ini_set('display_errors', 'OFF'); session_start(); $_SESSION['logged'] = 0; $istnieje = 0; if(isset($_POST['login']) && isset($_POST['passwd']) && isset($_POST['database'])) { $polaczenie = mysql_connect('localhost', $_POST['login'],$_POST['passwd']) or die("HTTP/1.0 401 Unauthorized"); $zapytanie = mysql_query("SHOW DATABASES") or die ('Query failed'.mysql_error()); while(list($name)=mysql_fetch_row($zapytanie)){ if ($name == $_POST['database']){ $istnieje = 1; break; } } if($istnieje == 1) { mysql_select_db($_POST['database'], $polaczenie); $username = $_POST['login']; $password = $_POST['passwd']; $database = $_POST['database']; $passquery = "SELECT user_id FROM user_auth WHERE user_id = '$username' AND user_password = '$password'"; $passresult = mysql_query($passquery) or die('Query failed. '.mysql_error()); if(mysql_num_rows($passresult) >= 1) { $_SESSION['logged'] = 1; $_SESSION['login'] = $username; $_SESSION['passwd'] = $password; $_SESSION['database'] = $database; header('Location: login.php'); exit; } } else { $_SESSION['logged'] = 0; header('HTTP/1.0 401 Unauthorized'); echo 'Authorization Required.'; exit; } mysql_close($polaczenie); } ?>
| |