2013-04-30 102 views
0

我有一个登录脚本,我正在使用,目前正在工作,但我想添加一些额外的功能,如显示名称,一些首选项等我想将用户ID存储在会话中,以便我们可以在浏览网站进行查找时使用它,但我不知道如何解决此问题。任何帮助非常感谢...代码如下。当他们登录时检索并存储关于用户的其他信息

<?php 
include_once $_SERVER['DOCUMENT_ROOT'] . 
'/includes/magicquotes.inc.php'; 

if (isset($_GET['login'])){ 
include 'login.html.php'; 
exit(); 
} 

if (isset($_GET['security'])){ 
ob_start(); 
$host="localhost"; // Host name 
$username="*****"; // Mysql username 
$password="*****"; // Mysql password 
$db_name="*****"; // Database name 
$tbl_name="users"; // Table name 

// Connect to server and select databse. 
mysql_connect("$host", "$username", "$password")or die("cannot connect"); 
mysql_select_db("$db_name")or die("cannot select DB"); 

// Define $myusername and $mypassword 
$myusername=$_POST['myusername']; 
$mypassword=$_POST['mypassword']; 

// To protect MySQL injection (more detail about MySQL injection) 
$myusername = stripslashes($myusername); 
$mypassword = stripslashes($mypassword); 
$myusername = mysql_real_escape_string($myusername); 
$mypassword = mysql_real_escape_string($mypassword); 
$sql="SELECT * FROM $tbl_name WHERE username='$myusername' and password='$mypassword'"; 
$result=mysql_query($sql); 

// Mysql_num_row is counting table row 
$count=mysql_num_rows($result); 

// If result matched $myusername and $mypassword, table row must be 1 row 
if($count==1){ 

// Register $myusername, $mypassword and redirect home" 
session_register("myusername"); 
session_register("mypassword"); 
header("location:/admin/"); 
} 

else { 
echo "Wrong Username or Password"; 
} 
ob_end_flush(); 
exit(); 
} 

if (isset($_GET['logout'])){ 
session_start(); 
session_destroy(); 
header("location:/admin/"); 
exit(); 
} 
session_start(); 
if(!session_is_registered(myusername)){ 
header("location:?login"); 
} 

// Display Home Page 

include $_SERVER['DOCUMENT_ROOT'] . '/includes/db.inc.php'; 

include 'home.html.php'; 
exit(); 
+0

这一切都在[PHP手册](http://www.php.net/manual/en/function.session-start.php) – dbf 2013-04-30 21:14:06

回答

1
// If result matched $myusername and $mypassword, table row must be 1 row 
if($count==1){ 

// Register $myusername, $mypassword and redirect home" 
session_register("myusername"); 
session_register("mypassword"); 
header("location:/admin/"); 
} 

这里,if语句里面你应该再次查询数据库,并选择要在会话中使用的名称等。

启动内部会议if语句

// Register $myusername, $mypassword and redirect home" 
$query = "SELECT `first_name` FROM `table` WHERE `username`=$username"; 
$result = $mysqli->query($query); 
$row = $result->fetch_assoc(); 
$firstName = $row['first_name']; 

session_start(); 
$_SESSION['username'] = $username; 
$_SESSION['password'] = $password; 
$_SESSION['firstName'] = $firstName; 
header("location:/admin/"); 

很显然,我不知道你的数据库结构是什么样子,但我希望你的想法

你再启动页面上的会话用户应登录,然后您可以通过

例如

echo $_SESSION['firstName']; 
+0

不幸的是我已经试过这样做,它是挂在?安全部分。以下是我如何修改它以从我的表中调用...我也添加了“firstName”列。 //注册$名为myUsername,$输入mypassword和重定向家” \t $查询= “选择'firstName'从$ tbl_name其中username = '$名为myUsername'”; \t $结果= $ mysql->查询($查询) ; \t $行= $ result-> FETCH_ASSOC(); \t $的firstName = $行[ '的firstName']; \t \t 在session_start(); \t $ _SESSION [ '用户名'] = $用户名; \t $ _SESSION ['password'] = $ password; \t $ _SESSION ['firstName'] = $ firstName; \t header(“location:/ admin /”); \t} – 2013-04-30 21:56:36

+0

你是什么意思挂在安全部分? 错误? – 2013-04-30 22:00:15

+0

'if(isset($ _ GET ['security']))'执行后应该重定向到header(“location:/ admin /”);'不是 – 2013-04-30 22:19:15

相关问题