include("include/configuration.inc.php"); ##### $wartungsmodus = 0; ##### $action = $_POST[action]; $logintimeuser = $_POST[logintimeuser]; $logintimepw = $_POST[logintimepw]; if ($_GET[logout] == 1) { setcookie ( "loginrottertimeuser", "", time() - 3600, "", ".tool.rotter.vg", false); setcookie ( "loginrottertimepw", "", time() - 3600, "", ".tool.rotter.vg", false); setcookie ( "loginrottertimekunde", "", time() - 3600, "", ".tool.rotter.vg", false); header('Location: index.php'); } if ($action == "login") { //1 $logintimeuser=strtolower($logintimeuser); $dbpruf = new db_local; /*$dbpruf->query("SELECT * FROM mitarbeiter inner join makunden inner join kunden WHERE mitarbeiter.name = '$logintimeuser' and mitarbeiter.maid = makunden.maid and makunden.kundenid = kunden.kundenid");*/ $dbpruf->query("SELECT * FROM mitarbeiter WHERE name = '$logintimeuser'"); $dbpruf->next_record(); $prufpw = $dbpruf->record['pw']; $userid = $dbpruf->record['maid']; $maname = $dbpruf->record['maname']; $md5pass = $prufpw; $md5logintimepw = md5($logintimepw); echo $prufpw; echo $userid; if ($md5pass == $md5logintimepw) { //2 setcookie ( "loginrottertimeuser", $userid, time()+(3600*2), "", ".tool.rotter.vg", false); setcookie ( "loginrottertimepw", $md5logintimepw, time()+(3600*2), "", ".tool.rotter.vg", false); setcookie ( "loginrottertimekunde", 1, time() + (3600*2), "", ".tool.rotter.vg", false); header('Location: index.php'); } //2 else { echo "Falsches Passwort"; } } //1 $user = $_COOKIE['loginrottertimeuser']; $kunde = $_COOKIE['loginrottertimekunde']; $userpw = $_COOKIE['loginrottertimepw']; if ($userpw == "") { $userpw = md5($userpass); } if ($user == "") { $status = "0"; } else { $dbstatus = new db_local; $dbstatus->query("SELECT * FROM kunden WHERE name = '$kunde'"); $dbstatus -> next_record(); $dbpass = $dbstatus->record['passwort']; $dbpass2 = md5($dbpass); $userid = $dbstatus->record['userid']; if ($dbpass2 == $userpw) { $status = $dbstatus->record['status']; $login = "1"; } } ?>