northernbeaver
Programmer
I have two asp Pages, first one is pretty straight forward, it askes the user for username, password and a few Others with a submit button which is supposed to submit the form and pass the variables to the second asp page that is supposed to validate the data given by the user and depending upon if the username and password is good it redirects the user to the page required. I dont want to put the username and password into the querry string for security reasons. so I am using the request.form command to get the data but I cant get it to work. please check out the code and see what you think
BTW it just connect to an ODBC connection to a Access 2000 MDB.
Thanks
***First Pages Code****
<%
' =====================================================================
' Open a connection to the database if one is not already present
If IsObject(Session(sConnName)) Then
Set conn = Session(sConnName)
Else
Set conn = Server.CreateObject("ADODB.Connection"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
conn.open sDSName,sUsrName,sUsrPassWord
Set Session(sConnName) = conn
End If
Set rs = Server.CreateObject("ADODB.Recordset"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
Set rs2 = Server.CreateObject("ADODB.Recordset"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
' =====================================================================
dim varProdId
varprodid = Request.querystring("prodid"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim varSessionId
varSessionId = Session.SessionID
dim sdate
sdate = int(date())
sdate = replace(sdate,"/","7"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim sTime
sTime = FormatNumber(time())
sTime = replace(sTime,".","6"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim sOrderNumber
'sOrderNumber = sdate & sTime
dim varprice
dim sysid
'dim sPageMode
'sPageMode = Request.querystring("pagemode"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim sOrderid
Dim tblName
dim varLineitem
dim varInstalledin
dim varTotal
varTotal = 0
dim varGoPage
varGoPage = Request.QueryString("gopage"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim validationstring
dim varUserid
varUserid = Request.QueryString("userid"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
sql = "SELECT orderid, ordate, orderNum,userID,status,ModDate,terminate, orSessionid FROM tblOrder "
sql = sql & " WHERE orSessionId = '" & varSessionId & "'"
rs.Open sql, conn, adOpenStatic, adLockPessimistic
if not(rs.EOF or rs.BOF) then
rs.MoveFirst
rs.Fields("userid"
= varUserid
rs.Fields("status"
= "ORDERED"
rs.Update
sordernumber = rs("ordernum"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
sorderid= rs("orderid"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
else
sorderid = 0
sordernumber = 0
'error has occured
end if
rs.Close
%>
<html>
<head>
<meta name="GENERATOR" content="Microsoft FrontPage 3.0">
<title>User Sign Up</title>
<script LANGUAGE="JavaScript">
<!--
function PageReDirect(target)
{
document.forms[0].action = target;
document.forms[0].submit();
}
//-->
</script>
</head>
<body bgcolor="#FFFFFF" topmargin="0" leftmargin="0" text="#000000" marginheight="0">
<%
'Response.Write "Your SessionID is " & Session.SessionID
'Response.Write sOrderNumber
'Response.Write spagemode
%>
<table border="1" width="100%">
<form method="POST">
<tr><td align="center" valign="Top" width="75%"colspan = "2"><img src="images/STGBeveled.gif" alt="Synergenics New User Sign up Form" align = "center"><br><br><font face="verdana" size="5" color="#0066CC">New User Sign Up Form</form></tr>
<tr><td align="Left" valign="Top" width="40%">Please Enter Your Name </td><td align="Left" valign="Top" width="25%"><input type = "Text" Name="UserName"tabindex="1"> </td></tr>
<tr><td align="Left" valign="Top" width="50%">Please Enter Your Phone Number: Please note, This is the Number you will be contacted by.</td><td align="Left" valign="Top" width="25%"> <input type = "Text" Name="phone"tabindex="2"> </td></tr>
<tr><td align="Left" valign="Top" width="50%">Please Enter the Desired <b>User Name:</b> This will be what you logon with. </td><td align="Left" valign="Top" width="25%">
<br>Here I am <input type = "Text" Name="usrAccountName" tabindex = "3"> </td></tr>
<tr><td align="Left" valign="Top" width="50%">Please Enter Your Password</td><td width="50%" valign="top" align="left" height="26"><font face="Verdana" size="2"><br>here I am<input type ="password" name = "usrPassword" tabindex="4" ></font></td>
