-
Notifications
You must be signed in to change notification settings - Fork 0
Expand file tree
/
Copy pathenter.php
More file actions
executable file
·54 lines (52 loc) · 1.6 KB
/
enter.php
File metadata and controls
executable file
·54 lines (52 loc) · 1.6 KB
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
<?php
include_once "dbsetting.php";
$mysql= new mysqli($dbhost,$logindb,$passdb,$dbname);
if($mysql->connect_errno)die("error db:".$mysql->connect_error);
$auth=array("auth"=>false,"login"=>"");
//echo 'getlogin: '.$_POST['login'].' getpass: '.$_POST['password'];
$login = null;
if($_GET["login"]=="ssv"){
$query = "SELECT `password` FROM `users` WHERE `login`='ssv'";
$login = 'ssv';
}else if ($_GET["login"]=="msn"){
$query = "SELECT * FROM `users` WHERE `login`='msn'";
$login = 'msn';
}else if ($_GET["login"]=="akellared"){
$query = "SELECT * FROM `users` WHERE `login`='akellared'";
$login = 'akellared';
}else{
$auth['auth']=false;
$auth["login"]=$login;
$auth["msg"]="Пользователь ".$login." не найден";
echo json_encode($auth);
die();
}
$res = $mysql->query($query);
$row = $res->fetch_assoc();
$pass = null;
$user_id=0;
$user_title="";
while($row){
$pass = $row['password'];
$email = $row['email'];
$user_id = $row['user_id'];
$user_title = $row['title'];
//echo 'password of user '.$login.': '.$pass;
$row = $res->fetch_assoc();
}
$res->close();
$mysql->close();
if($_GET['password']==$pass){
$auth['auth']=true;
$auth["login"]=$login;
$auth["user_id"] = $user_id;
$auth["user_title"] = $user_title;
$auth["msg"]="Авторизация для Пользователя ".$login." прошла успешно";
echo json_encode($auth);
}
else{
$auth['auth']=false;
$auth["login"]=$login;
$auth["msg"]="Неверный пароль для Пользователя ".$login;
echo json_encode($auth);
}