/* Check User Script */
session_start(); // Start Session
include 'db.php';
// Conver to simple variables
$username = $_POST['username'];
$password = $_POST['password'];
if((!$username) || (!$password)){
echo "Please enter the required information - UserName and Password!
";
include 'TPGP_Login.htm';
exit();
}
// Convert password to md5 hash
$password = md5($password);
// check if the user info validates the db
$sql = mysql_query("SELECT * FROM users WHERE username='$username' AND password='$password' AND activated='1'");
$login_check = mysql_num_rows($sql);
if($login_check > 0){
while($row = mysql_fetch_array($sql)){
foreach( $row AS $key => $val ){
$$key = stripslashes( $val );
}
// Register some session variables!
session_register('first_name');
$_SESSION['first_name'] = $first_name;
session_register('last_name');
$_SESSION['last_name'] = $last_name;
session_register('email_address');
$_SESSION['email_address'] = $email_address;
session_register('special_user');
$_SESSION['user_level'] = $user_level;
$urlpage = $url_page;
mysql_query("UPDATE users SET last_login=now() WHERE userid='$userid'");
$target = "http://www.tmgdatasystems.com/TPGP/";
header("Location: " . $target . $urlpage);
// header("Location: TPGP_login_success.php");
}
} else {
echo "You could not be logged in! Either your Username or Password are invalid - or your account has not been activated!
";
include 'TPGP_Login.htm';
}
?>