns34bBqwTzK0
  46. 9wA9sfGBdgc03zh1sUacieJBikx08e7xmkJbMF81jb/YfNGW/+iJ3qHULdc9Dtd3
  47. +FsnHG+tUDnzjkPnVVmnrjucQqfHRRVKKAgXOWxtuRKUVF3NDjiJtDAf5Y2BMAhw
  48. oqzeepye5I4mWyO4A8/V2ougO+xDK426MIf1dq+W59NVZj8k+zeZrbPh7+fPFw4u
  49. PwAMpkTJJ9nwNOO6saH2eMGaQ3oxZIQ+SmminDB8miI/+hwIn2hNmaHFuur0OGlB
  50. NQabUzX9JoYtXqPcpZRT7ymHrppU0KFdUSEJiW0utTWJo0HrDOBIT5qWlM0MP9p/
  51. PwIDAQAB
  52. -----END PUBLIC KEY-----
  53. '); //DedeBIZ系统公钥
  54. define('DEDECDNURL', 'https://cdn.dedebiz.com');//默认静态资源地址
  55. if (version_compare(PHP_VERSION, '5.4.0', '>=')) {
  56. if (!function_exists('session_register')) {
  57. function session_register()
  58. {
  59. $args = func_get_args();
  60. foreach ($args as $key) {
  61. $_SESSION[$key] = $GLOBALS[$key];
  62. }
  63. }
  64. function session_is_registered($key)
  65. {
  66. return isset($_SESSION[$key]);
  67. }
  68. function session_unregister($key)
  69. {
  70. unset($_SESSION[$key]);
  71. }
  72. }
  73. }
  74. //是否启用mb_substr替换cn_substr来提高效率
  75. $cfg_is_mb = $cfg_is_iconv = FALSE;
  76. if (function_exists('mb_substr')) $cfg_is_mb = TRUE;
  77. if (function_exists('iconv_substr')) $cfg_is_iconv = TRUE;
  78. function _RunMagicQuotes(&$svar)
  79. {
  80. if (is_array($svar)) {
  81. foreach ($svar as $_k => $_v) {
  82. if ($_k == 'nvarname') continue;
  83. _RunMagicQuotes($_k);
  84. $svar[$_k] = _RunMagicQuotes($_v);
  85. }
  86. } else {
  87. if (strlen($svar) > 0 && preg_match('#^(cfg_|GLOBALS|_GET|_REQUEST|_POST|_COOKIE|_SESSION)#', $svar)) {
  88. exit('The requested operation is forbidden');
  89. }
  90. $svar = addslashes($svar);
  91. }
  92. return $svar;
  93. }
  94. foreach (array('_GET', '_POST', '_COOKIE') as $_req) {
  95. foreach ($$_req as $_k => $_v) {
  96. if (preg_match('#^(cfg_|GLOBALS|_GET|_REQUEST|_POST|_COOKIE|_SESSION)#', $_k)) {
  97. exit('The requested operation is forbidden');
  98. }
  99. if ($_k == 'nvarname') ${$_k} = $_v;
  100. else ${$_k} = _RunMagicQuotes($_v);
  101. }
  102. }
  103. //系统相关变量检测
  104. if (!isset($needFilter)) {
  105. $needFilter = false;
  106. }
  107. $registerGlobals = @ini_get("register_globals");
  108. $isUrlOpen = @ini_get("allow_url_fopen");
  109. $isSafeMode = @ini_get("safe_mode");
  110. if (preg_match('/windows/i', @getenv('OS'))) {
  111. $isSafeMode = false;
  112. }
  113. //系统配置参数
  114. if (!file_exists(DEDEDATA."/config.cache.inc.php")) {
  115. die('DedeBIZ初始化失败,确保系统正确被安装');
  116. }
  117. require_once(DEDEDATA."/config.cache.inc.php");
  118. //Session保存路径
  119. $sessSaveHandler = @ini_get("session.save_handler");
  120. if ($sessSaveHandler !== "files") {
  121. @ini_set("session.save_handler", "files");
  122. }
  123. $enkey = substr(md5(substr($cfg_cookie_encode, 0, 5)), 0, 10);
  124. $sessSavePath = DEDEDATA."/sessions_{$enkey}";
  125. if (!is_dir($sessSavePath)) mkdir($sessSavePath);
