kan dit werken, of kom ik erdoor met elk paswoord?(en hoe lang is een sha1 ijgenlijk ms is er niet genoeg plaats in de db)
PHP:
<?
$username="xxx";
$password="xxx";
$database="xxx";
$localhost="mysql4.freehostia.com";
mysql_connect($localhost,$username,$password);
@mysql_select_db($database) or die( "Unable to select database");
$user=$_POST['username'];
$pass=$_POST['password'];
$pass=sha1(pass);
$query = "SELECT * FROM user WHERE username = '$user' AND password = '$pass' ";
$result = mysql_query( $query ) or die( mysql_error() );
if( mysql_num_rows( $result ) == 0 )
{
echo 'wrong username or password';
}
else
{
session_start();
$_SESSION['user'] = '$user';
print(" you will be redirected in 5 seconds");
?>
<META HTTP-EQUIV="Refresh"
CONTENT="5; URL=main.php">
<?
}
?>