separate config from proxy script
This commit is contained in:
@@ -0,0 +1,9 @@
|
|||||||
|
<?php
|
||||||
|
|
||||||
|
/*
|
||||||
|
* Place here any hosts for which we are to be a proxy -
|
||||||
|
* e.g. the host on which the J2EE APIs we'll be proxying are running
|
||||||
|
* */
|
||||||
|
$SETTING_ALLOWED_HOSTS = array(
|
||||||
|
'localhost','127.0.0.1', 'httpbin.org' # change to restrict list to only domains you wish to allow clients to call via this proxy
|
||||||
|
);
|
||||||
@@ -4,9 +4,10 @@
|
|||||||
* Place here any hosts for which we are to be a proxy -
|
* Place here any hosts for which we are to be a proxy -
|
||||||
* e.g. the host on which the J2EE APIs we'll be proxying are running
|
* e.g. the host on which the J2EE APIs we'll be proxying are running
|
||||||
* */
|
* */
|
||||||
$ALLOWED_HOSTS = array(
|
@require_once('config.php');
|
||||||
'localhost'
|
$ALLOWED_HOSTS = array();
|
||||||
);
|
if(isset($SETTING_ALLOWED_HOSTS))
|
||||||
|
$ALLOWED_HOSTS = $SETTING_ALLOWED_HOSTS; # Override with setting from config.php
|
||||||
|
|
||||||
/**
|
/**
|
||||||
* AJAX Cross Domain (PHP) Proxy 0.8
|
* AJAX Cross Domain (PHP) Proxy 0.8
|
||||||
@@ -114,7 +115,7 @@ if ( CSAJAX_FILTERS ) {
|
|||||||
$parsed = $p_request_url;
|
$parsed = $p_request_url;
|
||||||
if ( CSAJAX_FILTER_DOMAIN ) {
|
if ( CSAJAX_FILTER_DOMAIN ) {
|
||||||
if ( !in_array( $parsed['host'], $valid_requests ) ) {
|
if ( !in_array( $parsed['host'], $valid_requests ) ) {
|
||||||
csajax_debug_message( 'Invalid domain - ' . $parsed['host'] . ' does not included in valid requests' );
|
csajax_debug_message( 'Invalid domain - ' . $parsed['host'] . ' is not included in valid request domains' );
|
||||||
exit;
|
exit;
|
||||||
}
|
}
|
||||||
} else {
|
} else {
|
||||||
@@ -124,7 +125,7 @@ if ( CSAJAX_FILTERS ) {
|
|||||||
$check_url .= isset( $parsed['port'] ) ? ':' . $parsed['port'] : '';
|
$check_url .= isset( $parsed['port'] ) ? ':' . $parsed['port'] : '';
|
||||||
$check_url .= isset( $parsed['path'] ) ? $parsed['path'] : '';
|
$check_url .= isset( $parsed['path'] ) ? $parsed['path'] : '';
|
||||||
if ( !in_array( $check_url, $valid_requests ) ) {
|
if ( !in_array( $check_url, $valid_requests ) ) {
|
||||||
csajax_debug_message( 'Invalid domain - ' . $request_url . ' does not included in valid requests' );
|
csajax_debug_message( 'Invalid domain - ' . $request_url . ' is not included in valid request domain' );
|
||||||
exit;
|
exit;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
@@ -158,7 +159,9 @@ if ( 'POST' == $request_method ) {
|
|||||||
if($isMultiPart || $has_files){
|
if($isMultiPart || $has_files){
|
||||||
foreach(explode("&",$post_data) as $i => $param) {
|
foreach(explode("&",$post_data) as $i => $param) {
|
||||||
$params = explode("=", $param);
|
$params = explode("=", $param);
|
||||||
$file_params[$params[0]] = $params[1];
|
$xvarname = $params[0];
|
||||||
|
if (!empty($xvarname))
|
||||||
|
$file_params[$xvarname] = $params[1];
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user