  126. if (is_writeable($sessSavePath) && is_readable($sessSavePath)) {
  127. @session_save_path($sessSavePath);
  128. }
  129. //转换上传的文件相关的变量及安全处理,并引用前台通用的上传函数
  130. if ($_FILES) {
  131. require_once(DEDEINC.'/uploadsafe.inc.php');
  132. }
  133. //数据库配置文件
  134. require_once(DEDEDATA.'/common.inc.php');
  135. if (!isset($cfg_dbtype)) {
  136. $cfg_dbtype = 'mysql';
  137. }
  138. //Session跨域设置
  139. if (!empty($cfg_domain_cookie)) {
  140. @session_set_cookie_params(0, '/', $cfg_domain_cookie);
  141. }
  142. //php5.1版本以上时区设置,由于这个函数对于是php5.1以下版本并无意义,因此实际上的时间调用,应该用MyDate函数调用
  143. if (PHP_VERSION > '5.1') {
  144. $time51 = $cfg_cli_time * -1;
  145. @date_default_timezone_set('Etc/GMT'.$time51);
  146. }
  147. $cfg_isUrlOpen = @ini_get("allow_url_fopen");
  148. //会员浏览的网站host
  149. if (PHP_SAPI === 'cli') {
  150. $cfg_clihost = 'https://www.dedebiz.com';
  151. } else {
  152. $cfg_clihost = 'http://'.$_SERVER['HTTP_HOST'];
  153. }
  154. //站点根目录
  155. $cfg_basedir = preg_replace('#'.$cfg_cmspath.'\/system$#i', '', DEDEINC);
  156. if ($cfg_multi_site == 'Y') {
  157. $cfg_mainsite = $cfg_basehost;
  158. } else {
  159. $cfg_mainsite = '';
  160. }
  161. //模板存放目录
  162. $cfg_templets_dir = $cfg_cmspath.'/theme';
  163. $cfg_templeturl = $cfg_mainsite.$cfg_templets_dir;
  164. $cfg_templets_skin = empty($cfg_df_style) ? $cfg_mainsite.$cfg_templets_dir."/templets" : $cfg_mainsite.$cfg_templets_dir."/$cfg_df_style";
  165. //安装目录网址
  166. $cfg_cmsurl = $cfg_mainsite.$cfg_cmspath;
  167. //模块插件目录
  168. $cfg_plus_dir = $cfg_cmspath.'/apps';
  169. $cfg_phpurl = $cfg_mainsite.$cfg_plus_dir;
  170. $cfg_static_dir = $cfg_cmspath.'/static';
  171. $cfg_staticurl = $cfg_mainsite.$cfg_static_dir;
  172. $cfg_mobile_dir = $cfg_cmspath.'/m';
  173. $cfg_mobileurl = $cfg_mainsite.$cfg_mobile_dir;
  174. $cfg_data_dir = $cfg_cmspath.'/data';
  175. $cfg_dataurl = $cfg_mainsite.$cfg_data_dir;
  176. //会员会员目录
  177. $cfg_member_dir = $cfg_cmspath.'/user';
  178. $cfg_memberurl = $cfg_mainsite.$cfg_member_dir;
  179. //专题存放目录
  180. $cfg_special = $cfg_cmspath.'/a/special';
  181. $cfg_specialurl = $cfg_mainsite.$cfg_special;
  182. //附件目录
  183. $cfg_medias_dir = $cfg_cmspath.$cfg_medias_dir;
  184. $cfg_mediasurl = $cfg_mainsite.$cfg_medias_dir;
  185. //上传图片存放目录,建议按默认
  186. $cfg_image_dir = $cfg_medias_dir.'/allimg';
  187. //会员投稿图片存放目录
  188. $cfg_user_dir = $cfg_medias_dir.'/userup';
  189. //上传软件存放目录
  190. $cfg_soft_dir = $cfg_medias_dir.'/soft';
  191. //上传多媒体文件存放目录
  192. $cfg_other_medias = $cfg_medias_dir.'/media';
  193. //软件摘要信息,请不要删除,否则系统无法正确接收系统漏洞或升级信息
  194. $cfg_version = 'V6';
  195. $cfg_version_detail = '6.2.9';//详细版本号
  196. $cfg_soft_lang = 'utf-8';
  197. $cfg_soft_public = 'base';
  198. $cfg_softname = '得德系统';
  199. $cfg_soft_enname = 'DedeV6';
  200. $cfg_soft_devteam = 'DedeBIZ';
