%
Function ChkString(string)
ChkString = server.htmlencode(Replace(string, "'", "''"))
End Function
if Request.QueryString("login")="yes" then
set my_conn= Server.CreateObject("ADODB.Connection")
set rs = server.CreateObject("ADODB.RecordSet")
Cookies_Time=Request.Form("Cookies_Time")
IsUser=False
my_Conn.Open ConnString
strSql ="SELECT M_Name, M_Password from Members where M_Name = '" & ChkString(Request.Form("UserName")) & "' and M_Password = '" & ChkString(Request.Form("Password")) &"'"
set rs = my_conn.Execute (StrSql)
if rs.BOF or rs.EOF then
IsUser=False
Else
Response.Cookies("User")("Name")= Request.Form("UserName")
Response.Cookies("User")("Pword")= Request.Form("Password")
if Cookies_Time > 0 then
Cookies_Time=dateadd("d",Cookies_Time,date())
Response.Cookies("User").expires=Cookies_Time
end if
IsUser=True
End If
%>
| align="center">
<%
if IsUser then
%>您的用户名称及密码将保存到<%=Cookies_Time%> 登录成功!返回论坛首页 <% else %>用户名或密码错误,请单击这里重新输入! 如果您不是本论坛的注册用户,请注册,谢谢! <%end if my_conn.Close set my_conn = nothing set rs = nothing %> |