<tr><td align="Left" valign="Top" width="50%">Please Enter Your Shipping Address: </td><td align="Left" valign="Top" width="25%"><TEXTAREA NAME="ship" ROWS=5 COLS=35 tabindex="5"></textarea><BR> </td></tr>
<tr><td align="Left" valign="Top" width="50%"></td><td align="Right" valign="Top" width="100%"colspan = "2">
<%
Response.Write "<input type = ""button"" value = " & chr(34) & "Create Account" & chr(34) & " name = " & chr(34) & "subbutton" & chr(34) & " onclick ="& chr(34) &"PageReDirect('adduser.asp?gopage="& vargopage &"')" & chr(34) & ">"
%>
<input type="Reset" value="Clear Changes" name="B3">
</table>
<%
Response.Write "<input type=""hidden"" name=""gotopage"" value=" & chr(34) & varGoPage & chr(34) & ">"
if request.querystring("MSG"
<>"" then
response.write "<HR size=""1"" color=""#c0c0c0"">"
sMsg = request.querystring("MSG"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
sMsg = replace(sMsg,"%20"," "![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
response.write "<font face=""verdana"" size=""4"" color=""red"">" & sMsg & "</font>"
response.write "<hr size=""1"" color=""#c0c0c0"">"
end if
%>
</form>
</td>
</tr>
</table>
</body>
</html>
***END FIRST PAGE
*** START SECOND PAGE****
<%
' =====================================================================
' Open a connection to the database if one is not already present
If IsObject(Session(sConnName)) Then
Set conn = Session(sConnName)
Else
Set conn = Server.CreateObject("ADODB.Connection"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
conn.open sDSName,sUsrName,sUsrPassWord
Set Session(sConnName) = conn
End If
Set rs = Server.CreateObject("ADODB.Recordset"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
Set rs2 = Server.CreateObject("ADODB.Recordset"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
' =====================================================================
dim varProdId
varprodid = Request.querystring("prodid"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim varSessionId
varSessionId = Session.SessionID
dim sdate
sdate = int(date())
sdate = replace(sdate,"/","7"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim sTime
sTime = FormatNumber(time())
sTime = replace(sTime,".","6"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim sOrderNumber
'sOrderNumber = sdate & sTime
dim varprice
dim sysid
'dim sPageMode
'sPageMode = Request.querystring("pagemode"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim varUrl
dim sOrderid
Dim tblName
dim varLineitem
dim varInstalledin
dim varTotal
varTotal = 0
dim varGoPage
varGoPage = Request.QueryString("gopage"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim validationstring
dim varname
varname = Request.Form("usrAccountName"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim varpass
varpass = Request.Form("usrPassword"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
'dim varphone
'varphone = Request.Form("phone"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
'dim varship
'varship = Request.Form("ship"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
'dim varusrName
'varusrName = Request.Form("UserName"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
dim sErr
sErr = ""
Response.Write "vargopage" & vargopage
if request.form("usrAccountName"
<>"" or request.form("usrPassword"
<> "" then
else
if Request.Form("usrAccountName"
= "" then
serr = "Your username is blank pass"& Request.Form("usrPassword"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
if Request.Form("usrPassword"
= "" then
serr = serr + " Your password is blank"
end if
else
if Request.Form("usrAccountname"
> "" and Request.Form("usrPassword"
= "" then
serr = "just your password is blank "
end if
end if
'sErr = "Either the user name or password, or both, were not entered. Please try again."
response.redirect "newuser.asp?gopage=" & vargopage &"&MSG=" & sErr
end if
sql = "SELECT UserId, UserName, usrPassword, Login, Terminate, Phone, ship FROM tblUser"
sql = sql & " WHERE Login = '" & varname & "'AND terminate = false"
rs.Open sql, conn, adOpenStatic, adLockPessimistic
on error resume next
rs.movefirst
rs.RecordCount
'Response.Write rs.RecordCount & "<br><br>"
'Response.Write sql
If rs.RecordCount <> 0 Then
sErr = "That UserName is already in use. Please select another user name"' Username and Password already exsists.
