Welcome Guest, Not a member yet? Register   Sign In
How to seperate admin and regular user with one login
#1

Good day everyone!

I have my login working fine but wanted to see how does an admin and basic connect using only one login? Here is my login code:

<?php
// Initialize the session
 if(!isset($_SESSION)) { session_start(); }
// Check if the user is already logged in, if yes then redirect him to welcome page
if(isset($_SESSION["loggedin"]) && $_SESSION["loggedin"] === true){
    header("location: welcome.php");
    exit;
}
 
// Include config file
require_once "application/config/database.php";
 
// Define variables and initialize with empty values
$username = $password = "";
$username_err = $password_err = "";
 
// Processing form data when form is submitted
if($_SERVER["REQUEST_METHOD"] == "POST"){
 
    // Check if username is empty
    
    if(empty($_POST["username"])){
        $username_err = "Please enter username.";
    } else{
        $username = trim($_POST["username"]);
    }
    
    // Check if password is empty
    if(empty($_POST["password"])){
        $password_err = "Please enter your password.";
    } else{
        $password = trim($_POST["password"]);
    }
    
    // Validate credentials
    if(empty($username_err) && empty($password_err)){
        // Prepare a select statement
        $sql = "SELECT id, username, password FROM users WHERE username = ?";
        
        if($stmt = mysqli_prepare($link, $sql)){
            // Bind variables to the prepared statement as parameters
            mysqli_stmt_bind_param($stmt, "s", $param_username);
            
            // Set parameters
            $param_username = $username;
            
            // Attempt to execute the prepared statement
            if(mysqli_stmt_execute($stmt)){
                // Store result
                mysqli_stmt_store_result($stmt);
                
                // Check if username exists, if yes then verify password
                if(mysqli_stmt_num_rows($stmt) == 1){                    
                    // Bind result variables
                    mysqli_stmt_bind_result($stmt, $id, $username, $hashed_password);
                    if(mysqli_stmt_fetch($stmt)){
                        if(password_verify($password, $hashed_password)){
                            // Password is correct, so start a new session
                            session_start();
                            
                            // Store data in session variables
                            $_SESSION["loggedin"] = true;
                            $_SESSION["id"] = $id;
                            $_SESSION["username"] = $username;                            
                            
                            // Redirect user to welcome page
                            header("location: welcome.php");
                        } else{
                            // Display an error message if password is not valid
                            $password_err = "The password you entered was not valid.";
                        }
                    }
                } else{
                    // Display an error message if username doesn't exist
                    $username_err = "No account found with that username.";
                }
            } else{
                echo "Oops! Something went wrong. Please try again later.";
            }
        }
        
        // Close statement
        mysqli_stmt_close($stmt);
    }
    
    // Close connection
    mysqli_close($link);
}
?>
 
<!DOCTYPE html>
<html lang="en">
<head>
    <meta charset="UTF-8">
    <title>Login</title>
    <link rel="stylesheet" href="https://maxcdn.bootstrapcdn.com/bootstrap/3.3.7/css/bootstrap.css">
        <style type="text/css">

    :Confusedelection { background-color: #E13300; color: white; }
    ::-moz-selection { background-color: #E13300; color: white; }

    body {
        background-color: black;
        margin: 40px;
        font: 20px normal Helvetica, Arial, sans-serif;
        color: #4F5155;
        text-align: center;
        color: #708090;
    
 
    }

    a {
        color: #003399;
        background-color: transparent;
        font-weight: normal;
    }

    h1 {
        color: #800000;
        background-color: transparent;
        
        font-size: 40px;
        font-weight: normal;
        margin: 0 0 14px 0;
        padding: 14px 15px 10px 15px;
        text-align: center;
    }

    code {
        color: #800000;
        font-family: Consolas, Monaco, Courier New, Courier, monospace;
        font-size: 20px;
        background-color: #f9f9f9;
        border: 1px solid #D0D0D0;
        color: #002166;
        display: block;
        margin: 14px 0 14px 0;
        padding: 12px 10px 12px 10px;
    }

    #body {
        margin: 0 15px 0 15px;
    }

    p.footer {
        text-align: center;
        font-size: 12px;
        position: fixed;
   left: 0;
   bottom: 0;
   width: 100%;
        line-height: 32px;
        padding: 0 10px 0 10px;
        margin: 20px 0 0 0;
            color: #800000;
    }


    
.button {
  display: inline-block;
  padding: 15px 25px;
  font-size: 24px;
  cursor: pointer;
  text-align: center;
  text-decoration: none;
  outline: none;
  color: #708090;
  background-color: #800000;
  border: none;
  border-radius: 15px;
  box-shadow: 0 9px #708090;
}

.button:hover {background-color: #800000}

.button:active {
  background-color: #800000;
  box-shadow: 0 5px #708090;
  transform: translateY(4px);
}

#main {
  width: 70px;
  height: 200px;
 
  display: -webkit-flex;
  display: flex;
  -webkit-flex-wrap: wrap;
  flex-wrap: wrap;
  -webkit-align-content: center;
  align-content: center;
}

#main div {
  width: 70px;
  height: 70px;
}

a:link {
  color: #800000;
  background-color: transparent;
  text-decoration: none;
}
    </style>
</head>
<body>
    <div class="wrapper">
        <h2>Login</h2>
        <p>Please fill in your credentials to login.</p>
        <form action="<?php echo htmlspecialchars($_SERVER["PHP_SELF"]); ?>" method="post">
            <div class="form-group <?php echo (!empty($username_err)) ? 'has-error' : ''; ?>">
                <label>Username</label>
                <input type="text" name="username" class="form-control" value="<?php echo $username; ?>">
                <span class="help-block"><?php echo $username_err; ?></span>
            </div>    
            <div class="form-group <?php echo (!empty($password_err)) ? 'has-error' : ''; ?>">
                <label>Password</label>
                <input type="password" name="password" class="form-control">
                <span class="help-block"><?php echo $password_err; ?></span>
            </div>
            <div class="form-group">
                <input type="submit" class="btn btn-primary" value="Login">
            </div>
            
            <p>Don't have an account? <?= anchor('register/pass','Sign up now');?>.</p>
        </form>
    </div>    
</body>
</html>


What do I add that when the Admin logs in they are redirected to admin dashboard?



Heart Heart ,
Mekaboo
Reply
#2

In what way is this a CodeIgniter question? Your code only has "old fashion" php syntax.
I'm missing all the basic stuff that is characteristic for CI coding, like separating code into model - view - controller, loading libraries for sessions, database settings etc.
You really should invest some time (several days) to learn the basics.
Besides that, if you share code in this forum, please use the code or php buttons on the toolbar.
Reply
#3

(04-23-2019, 02:53 PM)Wouter60 Wrote: In what way is this a CodeIgniter question? Your code only has "old fashion" php syntax.
I'm missing all the basic stuff that is characteristic for CI coding, like separating code into model - view - controller, loading libraries for sessions, database settings etc.
You really should invest some time (several days) to learn the basics.
Besides that, if you share code in this forum, please use the code or php buttons on the toolbar.

My apologies!
Reply




Theme © iAndrew 2016 - Forum software by © MyBB