%@LANGUAGE="VBSCRIPT"%> <% '---------- Computer Postcards -------------------------------- 'Copyright (c) 2002-2003 Jackie Johnston, ComputerPostcards.com 'All Rights Reserved. 'Version: 2.0.4 '-------------------------------------------------------------- %> <% set rsPreferences = Server.CreateObject("ADODB.Recordset") rsPreferences.ActiveConnection = MM_connCards_STRING rsPreferences.Source = "SELECT * FROM preferences" rsPreferences.CursorType = 0 rsPreferences.CursorLocation = 2 rsPreferences.LockType = 3 rsPreferences.Open() rsPreferences_numRows = 0 %> <% set rsText = Server.CreateObject("ADODB.Recordset") rsText.ActiveConnection = MM_connCards_STRING rsText.Source = "SELECT * FROM postcardstext" rsText.CursorType = 0 rsText.CursorLocation = 2 rsText.LockType = 3 rsText.Open() rsText_numRows = 0 %> <% If cstr(Request.Form("username"))<>"" Then If Request.form("checkbox") ="1" Then Response.Cookies("checkusername") = Request.Form("username") Response.Cookies("checkpassword") = Request.Form("password") Response.Cookies("checkcookie") = "1" Response.Cookies("checkusername").expires = Date + 365 Response.Cookies("checkpassword").expires = Date + 365 Response.Cookies("checkcookie").expires = Date + 365 Else Response.Cookies("checkcookie") = "" Response.Cookies("checkusername") = "" Response.Cookies("checkpassword") = "" End If End If %> <% ' *** Validate request to log in to this site. MM_LoginAction = Request.ServerVariables("URL") If Request.QueryString<>"" Then MM_LoginAction = MM_LoginAction + "?" + Request.QueryString MM_valUsername=CStr(Request.Form("username")) If MM_valUsername <> "" Then MM_fldUserAuthorization="subscribe_active" MM_redirectLoginSuccess="index.asp" MM_redirectLoginFailed="subscriberlogin.asp?message=" + rsText.Fields.Item("sub_tryagain").Value MM_flag="ADODB.Recordset" set MM_rsUser = Server.CreateObject(MM_flag) MM_rsUser.ActiveConnection = MM_connCards_STRING MM_rsUser.Source = "SELECT subscribe_username, subscribe_password" If MM_fldUserAuthorization <> "" Then MM_rsUser.Source = MM_rsUser.Source & "," & MM_fldUserAuthorization MM_rsUser.Source = MM_rsUser.Source & " FROM subscribers WHERE subscribe_username='" & MM_valUsername &"' AND subscribe_password='" & CStr(Request.Form("password")) & "'" MM_rsUser.CursorType = 0 MM_rsUser.CursorLocation = 2 MM_rsUser.LockType = 3 MM_rsUser.Open If Not MM_rsUser.EOF Or Not MM_rsUser.BOF Then ' username and password match - this is a valid user Session("MM_Username") = MM_valUsername If (MM_fldUserAuthorization <> "") Then Session("MM_UserAuthorization") = CStr(MM_rsUser.Fields.Item(MM_fldUserAuthorization).Value) Else Session("MM_UserAuthorization") = "" End If if CStr(Request.QueryString("accessdenied")) <> "" And true Then MM_redirectLoginSuccess = Request.QueryString("accessdenied") End If MM_rsUser.Close Response.Redirect(MM_redirectLoginSuccess) End If MM_rsUser.Close Response.Redirect(MM_redirectLoginFailed) End If %>
<%=(rsPreferences.Fields.Item("headhtml").Value)%>
| " size="+2"><%=(rsText.Fields.Item("sub_sublogin").Value)%> | "><%=(rsText.Fields.Item("sub_notregistered").Value)%> <%=(rsText.Fields.Item("sub_click").Value)%> <%=(rsText.Fields.Item("sub_forgot").Value)%> <%=(rsText.Fields.Item("sub_click").Value)%> |
<%=(rsPreferences.Fields.Item("bottomhtml").Value)%> <% rsPreferences.Close() %> <% rsText.Close() %>