varUrl = "newuser.asp?gopage="& vargopage &"&MSG="& sERR
Response.Redirect(varUrl)
Else
rs.AddNew
rs.Fields("UserName"
= Request.Form("usrAccountName"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
rs.Fields("login"
= varname
rs.Fields("usrPassword"
= Request.Form("usrPassword"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
rs.Fields("ship"
= varship
rs.Fields("phone"
= varphone
rs.Update
rs.Close
varUrl = "usrlogon.asp?gopage="& vargopage &"&MSG="&chr(34)&"Please Logon with your new User Name and password to verify it was typed in correctly "& chr(34) &"name"& varname & " pass" & Request.Form("usrPassword"![Wink ;) ;)](data:image/gif;base64,R0lGODlhAQABAIAAAAAAAP///yH5BAEAAAAALAAAAAABAAEAAAIBRAA7)
Response.Redirect(varUrl)
End if
rs.Close
%>
<html>
<head>
<meta name="GENERATOR" content="Microsoft FrontPage 3.0">
<title>The User Account has Been Made</title>
<script LANGUAGE="JavaScript">
<!--
function PageReDirect(target)
{
document.forms[0].action = target;
document.forms[0].submit();
}
//-->
</script>
</head>
<body background="images\homepc2.jpg" bgcolor="#FFFFFF" topmargin="0" leftmargin="0" text="#000000" marginheight="0">
<%
'Response.Write "Your SessionID is " & Session.SessionID
'Response.Write sOrderNumber
'Response.Write spagemode
%>
<table border="1" width="75%">
<form method="post" action="_vti_bin/shtml.dll/UsrLogon.asp" webbot-action="--WEBBOT-SELF--" id=form1 name=form1>
<%
If len(sErr) = 0 then
Response.Write "<tr><td align=""Left"" valign=""Top"" width=""30%"">The Following account has been made:<br><br>"
Response.Write "Username: " & varUsrName & "<br><br>"
Response.Write "Phone Number: " &varphone & "<br><br>"
Response.Write "Shiping Address" & varship & "<br><br>"
Response.Write "Please make sure to write this information down as well as your password.<br><br>"
Select Case varGoPage
Case "orderconfirm"
Response.Write "</td></tr><tr><td align=""Left"" valign=""Top"" width=""10%""><input type = ""button"" value=""Continue"" name=""DetailsButton"" onclick =""PageReDirect('orderconfirm.asp?userid="& varUsrName & "')"""
Case "view"
end select
'Response.Write "error:" & sErr
Else
Response.Write sErr
end if
%>
</form>
</td>
</tr>
</table>
</body>
</html>
BTW it just connect to an ODBC connection to a Access 2000 MDB.
Thanks
***First Pages Code****
<%
' =====================================================================
' Open a connection to the database if one is not already present
If IsObject(Session(sConnName)) Then
Set conn = Session(sConnName)
Else
Set conn = Server.CreateObject("ADODB.Connection"
conn.open sDSName,sUsrName,sUsrPassWord
Set Session(sConnName) = conn
End If
Set rs = Server.CreateObject("ADODB.Recordset"
Set rs2 = Server.CreateObject("ADODB.Recordset"
' =====================================================================
dim varProdId
varprodid = Request.querystring("prodid"
dim varSessionId
varSessionId = Session.SessionID
dim sdate
sdate = int(date())
sdate = replace(sdate,"/","7"
dim sTime
sTime = FormatNumber(time())
sTime = replace(sTime,".","6"
dim sOrderNumber
'sOrderNumber = sdate & sTime
dim varprice
dim sysid
'dim sPageMode
'sPageMode = Request.querystring("pagemode"
dim sOrderid
Dim tblName
dim varLineitem
dim varInstalledin
dim varTotal
varTotal = 0
dim varGoPage
varGoPage = Request.QueryString("gopage"
dim validationstring
dim varUserid
varUserid = Request.QueryString("userid"
sql = "SELECT orderid, ordate, orderNum,userID,status,ModDate,terminate, orSessionid FROM tblOrder "
sql = sql & " WHERE orSessionId = '" & varSessionId & "'"
rs.Open sql, conn, adOpenStatic, adLockPessimistic
if not(rs.EOF or rs.BOF) then
rs.MoveFirst
rs.Fields("userid"
rs.Fields("status"
rs.Update
sordernumber = rs("ordernum"
sorderid= rs("orderid"
else
sorderid = 0
sordernumber = 0
'error has occured
end if
rs.Close
%>
<html>
<head>
<meta name="GENERATOR" content="Microsoft FrontPage 3.0">
<title>User Sign Up</title>
<script LANGUAGE="JavaScript">
<!--
function PageReDirect(target)
{
document.forms[0].action = target;
document.forms[0].submit();
}
//-->
</script>
</head>
<body bgcolor="#FFFFFF" topmargin="0" leftmargin="0" text="#000000" marginheight="0">
