1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
|
# account
[<-Back-to:Auth](database-auth.md)
**The `account` table**
This table holds information on all available accounts.
## Structure
| Field | Type | Attributes | Key | Null | Default | Extra | Comment |
|-----------------------|--------------|------------|-----|------|-------------------|----------------|------------|
| [id][1] | int(10) | unsigned | PRI | NO | | auto_increment | Identifier |
| [username][2] | varchar(32) | | UNI | NO | | | |
| [sha_pass_hash][3] | varchar(40) | | | NO | | | |
| [sessionkey][4] | varchar(80) | | | NO | | | |
| [v][5] | varchar(64) | | | NO | | | |
| [s][6] | varchar(64) | | | NO | | | |
| [token_key][7] | varchar(100) | | | NO | | | |
| [email][8] | varchar(255) | | | NO | | | |
| [reg_mail][9] | varchar(255) | | | NO | | | |
| [joindate][10] | timestamp | | | NO | CURRENT_TIMESTAMP | | |
| [last_ip][11] | varchar(15) | | | NO | 127.0.0.1 | | |
| [last_attempt_ip][12] | varchar(15) | | | NO | 127.0.0.1 | | |
| [failed_logins][13] | int(10) | unsigned | | NO | 0 | | |
| [locked][14] | tinyint(3) | unsigned | | NO | 0 | | |
| [lock_country][15] | varchar(2) | | | NO | 0 | | |
| [last_login][16] | timestamp | | | YES | NULL | | |
| [online][17] | int(10) | unsigned | | NO | 0 | | |
| [expansion][18] | tinyint(3) | unsigned | | NO | 2 | | |
| [mutetime][19] | bigint(20) | signed | | NO | 0 | | |
| [mutereason][20] | varchar(255) | | | NO | | | |
| [muteby][21] | varchar(50) | | | NO | | | |
| [locale][22] | tinyint(3) | unsigned | | NO | 0 | | |
| [os][23] | varchar(3) | | | NO | | | |
| [recruiter][24] | int(10) | unsigned | | NO | 0 | | |
| [totaltime][25] | int(10) | unsigned | | NO | 0 | | |
[1]: #id
[2]: #username
[3]: #sha_pass_hash
[4]: #sessionkey
[5]: #v
[6]: #s
[7]: #token_key
[8]: #email
[9]: #reg_mail
[10]: #joindate
[11]: #last_ip
[12]: #last_attempt_ip
[13]: #failed_logins
[14]: #locked
[15]: #lock_country
[16]: #last_login
[17]: #online
[18]: #expansion
[19]: #mutetime
[20]: #mutereason
[21]: #muteby
[22]: #locale
[23]: #os
[24]: #recruiter
[25]: #totaltime
## Description of the fields
### id
The unique account ID.
### username
The user's account name.
**NOTE**: usernames are limited to 20 characters and have no character restriction.
### sha_pass_hash
This field contains the encrypted password. The encryption is SHA1 and is in the following format: username:password. The SQL to create the password (or to compare with the current hash) is:
| Language | Code |
|----------|---------------------------------------------------------------------|
| SQL | UPPER(SHA1(CONCAT(UPPER('myusername'), ':', UPPER('mypass')))); |
| PHP | strtoupper(sha1(strtoupper($username).':'.strtoupper($password))); |
**NOTE**: Passwords are limited to 16 characters and have no character restriction.
### sessionkey
`field-no-description|5`
### v
### s
`v` and `s` fields are used by server authentication system since the client uses a SRP6 protocol to handle authentication
If you change the password these fields must be set to 0 allowing the server to regenerate them at login.
The .account password command already does it, but you must take care about it on external registration systems (web client)
### **token_key**
The authenticator key.
Key can be generated through the Google Authenticator API, a 3rd-party TOTP generator, or manually specified (must be a Base32-compliant expression that is 16 characters).
Implementation link on Wikipedia for the Google Authenticator API
<http://en.wikipedia.org/wiki/Google_Authenticator#Implementations>
### email
The e-mail address associated with this account.
### reg_mail
The registration e-mail address associated with this account.
### joindate
The date when the account was created.
### last_ip
The last IP used by the person who logged in the account.
### failed_logins
The number of failed logins attempted on the account.
### locked
Boolean 0 or 1 controlling if the account has been locked or not. This can be controlled with the ".account lock" GM command. If locked (1), the user can only log in with their [last_ip][11]. If unlocked (0), a user can log in from any IP, and their last_ip will be updated if it is different. ".Ban account" does not lock it.
### last_login
The date when the account was last logged into.
### totaltime
Total time played on all the characters of a player. Even the deleted characters that are no longer in the database.
Stored in Unix Time.
### online
Boolean 0 or 1 controlling if the account is currently logged in and online.
### expansion
Integer 0, 1 or 2 controlling if the client logged in on the account has any expansions. (for example if client is TBC, but expansion is set to 0, it will not be able to enter outlands and etc.)
| Value | Expansion |
|-------|--------------------------------|
| 0 | Classic |
| 1 | The Burning Crusade (TBC) |
| 2 | Wrath of the Lich King (WotLK) |
| 3 | Cataclysm |
| 4 | Mist of Pandaria (MOP) |
| 5 | Warlords of Draenor (WOD) |
| 6 | Legion |
### mutetime
The time, in Unix time, when the account will be unmuted. To see when mute will be expired you can use this query:
```sql
SELECT FROM_UNIXTIME(`mutetime`);
```
### mutereason
The reason for the mute.
### muteby
The character name with the rights to the .mute command that give the mute.
### locale
The locale used by the client logged into this account. If multiple locale data has been configured and added to the world servers, the world servers will return the proper locale strings to the client. See [localization IDs](Localization_lang)
### os
Stores information about client's OS. Used by Warden system.
- Win
- Mac
### recruiter
The account ID of another account. Used for recuit-a-friend system. See [account.id][1]
|