function form($error)
{
?>
ob_start();
}
function login_check($username,$password)
{
$db = mysql_connect("localhost", "aidzande_aidzan", "liver2101") or die('Script Could not connect to database');
mysql_select_db("aidzande_blog",$db);
$password = md5($password);
$sql = "SELECT username,password FROM members where username = '".$username."'";
$result = mysql_query($sql ,$db);
if ($myrow = mysql_fetch_array($result))
{
if($username == $myrow['username'] && $password == $myrow['password'])
{
$login_check = true;
}
else
{
$login_check = false;
}
}
else
{
$login_check = false;
}
return $login_check;
}
if(isset($_REQUEST['Submit']))
{
if(!$_POST['username'] || !$_POST['password'])
{
$error = 'Error: All fields are required';
echo form($error);
}
else
{
if (login_check($_POST['username'],$_POST['password']))
{
echo 'Congratulations! You are now logged in
';
}
else
{
$error = "Invalid username or password, try again";
echo form($error);
}
}
}
else
{
if($_GET['logout'])
{
session_destroy();
$error = "Logged Out Success - Try Again"; echo form($error); } else { if ($_SESSION['username']) { if (login_check($_SESSION['username'],$_SESSION['password'])) { echo '
Log out'; } else { $error = "Please Login"; echo form($error); } } else { $error = "Welcome, Please Login"; echo form($error); } } }
ob_end_flush();
?>