Advertisement
Guest User

Untitled

a guest
May 13th, 2017
78
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.32 KB | None | 0 0
  1. <?php
  2. session_start();
  3. include ('besturing.php');
  4. if(isset($_POST['login'])){
  5. //////////////////////////////////////////////////
  6. //( STAP 1 ) Query die kijkt of de data overeen//
  7. //komt(dit staat boven zodat het direct update//
  8. ///////////////////////////////////////////////
  9. $sql = "SELECT * FROM Leden WHERE gebruikersnaam='".mysql_real_escape_string($_POST['Gebruikersnaam'])."' and wachtwoord='".md5($_POST['wachtwoord'])."'";
  10. $result = mysql_query($sql) or die(mysql_errorlogin());
  11. $row = mysql_fetch_assoc($result);
  12. if(mysql_num_rows($result) == 1){
  13. $_SESSION['id'] = $row['ID'];
  14. }
  15. else{
  16. $errorlogin = "Wrong username or password";
  17. }
  18. }
  19. ///////////////////////////////////////////////////////////
  20. //( STAP 2) login form laten zien als niet ingelogd zien//
  21. /////////////////////////////////////////////////////////
  22. if(!isset($_SESSION['ID'])){
  23. echo "<form method='post' action=''>
  24. <div class='table'>Username:</div>
  25. <div class='field'><input name='username' type='text' value='' size='28'/></div>
  26. <div class='table'>Password:</div>
  27. <div class='field'><input name='password' type='password' value='' size='28'/></div><br />
  28. <div class='field'><input name='login' type='submit' value='Login' style='height: 25px; width: 195px' /></div>
  29. <div class='table' align='center'><a href='register.php'>Register</a></div><br />
  30. <div class='table' align='center'></div>
  31. </form>";
  32. }
  33. /////////////////////////////////////////////////////////////
  34. //( STAP 3 )als er al een sessie is laat hij een menu zien//
  35. ///////////////////////////////////////////////////////////
  36. else if(isset($_SESSION['ID'])){
  37. $query = mysql_query("SELECT * FROM Leden WHERE ID = '".mysql_real_escape_string($_SESSION['ID'])."'");
  38. $row = mysql_fetch_assoc($query);
  39. //admin menu//
  40. if($row['admin'] == 1){
  41. echo "
  42. Hey, " . $row['gebruikersnaam'] ."<br />
  43. What are you gonna do today?<br /><br />
  44. <a href='admin.php'>Admin panel</a><br />
  45. <a href='editprofile.php'>Edit profile</a><br />
  46. <a href='logout.php'>Logout</a>";
  47. }
  48. //user menu//
  49. else{
  50. echo "
  51. Hey, " . $row['gebruikersnaam'] ."<br />
  52. This is your profile!<br />
  53. <a href='editprofile.php?username=".$row['username']."'>Edit profile</a><br />
  54. <a href='logout.php'>Logout</a>";
  55. }
  56. }
  57. if(isset($errorlogin)){
  58. echo $errorlogin;
  59. }
  60. ?>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement