Below is my login page that works ok.
I have added another page which somebody wrote for me but they put a session in and I would like to know where to add the session in my login page or after my login page.
<%@LANGUAGE="VBSCRIPT"%>
<%
Dim Members__strUserID
Members__strUserID = "xyz"
if(Request.Form("UserID" <> "" then Members__strUserID = Request.Form("UserID"
Dim Members__strPassword
Members__strPassword = "123"
if(Request.Form("Password" <> "" then Members__strPassword = Request.Form("Password"
%> <%
set Membersragol = Server.CreateObject("ADODB.Recordset"
Members.ActiveConnection = "dsn=Members;"
Members.Source = "SELECT * FROM Members WHERE UserID = '" + Replace(Members__strUserID, "'", "''" + "' AND Password = '" + Replace(Members__strPassword, "'", "''" + "'"
Members.CursorType = 0
Members.CursorLocation = 2
Members.LockType = 3
Members.Open
Members_numRows = 0
%>
<%
If Members__strUserID <> "xyz" then
If Not Members.EOF Then
Session("svUserID" = (Members.Fields.Item("UserID".Value)
Session("svPassword" = (Members.Fields.Item("Password".Value)
Session("svAccessGroup" = (Members.Fields.Item("AccessGroup".Value)
strHomepage = Members.Fields.Item("HomePage".Value
Response.Redirect(strHomePage)
Else
Response.Redirect "login.asp"
End If
End If
%>
<----------here is the session that he put at the top of the pages--------->
<%
'If the session variable is False or does not exsist then redirect the user to the unauthorised user page
If Session("blnIsUserGood" = False or IsNull(Session("blnIsUserGood") = True then
'Redirect to unathorised user page
Response.Redirect"denied.asp"
End If
%>
I have added another page which somebody wrote for me but they put a session in and I would like to know where to add the session in my login page or after my login page.
<%@LANGUAGE="VBSCRIPT"%>
<%
Dim Members__strUserID
Members__strUserID = "xyz"
if(Request.Form("UserID" <> "" then Members__strUserID = Request.Form("UserID"
Dim Members__strPassword
Members__strPassword = "123"
if(Request.Form("Password" <> "" then Members__strPassword = Request.Form("Password"
%> <%
set Membersragol = Server.CreateObject("ADODB.Recordset"
Members.ActiveConnection = "dsn=Members;"
Members.Source = "SELECT * FROM Members WHERE UserID = '" + Replace(Members__strUserID, "'", "''" + "' AND Password = '" + Replace(Members__strPassword, "'", "''" + "'"
Members.CursorType = 0
Members.CursorLocation = 2
Members.LockType = 3
Members.Open
Members_numRows = 0
%>
<%
If Members__strUserID <> "xyz" then
If Not Members.EOF Then
Session("svUserID" = (Members.Fields.Item("UserID".Value)
Session("svPassword" = (Members.Fields.Item("Password".Value)
Session("svAccessGroup" = (Members.Fields.Item("AccessGroup".Value)
strHomepage = Members.Fields.Item("HomePage".Value
Response.Redirect(strHomePage)
Else
Response.Redirect "login.asp"
End If
End If
%>
<----------here is the session that he put at the top of the pages--------->
<%
'If the session variable is False or does not exsist then redirect the user to the unauthorised user page
If Session("blnIsUserGood" = False or IsNull(Session("blnIsUserGood") = True then
'Redirect to unathorised user page
Response.Redirect"denied.asp"
End If
%>