Advertisement
Guest User

Untitled

a guest
May 13th, 2017
111
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.32 KB | None | 0 0
  1. <?php
  2. session_start();
  3. include ('besturing.php');
  4. if(isset($_POST['login'])){
  5. //////////////////////////////////////////////////
  6. //( STAP 1 ) Query die kijkt of de data overeen//
  7. //komt(dit staat boven zodat het direct update//
  8. ///////////////////////////////////////////////
  9. $sql = "SELECT * FROM Leden WHERE Gebruikersnaam='".mysql_real_escape_string($_POST['Gebruikersnaam'])."' and Wachtwoord='".md5($_POST['wachtwoord'])."'";
  10. $result = mysql_query($sql) or die(mysql_errorlogin());
  11. $row = mysql_fetch_assoc($result);
  12. if(mysql_num_rows($result) == 1){
  13. if(isset($_SESSION['id'])){
  14.  
  15. }
  16. else{
  17. $errorlogin = "Wrong username or password";
  18. }
  19. }
  20. ///////////////////////////////////////////////////////////
  21. //( STAP 2) login form laten zien als niet ingelogd zien//
  22. /////////////////////////////////////////////////////////
  23. if(!isset($_SESSION['ID'])){
  24. echo "<form method='post' action=''>
  25. <div class='table'>Username:</div>
  26. <div class='field'><input name='username' type='text' value='' size='28'/></div>
  27. <div class='table'>Password:</div>
  28. <div class='field'><input name='password' type='password' value='' size='28'/></div><br />
  29. <div class='field'><input name='login' type='submit' value='Login' style='height: 25px; width: 195px' /></div>
  30. <div class='table' align='center'><a href='register.php'>Register</a></div><br />
  31. <div class='table' align='center'></div>
  32. </form>";
  33. }
  34. /////////////////////////////////////////////////////////////
  35. //( STAP 3 )als er al een sessie is laat hij een menu zien//
  36. ///////////////////////////////////////////////////////////
  37. $_SESSION['id'] = $row['ID'];
  38. $query = mysql_query("SELECT * FROM Leden WHERE ID = '".mysql_real_escape_string($_SESSION['ID'])."'");
  39. $row = mysql_fetch_assoc($query);
  40. //admin menu//
  41. if($row['admin'] == 1){
  42. echo "
  43. Hey, " . $row['Gebruikersnaam'] ."<br />
  44. What are you gonna do today?<br /><br />
  45. <a href='admin.php'>Admin panel</a><br />
  46. <a href='editprofile.php'>Edit profile</a><br />
  47. <a href='logout.php'>Logout</a>";
  48. }
  49. //user menu//
  50. else{
  51. echo "
  52. Hey, " . $row['Gebruikersnaam'] ."<br />
  53. This is your profile!<br />
  54. <a href='editprofile.php?username=".$row['username']."'>Edit profile</a><br />
  55. <a href='logout.php'>Logout</a>";
  56. }
  57. }
  58.  
  59. if(isset($errorlogin)){
  60. echo $errorlogin;
  61. }
  62. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement