News:

Server address: server.convoytrucking.net
Get SA-MP 0.3.7 here: Click Here to download SA-MP 0.3.7

Main Menu
Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - TheFoxman

#16
Suggestions / Re: Bases on website
March 12, 2017, 23:46
Quote from: Lucca on February 28, 2017, 15:40
It's not ''necessary'', but would be nice  :like:
#17
Suggestions / Re: Block user
February 21, 2017, 15:51
#18
Quote from: Rory on January 31, 2017, 21:38
Quote from: Ethan on January 31, 2017, 21:24
Quote from: Rory on January 31, 2017, 21:15
This could apply more than anything to people who have the luxury of winding up players who are off air
so you want to jail people who are AFK?
No, in case you get this AFK and a player arrives to kill him with the spray or kill him with the truck, he would go to jail.

Example "Ethan(AFK)" Driver who killed him with or without a vehicle would go to jail.
I think u can't do damage to a person who is afk
#19
Suggestions / Re: Ambulance mission
January 26, 2017, 22:45
Quote from: Martin on January 26, 2017, 13:06
Stop with those achievements, not everything that gets added must have an achievement for it.
True
#20
Suggestions / Re: /myvehicles
January 19, 2017, 14:21
Quote from: Alphyx. on January 18, 2017, 18:24
Yes, please  :like:
I dont really have club vehicles i have my own that no1 uses but its a good idea
#21
Suggestions / Re: CT 2K17
January 13, 2017, 13:35
Quote from: Mr.majmun on January 09, 2017, 07:47
As much as I like new things to be added, I don't like this one. A fast truck is fast, a slow one is slow. No need to change that.  :dislike:

That would make convoys even harder to maintain with so many different trucks.
#22
GTA & SA-MP / Re: SAMP Server Online
January 05, 2017, 21:29
Quote from: Pepe_The_Frog on January 05, 2017, 20:26
Quote from: Ethan on January 05, 2017, 20:07
pay a hosting company for slots for people to join or google port forwarding so people can also join that way..

pay  :'(  :'(


Who pays for samp server
#24
Suggestions / Re: New Chauffeur Cars
December 22, 2016, 11:20
Quote from: Benny on December 21, 2016, 07:27
I would like to see some new vehicles for this, it would be nice to have more choice.
#25
Events / Re: Convoy
December 15, 2016, 14:40
Bad Luck Have Crashes :D
#26
Off Topic / Re: Random Picture
December 14, 2016, 23:05
How can u be that bored to post shiat like this :D
#27
Suggestions / Re: Skyway project?
December 13, 2016, 13:24
ye but this isnt that high like uncle's idea :D
#28
Suggestions / Re: Skyway project?
December 12, 2016, 22:58
Quote from: Supreme on December 12, 2016, 18:22
San Fierro has this already
Where ;o i dont think there is a skyway in sf
#29
Suggestions / Re: Skyway project?
December 11, 2016, 11:58
Quote from: Uncle_Drew on December 11, 2016, 11:57
Wazzup! i am here for yet another Interesting nor Fucking idea  :)) well i suggest to build a Skyway :D if you don't know a skyway, a skyway it is an Elevated Highway or Expressway. Here is the Picture. [img] http://newsinfo.inquirer.net/files/2014/01/Skyway_model.jpg [/img ]
This picture is a Skyway. Well skyway can be at the top of a road. well thats all :D
Nice,is it possible to be added really
#30
Help / Re: H3lp
December 11, 2016, 11:56
Quote from: Joshy on December 09, 2016, 19:36
Quote from: Deff on December 09, 2016, 06:23
Quote from: Ethan on December 09, 2016, 01:29
yeah, for some odd reason my profile picture I chose changed to some random thing.. I had to change it... maybe becasue of Viky updated it?

Oh its public, anyone can make signature for anyone. But I have disabled it now. Those who have already made, it will work for them, no one can make/edit signatures now, this can't be authenticated as of now, hence disabled.
That's quite unfortunate, it was good to see the API being used by someone other than Mick (CT Android app).

You should suggest API authentication (OAuth2 or something), Django REST framework probably has it built in.

As a short term workaround you could send people unique URLs that only work for their profile via PM, that way in order to make a signature they'll have to PM you and then you make them a URL / token for their account. Idk if it's worth the effort though.


edit: here's how I would do this in PHP (it's been a while since I wrote any PHP, C# ftw) (also this is totally untested) (it's probably not bulletproof and/or cryptographically secure but who cares lol ¯\_(ツ)_/¯):

const SECRET_KEY "some secret constant string here";

function 
generate_token($username) {
   return 
hash_hmac("sha256"$usernameSECRET_KEY);
}

// function which is able to verify a MAC for a given username
function verify_token($username$token) {
    
// basically you re-create the MAC for a given username and then verify it against the passed in MAC
    
return hash_equals(generate_mac($username), $token); // interesting fact: hash_equals isn't susceptible to timing attacks, however "==" is
}

// to verify a URL
$username = isset($_GET["username"]) ? $_GET["username"] : NULL;
$token = isset($_GET["token"]) ? $_GET["token"] : NULL;

if (empty(
$username) || empty($token)) {
    echo 
"kek nice try...";
    return;
}

$isActuallyTheUser verify_token($username$token);

if (
$isActuallyTheUser) {
    
// Do signature stuff
} else {
    
// Firewall the user's IP address into oblivion
}

////////////////

// for giving out URLs (put this behind a password or something)
const BASE_URI "http://cvt.is-great.net/signature/";
// URL generation
function generate_url_with_token($username) {
    
$token generate_token($username);
    return 
BASE_URI "?" http_build_query(array("username" => $username"token" => $token));
}

$username = isset($_GET["username"]) ? $_GET["username"] : NULL;
if (empty(
$username)) {
    echo 
"Good joke viky... srsly";
    return;
}
echo 
generate_url_with_token($username);


The result I got with that "secret" key and my username is http://cvt.is-great.net/signature/?username=Joshy&token=44939cf6f335a44a6a7acdc09566691d7c5f7bec3c1b321f13dc6f9e64d80ea2

You can use the code at https://repl.it/EmJm/3 to test your environment to make sure it works properly (some web hosting disable hash_hmac for "security" - klol).

Still dont know who created the coding that doesnt make sence at all :)