当用户登录时,将他们发送到他们自己的个人资料页面


when a user logs in send them to their own profile page

当用户登录时,他们被重定向到member.php,下面是登录代码,后面跟着member.php代码。

login。

        <?php
        session_start ();
        include 'core/init.php';

        $username = '';
        $password = '';
        $dbusername = '';
        $dbpassword = '';
        if (isset($_POST['Email']) && isset($_POST['Password']))
        {
            $username = $_POST['Email'];
            $password = md5($_POST['Password']);

        $query = mysql_query("SELECT * FROM member WHERE Email ='$username' AND Password='$password'");

        $numrow = mysql_num_rows ($query);
        // user login
        if ($numrow!=0)
        {
            while ($row = mysql_fetch_assoc($query))
            {
                $dbusername = $row['Email'];
                $dbpassword = $row['Password'];
            }
            //Check to see if they match
            if ($username==$dbusername&&$password==$dbpassword)
            {
                $_SESSION ['Email']=$username;
                header("Location: member.php");

            }
            }
            else 
            {
                // admin login
                $query2 = mysql_query("SELECT * FROM admin WHERE Email ='$username' AND Password ='$password'");
                $numrow2 = mysql_num_rows ($query2);
                if ($numrow2!=0)
                {
                    while ($row = mysql_fetch_assoc($query2))
                    {
                        $dbusername = $row['Email'];
                        $dbpassword = $row['Password'];
                    }
                    //Check to see if they match
                  if ($username==$dbusername&&$password==$dbpassword)
                    {
                        $_SESSION ['Email']=$username;
                        header("Location: admin.php");
                    }
                    else{
                        echo "Incorrect password";
                    }
                }
                    else{
                if ($username!=$dbusername&&$password!=$dbpassword)
                {die("That user does not exist!");
                }
                }
            }
        }
                /*if ($numrow2!=0)
                {
                    while ($row = mysql_fetch_assoc($query2))
                    {
                $dbusername = $row['Email'];
                if ($username!=$dbusername)
                {die("That user does not exist!");
                }
                }
                }
        else
            die("Please enter your email address and password");
        */
  ?>

member.php代码(我知道这很乱。对不起,现在只需要让它工作)

 <div id="header"> 
                            <div id= "logout"> 
                            <?php
                                if(isset($_GET['username']) === true & empty ($_GET['username']) === false) 
                                        $username = $_GET ['username'];
                                            if (user_exists($username) === true) {
                                        echo "<p>Welcome, ".$_SESSION['Email']. "!<br><a href='logout.php'>Logout</a>'n<a href='index.php'>Back to homepage</a></p>";
                            ?></div>
                            </div>  
                            <div id="main-content">
                            <?php
                                //get username from user id
                                $MemberID  = user_id_from_username($username);
                                $profile_data =user_data($MemberID, 'Name','Email');//Need to pull out stuff from oddjob table
                            ?>
                                    <h1><?php echo $profile_data['Name']; ?>'s profile</h1>
                                    <p><?php echo $profile_data['Email'];?></p>
                            <?php
                                } else {
                                    echo '<p>Sorry, cannot find that user on system.</p>';
                                }

                            ?>

现在我已经设置了member.php,这样如果我在URL中输入一个用户名(这是用户的电子邮件地址),它会显示一些特定于该用户的配置文件数据。

然而,当我作为一个用户登录,并得到重定向到member.php我只是看到一个空白页和用户名不显示在URL,只是一个错误消息说"未定义的变量:用户名"的用户,我不知道如何编辑这个,以便它的工作和成员被发送到他们自己的个人资料页面。

相关功能如下:

显然也
        function logged_in() {
            return (isset($_SESSION['MemberID'])) ? true : false; //Email
        }
        function user_data($MemberID){
                $data = array();
                $MemberID =(int)$MemberID;
                $func_num_args = func_num_args();
                $func_get_args = func_get_args();
                if ($func_num_args >1) {
                    unset($func_get_args[0]);
                    $fields = '`' . implode('`,`', $func_get_args) . '`';   
                    $data = mysql_fetch_assoc(mysql_query("SELECT $fields FROM `member` WHERE `MemberID` = $MemberID"));//expects parameter 1 to be resourse
                    return $data;
                }
        }
        function user_id_from_username($username) {
            $username = sanitize($username);
            return mysql_result(mysql_query("SELECT `MemberID` FROM `member` WHERE `Email` = '$username'"),0, 'MemberID');

Init.php:

            if (logged_in() ===true) {
                $session_MemberID = $_SESSION['MemberID'];//undefined?
                $user_data= user_data($session_MemberID,'MemberID','Name','Address','Postcode','DOB','Mobile','Email','Password','RepeatPassword');
                exit();
                }

老实说,我一直在看这个代码这么长时间了,我完全盲目/失去了如何解决这个问题。如果可以,请帮忙。

index . php

        <div id= "login">
            <form action="login.php" method="post">
            <?php
                if (logged_in() === true) {
                    echo "<p>Welcome, ".$_SESSION['Email']. "!<br><a href='logout.php'>Logout</a>";
                        }else
                            echo"<h4>Username: <input type='text' name='Email'><br>
                                Password: <input type='Password' name='Password'>
                                <input type='submit' value='Log In'><br> 
                                <a href='register2.php'>Register?</a>

            </form>"
            ?>

在member.php页面上,你尝试从$_GET中获取用户名,但是当你在login.php中重定向用户时,你没有传递任何参数。

要么只依赖于你设置的$_SESSION,要么改变你的重定向:

header('Location: member.php?username='.$username);

这个头部命令:

header("Location: member.php");

必须在头部上方。只有在没有向用户发送其他HTML代码时才能调用它。例如:

<?php
header("Location: member.php");
?>
<html>
<head>
</head>
<body>
</body>
</html>