Code: Select all
<form method="POST" action="">
Type Username Here: <input type="text" name="username" size="15">
Type Password Here: <input type="password" name="password" size="15">
<input type="submit" value="submit" name="submit">
</form>Code: Select all
<?php
// this is ALL new code, to do stuff when the submit button is pressed
include('connect2.php');
mysql_connect($dbhost2, $dbuser2, $dbpass2) or die('Error connecting to mysql');
mysql_select_db($dbname2) or die('Cannot select DB');
if (isset($submit)) // name of submit button
{ $query = "select * from usrauth1 where cuname='$username' and cpass='$password'";
$result = mysql_query($query) ;
$isAuth = false; //set to false originally
while($row = mysql_fetch_array($result))
{
if($row['cuname'] === $username)
{
$isAuth = true;
session_start();
session_register('cuname');
}
}
if($isAuth)
{
print "logged in successfully<br>";
print "<A href=\"" . basename($_SERVER['SCRIPT_FILENAME']) . "\">Refresh</a>";
}
else
print "Wrong username or password";
}
?>Code: Select all
<?php
session_start();
// all the old code:
$dbhost = 'phpsql1.csscobalt.com';
$dbuser = 'phptest1';
$dbpass = 'phptest1';
$dbname = 'phptest1';
mysql_connect($dbhost, $dbuser, $dbpass) or die('Error connecting to mysql');
mysql_select_db($dbname) or die('Cannot select DB');
$query = "SELECT `cid`, `csubject`, `cmessage` FROM `deltest1`";
$result = mysql_query($query) or die('Error, query failed ##1');
if (isset($_GET['act']) && $_GET['act'] == 'del')
{
if (isset($_GET['id']) && $_GET['id'] != null && is_numeric($_GET['id']))
{
$id = $_GET['id'];
$sql_delete = "DELETE FROM `deltest1` WHERE `cid` = $id";
mysql_query($sql_delete) or die(mysql_error()); // gives errors
mysql_query("COMMIT") or die(mysql_error()); // gives errors
echo 'Record id ' . $id . ' has been deleted...<br />';
}
}
while ($row = mysql_fetch_array($result))
{
$id = $row["cid"];
echo $row["csubject"] . $row["cmessage"];
// and HERE is my new code:
session_start();
if (isset($_SESSION['username']))
{
echo '<a href="' . basename($_SERVER['SCRIPT_FILENAME']) . '?act=del&id=' . $id . '" title="Delete"><img src="http://image.fpsbanana.com/ico/del.gif"></a><br>';
}
else
{
print "Login Please<br>";
}
}
// End New Code
?>little help?