<%
'Response.Write "Your SessionID is " & Session.SessionID
'Response.Write sOrderNumber
'Response.Write spagemode
%>
<table border="1" width="100%">
<form method="POST">
<tr><td align="center" valign="Top" width="75%"colspan = "2"><img src="images/STGBeveled.gif" alt="Synergenics New User Sign up Form" align = "center"><br><br><font face="verdana" size="5" color="#0066CC">New User Sign Up Form</form></tr>
<tr><td align="Left" valign="Top" width="40%">Please Enter Your Name </td><td align="Left" valign="Top" width="25%"><input type = "Text" Name="UserName"tabindex="1"> </td></tr>
<tr><td align="Left" valign="Top" width="50%">Please Enter Your Phone Number: Please note, This is the Number you will be contacted by.</td><td align="Left" valign="Top" width="25%"> <input type = "Text" Name="phone"tabindex="2"> </td></tr>
<tr><td align="Left" valign="Top" width="50%">Please Enter the Desired <b>User Name:</b> This will be what you logon with. </td><td align="Left" valign="Top" width="25%">
<br>Here I am <input type = "Text" Name="usrAccountName" tabindex = "3"> </td></tr>
<tr><td align="Left" valign="Top" width="50%">Please Enter Your Password</td><td width="50%" valign="top" align="left" height="26"><font face="Verdana" size="2"><br>here I am<input type ="password" name = "usrPassword" tabindex="4" ></font></td>
<tr><td align="Left" valign="Top" width="50%">Please Enter Your Shipping Address: </td><td align="Left" valign="Top" width="25%"><TEXTAREA NAME="ship" ROWS=5 COLS=35 tabindex="5"></textarea><BR> </td></tr>
<tr><td align="Left" valign="Top" width="50%"></td><td align="Right" valign="Top" width="100%"colspan = "2">
<%
Response.Write "<input type = ""button"" value = " & chr(34) & "Create Account" & chr(34) & " name = " & chr(34) & "subbutton" & chr(34) & " onclick ="& chr(34) &"PageReDirect('adduser.asp?gopage="& vargopage &"')" & chr(34) & ">"
%>
<input type="Reset" value="Clear Changes" name="B3">
</table>
<%
Response.Write "<input type=""hidden"" name=""gotopage"" value=" & chr(34) & varGoPage & chr(34) & ">"
if request.querystring("MSG"
response.write "<HR size=""1"" color=""#c0c0c0"">"
sMsg = request.querystring("MSG"
sMsg = replace(sMsg,"%20"," "
response.write "<font face=""verdana"" size=""4"" color=""red"">" & sMsg & "</font>"
response.write "<hr size=""1"" color=""#c0c0c0"">"
end if
%>
</form>
</td>
</tr>
</table>
</body>
</html>
***END FIRST PAGE
*** START SECOND PAGE****
<%
' =====================================================================
' Open a connection to the database if one is not already present
If IsObject(Session(sConnName)) Then
Set conn = Session(sConnName)
Else
Set conn = Server.CreateObject("ADODB.Connection"
conn.open sDSName,sUsrName,sUsrPassWord
Set Session(sConnName) = conn
End If
Set rs = Server.CreateObject("ADODB.Recordset"
Set rs2 = Server.CreateObject("ADODB.Recordset"
' =====================================================================
dim varProdId
varprodid = Request.querystring("prodid"
dim varSessionId
varSessionId = Session.SessionID
dim sdate
sdate = int(date())
sdate = replace(sdate,"/","7"
dim sTime
sTime = FormatNumber(time())
sTime = replace(sTime,".","6"
dim sOrderNumber
'sOrderNumber = sdate & sTime
dim varprice
dim sysid
'dim sPageMode
'sPageMode = Request.querystring("pagemode"
dim varUrl
dim sOrderid
Dim tblName
dim varLineitem
dim varInstalledin
dim varTotal
varTotal = 0
dim varGoPage
varGoPage = Request.QueryString("gopage"
dim validationstring
dim varname
varname = Request.Form("usrAccountName"
dim varpass
varpass = Request.Form("usrPassword"
'dim varphone
'varphone = Request.Form("phone"
'dim varship
'varship = Request.Form("ship"
'dim varusrName
'varusrName = Request.Form("UserName"
dim sErr
sErr = ""
Response.Write "vargopage" & vargopage
if request.form("usrAccountName"
else
if Request.Form("usrAccountName"
serr = "Your username is blank pass"& Request.Form("usrPassword"
if Request.Form("usrPassword"
serr = serr + " Your password is blank"
end if
else
if Request.Form("usrAccountname"
serr = "just your password is blank "
end if
end if
'sErr = "Either the user name or password, or both, were not entered. Please try again."
