Guest User

Untitled

a guest
Oct 29th, 2018
105
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.41 KB | None | 0 0
  1. ////////////////////////////////////////////////////////////////////////////////////////////////////
  2. session_start(); //
  3. error_reporting(0); //
  4. include('includes/config.php'); //
  5. if($_SESSION['alogin']!=''){ //
  6. //
  7. } //
  8. if(isset($_POST['login'])) //
  9. { //
  10. $uname=$_POST['username']; //
  11. $password=md5($_POST['password']); //
  12. $sql ="SELECT `UserName`, `Password`,`privilegio` FROM admin WHERE UserName=:uname and Password=:password and privilegio=:privilegio"; //
  13. $query= $dbh -> prepare($sql); //
  14. $query-> bindParam(':uname', $uname, PDO::PARAM_STR); //
  15. $query-> bindParam(':password', $password, PDO::PARAM_STR);
  16. $query-> bindParam(':privilegio', $privilegio, PDO::PARAM_STR);
  17. $query-> execute(); //
  18. $results=$query->fetchAll(PDO::FETCH_OBJ); //
  19. if($query->rowCount() > 0) //
  20. { //
  21. $_SESSION['alogin']=$_POST['username']; //
  22. if($_SESSION["privilegio"] == 'Administrador')
  23. header("Location: dashboard.php");
  24. }
  25. elseif($_SESSION["privilegio"] == 'Empleado'){
  26. header("Location: medico.php");
  27. }
  28.  
  29.  
  30. else{
  31. header("Location: index.php");
  32. }
  33. }
  34.  
  35. ?>
Add Comment
Please, Sign In to add comment