Subversion Repositories cheapmusic

Rev

Details | Last modification | View Log | RSS feed

Rev Author Line No. Line
104 - 1
<?php
2
include_once ($_SERVER['DOCUMENT_ROOT'] . "/php/dnsexit.php");
3
 
4
//set array of allowed file types to prevent abuse
5
$allowed = array('css','js','png','jpg','jpeg','gif','svg','ico');
6
 
7
//check for request variable existence and that file type is allowed
8
if(isset($_GET['file']) && isset($_GET['type']) && in_array(substr($_GET['file'],strrpos($_GET['file'],'.')+1), $allowed)){
9
	$data = file_get_contents(dirname(__FILE__).'/'.$_GET['file']); // grab the file contents
10
 
11
	$etag = '"'.md5($data).'"'; // generate a file Etag
12
	header('ETag: '.$etag); // output the Etag in the header
13
 
14
	// output the content-type header for each file type
15
	switch ($_GET['type']) {
16
		case 'css':
17
			header ("Content-Type: text/css; charset: UTF-8");
18
		break;
19
 
20
		case 'js':
21
			header ("Content-Type: text/javascript; charset: UTF-8");
22
		break;
23
 
24
		case 'png':
25
			header ("Content-Type: image/png");
26
		break;
27
 
28
		case 'jpg':
29
		case 'jpeg':
30
			header ("Content-Type: image/jpeg");
31
		break;
32
 
33
		case 'gif':
34
			header ("Content-Type: image/gif");
35
		break;
36
 
37
		case 'svg':
38
			header ("Content-Type: image/svg+xml");
39
		break;
40
 
41
		case 'ico':
42
			header ("Content-Type: image/vnd.microsoft.icon");
43
		break;
44
	}
45
 
46
	header('Cache-Control: max-age=86400, public'); //output the cache-control header
47
 
48
	// check the Etag the browser already has for the file and only serve the file if it is different
49
	if (isset($_SERVER['HTTP_IF_NONE_MATCH']) && $etag == $_SERVER['HTTP_IF_NONE_MATCH']) {
50
		header('HTTP/1.1 304 Not Modified');
51
		header('Content-Length: 0');
52
	} else {
53
		echo $data;
54
	}
55
}
56
?>