require("../config/include.php");
require("../config/inc.php");
if(@$_POST["submit"])
{
if(empty ($_POST["username"]))
die ("请填写用户名");
else
$username = $_POST["username"];
if(empty ($_POST["password"]))
die ("请填写密码");
else
$password = md5($_POST["password"]);
$sql="select id,id_rank,password,name,lasttime_now from bbsusers where name='$username'";
$result=mysql_query($sql) or die("1".mysql_error());
while($pa = mysql_fetch_assoc($result))
{
$pwd = $pa["password"];
$userid = $pa["id"];
//检测用户名是否正确
if(!$result)
{
die("错误的用户名
重新登陆");
}
//检测密码是否正确
if($pwd != $password )
{
echo "亲爱的".$username."
";
echo "您输入了错误的密码";
die("
请您重新登陆");
}
$lasttime_now=date("y-m-d H:i:s");
$ip_user=getIP();
$urled = $_POST["url"];
//$sql2="update bbsusers set lasttime='".$pa["lasttime_now"]."' where name='".$_POST["username"]."'";
$sql3="update bbsusers set num_land=num_land+1,lasttime='".$pa["lasttime_now"]."', lasttime_now='$lasttime_now',ip='$ip_user' where name='".$_POST["username"]."'";
// $result2=mysql_query($sql2) or die("2".mysql_error());
$result3=mysql_query($sql3) or die("3".mysql_error());
$sql4="insert into `ip_user` set id_user='$userid', name='$username',urled='$urled', time='$lasttime_now',ip='$ip_user'";
$result4=mysql_query($sql4) or die("4".mysql_error());
//如果一切正常,则设置Cookie
setcookie("username",$_POST["username"]);
header("Location:index.php");
}
}
?>
| showloginbox(); ?> |