response.redirect "newuser.asp?gopage=" & vargopage &"&MSG=" & sErr
end if
sql = "SELECT UserId, UserName, usrPassword, Login, Terminate, Phone, ship FROM tblUser"
sql = sql & " WHERE Login = '" & varname & "'AND terminate = false"
rs.Open sql, conn, adOpenStatic, adLockPessimistic
on error resume next
rs.movefirst
rs.RecordCount
'Response.Write rs.RecordCount & "<br><br>"
'Response.Write sql
If rs.RecordCount <> 0 Then
sErr = "That UserName is already in use. Please select another user name"' Username and Password already exsists.
varUrl = "newuser.asp?gopage="& vargopage &"&MSG="& sERR
Response.Redirect(varUrl)
Else
rs.AddNew
rs.Fields("UserName"
rs.Fields("login"
rs.Fields("usrPassword"
rs.Fields("ship"
rs.Fields("phone"
rs.Update
rs.Close
varUrl = "usrlogon.asp?gopage="& vargopage &"&MSG="&chr(34)&"Please Logon with your new User Name and password to verify it was typed in correctly "& chr(34) &"name"& varname & " pass" & Request.Form("usrPassword"
Response.Redirect(varUrl)
End if
rs.Close
%>
<html>
<head>
<meta name="GENERATOR" content="Microsoft FrontPage 3.0">
<title>The User Account has Been Made</title>
<script LANGUAGE="JavaScript">
<!--
function PageReDirect(target)
{
document.forms[0].action = target;
document.forms[0].submit();
}
//-->
</script>
</head>
<body background="images\homepc2.jpg" bgcolor="#FFFFFF" topmargin="0" leftmargin="0" text="#000000" marginheight="0">
<%
'Response.Write "Your SessionID is " & Session.SessionID
'Response.Write sOrderNumber
'Response.Write spagemode
%>
<table border="1" width="75%">
<form method="post" action="_vti_bin/shtml.dll/UsrLogon.asp" webbot-action="--WEBBOT-SELF--" id=form1 name=form1>
<%
If len(sErr) = 0 then
Response.Write "<tr><td align=""Left"" valign=""Top"" width=""30%"">The Following account has been made:<br><br>"
Response.Write "Username: " & varUsrName & "<br><br>"
Response.Write "Phone Number: " &varphone & "<br><br>"
Response.Write "Shiping Address" & varship & "<br><br>"
Response.Write "Please make sure to write this information down as well as your password.<br><br>"
Select Case varGoPage
Case "orderconfirm"
Response.Write "</td></tr><tr><td align=""Left"" valign=""Top"" width=""10%""><input type = ""button"" value=""Continue"" name=""DetailsButton"" onclick =""PageReDirect('orderconfirm.asp?userid="& varUsrName & "')"""
Case "view"
end select
'Response.Write "error:" & sErr
Else
Response.Write sErr
end if
%>
</form>
</td>
</tr>
</table>
</body>
</html>