1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26
| <?php
$q = "SELECT user_login, user_pass, user_is_admin
FROM la_table_users
WHERE user_login = '" . mysql_real_escape_string($_POST['login_saisi']) ."'
AND user_pass = '". mysql_real_escape_string($_POST['pass_saisi']) ."' ";
$r = mysql_query($q) or die(mysql_error());
$nb = mysql_num_rows($r);
if($nb == 0){ //l'utilisateur n'existe pas
header("Location: http://www.tonsite.com/ta_page_erreur.php");
exit;
}
else{ // l'utilisateur existe
$is_admin = mysql_result($r, 0, "user_is_admin");
if($is_admin == 1){ // c'est un admin
header("Location: http://www.tonsite.com/ta_page_admin.php");
}
else{
header("Location: http://www.tonsite.com/ta_page_utilisateur.php");
}
}
?> |
Partager