  201. //文档的默认命名规则
  202. $art_shortname = $cfg_df_ext = '.html';
  203. $cfg_df_namerule = '{typedir}/{aid}'.$cfg_df_ext;
  204. //新建目录的权限,如果您使用别的属性,本程不保证程序能顺利在Linux或Unix系统运行
  205. if (isset($cfg_ftp_mkdir) && $cfg_ftp_mkdir == 'Y') {
  206. $cfg_dir_purview = '0755';
  207. } else {
  208. $cfg_dir_purview = 0755;
  209. }
  210. //会员是否使用精简模式
  211. $cfg_mb_lit = 'N';
  212. //特殊全局变量
  213. $_sys_globals['curfile'] = '';
  214. $_sys_globals['typeid'] = 0;
  215. $_sys_globals['typename'] = '';
  216. $_sys_globals['aid'] = 0;
  217. if (empty($cfg_addon_savetype)) {
  218. $cfg_addon_savetype = 'Ymd';
  219. }
  220. if ($cfg_sendmail_bysmtp == 'Y' && !empty($cfg_smtp_usermail)) {
  221. $cfg_adminemail = $cfg_smtp_usermail;
  222. }
  223. //DedeBIZ商业化组件
  224. require_once(DEDEINC.'/libraries/dedebiz.class.php');
  225. //第三方SDKs
  226. require_once(DEDEINC.'/sdks/include.php');
  227. //对全局分页传递参数进行过滤
  228. if (isset($GLOBALS['PageNo'])) {
  229. $GLOBALS['PageNo'] = intval($GLOBALS['PageNo']);
  230. }
  231. if (isset($GLOBALS['TotalResult'])) {
  232. $GLOBALS['TotalResult'] = intval($GLOBALS['TotalResult']);
  233. }
  234. if (!isset($cfg_NotPrintHead)) {
  235. if (PHP_SAPI != 'cli') {
  236. if (defined('IS_DEDEAPI')) {
  237. header("Content-Type:text/json; charset={$cfg_soft_lang}");
  238. } else {
  239. header("Content-Type:text/html; charset={$cfg_soft_lang}");
  240. }
  241. }
  242. }
  243. //自动加载类库处理
  244. if (version_compare(PHP_VERSION, '7.2.0', '>=')) {
  245. require_once(DEDEINC.'/autoload7.inc.php');
  246. } else {
  247. require_once(DEDEINC.'/autoload.inc.php');
  248. }
  249. $cfg_biz_helpUrl = DEDEBIZURL."/help";
  250. $cfg_biz_gitUrl = DEDEBIZURL."/git";
  251. $cfg_biz_dedebizUrl = DEDEBIZURL;
  252. //引入数据库类
  253. if (!defined('MYSQL_BOTH')) {
  254. define('MYSQL_BOTH', MYSQLI_BOTH);
  255. }
  256. if (!defined('MYSQL_ASSOC')) {
  257. define('MYSQL_ASSOC', MYSQLI_ASSOC);
  258. }
  259. if (!defined('MYSQL_NUM')) {
  260. define('MYSQL_NUM', MYSQLI_NUM);
  261. }
  262. //全局常用函数
  263. require_once(DEDEINC.'/common.func.php');
  264. if ($GLOBALS['cfg_dbtype'] == 'mysql' || $GLOBALS['cfg_dbtype'] == 'mysqli') {
  265. require_once(DEDEINC.'/database/dedesqli.class.php');
  266. } else {
  267. require_once(DEDEINC.'/database/dedesqlite.class.php');
  268. }
  269. //载入助手配置,并对其进行默认初始化
  270. $cfg_helper_autoload = array(
  271. 'charset', /* 编码助手 */
  272. 'channelunit',/* 模型单元助手 */
  273. 'string', /* 字符串助手 */
  274. 'time', /* 日期助手 */
  275. 'file', /* 文件助手 */
  276. 'util', /* 单元助手 */
  277. 'validate', /* 数据验证助手 */
  278. 'filter', /* 过滤器助手 */
  279. 'cookie', /* cookies助手 */
  280. 'debug', /* 调试助手 */
  281. 'archive', /* 文档助手 */
  282. 'upload', /* 上传助手 */
  283. 'extend', /* 扩展助手 */
  284. 'code', /* 代码助手 */
  285. );
  286. //初始化助手
  287. helper($cfg_helper_autoload);
  288. ?>