% Response.Buffer = true %> <% If Request.Form("btnLogin") = "Login" AND Request.Form("txtName") <> "" _ AND Request.Form("txtPassword") <> "" Then '-- Declare your variables Dim DataConnection1, cmdDC1, RecordSet1, DataConnection2, cmdDC2, RecordSet2 Dim RecordToEdit, Updated, strUserName, strPassword strUserName = Request.Form("txtName") strPassword = Request.Form("txtPassword") '-- Create object and open database Set DataConnection1 = Server.CreateObject("ADODB.Connection") DataConnection1.Open "DSN=MRCDC" Set cmdDC1 = Server.CreateObject("ADODB.Command") cmdDC1.ActiveConnection = DataConnection1 '---------------------------------------- 'Write Login Info to DB '-- default SQL SQL = "SELECT * FROM Access_Log" cmdDC1.CommandText = SQL Set RecordSet1 = Server.CreateObject("ADODB.Recordset") RecordSet1.Open cmdDC1, , 0, 2 'Create a new record and write the data to the file RecordSet1.addnew RecordSet1.Fields("UserID") = strUserName RecordSet1.Fields("password") = strPassword RecordSet1.Fields("loginDate") = Date() RecordSet1.Fields("loginTime") = Time() RecordSet1.Update '---------------------------------- 'Perform the security check '-- default SQL SQL = "SELECT * FROM tblSecurity" If Request.Form("txtName") <> "" Then SQL = "SELECT tblSecurity.* FROM tblSecurity " & _ "WHERE tblSecurity.userID='" & strUserName& _ "' AND tblSecurity.password ='" & strPassword & "'" End If Set DataConnection2 = Server.CreateObject("ADODB.Connection") DataConnection2.Open "DSN=MRCDC" Set cmdDC2 = Server.CreateObject("ADODB.Command") cmdDC2.ActiveConnection = DataConnection2 cmdDC2.CommandText = SQL Set RecordSet2 = Server.CreateObject("ADODB.Recordset") RecordSet2.Open cmdDC2, , 0, 2 If Not RecordSet2.EOF Then 'The user was validated Dim strHomePage, strClientNumber 'strHomePage = RecordSet2.Fields("homePage") 'strReadWrite = RecordSet2.Fields("read_write") 'Session("homePage") = strHomePage Session("readwrite") = "Write" 'response.redirect "http://"&strHomePage response.redirect "validated_main.asp" 'response.write strHomePage Else 'The user was not validated... 'Take them to a page which tells them they were not validated... Session("readwrite") = "Read" Response.Redirect "guest_main.asp" End If '--------------------------------------------- End If %>
|
|||||||||
| |
|||||||||
|
|||||||||