<?php
//username and pass
require_once ("siteconfig.inc");
if ((ereg("[[:alnum:]]+$",$HTTP_POST_VARS[userid])) AND (eregi("[[:alnum:]]{8,16}$",$HTTP_POST_VARS[password])))
{ //check submitted info
$query4 = "SELECT userid, password FROM $table3 WHERE userid='$HTTP_POST_VARS[userid]'";
$query4_result = mysql_query ($db, $query4, $link) or die (mysql_error());
$result4 = @mysql_fetch_array ($query4_result);
if (( crypt($password, $result4 [password])) == $result4[password]) {
session_start();
$userid = $result4[0];
$firstname = $result4[1];
session_register ('userid');
session_register ('firstname');
header ("Location: mysite.com/mylogin/index.php");
exit;
}
else {
echo "<tr>\n"
."<td colspan=2 class=req align=center>The User ID and password submitted do not match those on file. Please Try Again</td>\n"
."</tr>\n";
}
}
else {
echo "<tr>\n"
."<td colspan=2 class=req align=center>Error</td>\n"
."</tr>\n";
}
?>