Advertisement
Guest User

Untitled

a guest
May 13th, 2017
65
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.27 KB | None | 0 0
  1. <?php
  2. include ('db.php');
  3. if(isset($_POST['login'])){
  4. //////////////////////////////////////////////////
  5. //( STAP 1 ) Query die kijkt of de data overeen//
  6. //komt(dit staat boven zodat het direct update//
  7. ///////////////////////////////////////////////
  8. $sql = "SELECT * FROM users WHERE username='".mysql_real_escape_string($_POST['username'])."' and password='".md5($_POST['password'])."'";
  9. $result = mysql_query($sql) or die(mysql_errorlogin());
  10. $row = mysql_fetch_assoc($result);
  11. if(mysql_num_rows($result) == 1){
  12. $_SESSION['id'] = $row['id'];
  13. }
  14. else{
  15. $errorlogin = "Wrong username or password";
  16. }
  17. }
  18. ///////////////////////////////////////////////////////////
  19. //( STAP 2) login form laten zien als niet ingelogd zien//
  20. /////////////////////////////////////////////////////////
  21. if(!isset($_SESSION['id'])){
  22. echo "<form method='post' action=''>
  23. <div class='table'>Username:</div>
  24. <div class='field'><input name='username' type='text' value='' size='28'/></div>
  25. <div class='table'>Password:</div>
  26. <div class='field'><input name='password' type='password' value='' size='28'/></div><br />
  27. <div class='field'><input name='login' type='submit' value='Login' style='height: 25px; width: 195px' /></div>
  28. <div class='table' align='center'><a href='register.php'>Register</a></div><br />
  29. <div class='table' align='center'></div>
  30. </form>";
  31. }
  32. /////////////////////////////////////////////////////////////
  33. //( STAP 3 )als er al een sessie is laat hij een menu zien//
  34. ///////////////////////////////////////////////////////////
  35. else if(isset($_SESSION['id'])){
  36. $query = mysql_query("SELECT * FROM users WHERE id = '".mysql_real_escape_string($_SESSION['id'])."'");
  37. $row = mysql_fetch_assoc($query);
  38. //admin menu//
  39. if($row['admin'] == 1){
  40. echo "
  41. Hey, " . $row['username'] ."<br />
  42. What are you gonna do today?<br /><br />
  43. <a href='admin.php'>Admin panel</a><br />
  44. <a href='editprofile.php'>Edit profile</a><br />
  45. <a href='logout.php'>Logout</a>";
  46. }
  47. //user menu//
  48. else{
  49. echo "
  50. Hey, " . $row['username'] ."<br />
  51. This is your profile!<br />
  52. <a href='editprofile.php?username=".$row['username']."'>Edit profile</a><br />
  53. <a href='logout.php'>Logout</a>";
  54. }
  55. }
  56. if(isset($errorlogin)){
  57. echo $errorlogin;
  58. }
  59. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement