01.
<?php
02.
header(
'Content-Type: text/html; charset=utf-8'
);
03.
04.
session_start();
05.
$n
=
$_POST
[
"name"
];
06.
$p
=
$_POST
[
"pass"
];
07.
$p2
=MD5(
"$p"
);
08.
09.
include
(
'../config.php'
);
10.
$sql
=
"SELECT * FROM member WHERE name='$n' AND pass='$p2'"
;
11.
$query
=mysql_query(
$sql
);
12.
$numrow
=mysql_num_rows(
$query
);
13.
if
(
$numrow
==1){
14.
$_SESSION
[
"username"
]=
$n
;
15.
sendResponse(
"success"
,
"index.php"
);
16.
}
else
{
17.
sendResponse(
"error"
,
"ชื่อหรือรหัสผ่านไม่ถูกต้อง!"
);
18.
}
19.
20.
function
sendResponse(
$status
,
$message
) {
21.
echo
$status
.
"|"
.
$message
;
22.
}
23.
24.
echo
$_SESSION
[
"username"
];
25.
?>