Advertisement
Guest User

Untitled

a guest
Nov 5th, 2016
81
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.15 KB | None | 0 0
  1. <?php
  2. //Start sessie
  3. session_start();
  4.  
  5. //Kijk of variables gegeven zijn
  6. if (!isset($_REQUEST) || !array_key_exists("name", $_REQUEST) || !array_key_exists("pass", $_REQUEST)) {
  7. echo "Gebruikersnaam of wachtwoord niet correct verstuurd.";
  8. return;
  9. }
  10. //Verkrijg variables
  11. $name = strtolower($_REQUEST["name"]);
  12. $pass = $_REQUEST["pass"];
  13. //Encrypt & salt het wachtwoord, zodat het in het geval van een database leak niet gebruikt kan worden.
  14. $encryptedpass = sha1($pass . "jonathan" . $name);
  15.  
  16. //Mysql
  17. $databasename = "jonathan";
  18. $dbusername = "jonathan";
  19. $dbpassword = "w3PSPHJpBHZMk4UYpwq5";
  20.  
  21. // Create connection
  22. $conn = mysqli_connect($databasename, $dbusername, $dbpassword);
  23.  
  24. // Check connection
  25. if (!$conn) {
  26. die("Connection failed: " . mysqli_connect_error());
  27. }
  28.  
  29. @mysqli_select_db($conn, "jonathan") or die( "Unable to select database");
  30. $result = @mysqli_query($conn, "SELECT * FROM users WHERE username='$name'");
  31. $dbpass = mysqli_fetch_assoc($result)["password"];
  32.  
  33. if ($encryptedpass == $dbpass) {
  34. $_SESSION["login_name"] = $name;
  35. echo "true";
  36. } else {
  37. echo "Je gebruikersnaam of wachtwoord is incorrect.";
  38. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement