Table of Contents
回复讨论(解决方案)
Home Backend Development PHP Tutorial 这验证cookie 怎么没用啊

这验证cookie 怎么没用啊

Jun 23, 2016 pm 02:20 PM

cookie 验证

mysql_select_db("dhbase",$conn);
$sql="select * from dh_admin where uname='$lname' and upass='$ckpass' and work=1";
$result=mysql_query($sql,$conn);
if(mysql_num_rows($result) {
echo "账号信息有误";
exit;
}
else
{
$row=mysql_fetch_array($result);
$lid=$row["id"];
$ltime=date('y-m-d h:i:s',time());
$user_IP=@($_SERVER["HTTP_VIA"])?$_SERVER["HTTP_X_FORWARDED_FOR"]:$_SERVER["REMOTE_ADDR"];
$user_IP=($user_IP)?$user_IP:$_SERVER["REMOTE_ADDR"];
$lsql="INSERT INTO dh_alog(aid,logtime,logip) VALUES ('$lid','$ltime','$user_IP')";
if(!mysql_query($lsql,$conn))
{
die('Error: '.mysql_error());
}
setcookie("uname",$lname,time()+3600);
//echo $_COOKIE["uname"];
echo "<script>location.href='index_home.php';</script>";
exit;
}
这段登陆验证并写入cookie 输出cookie也是正常的
接着跳转到index_home.php这页面,该页面调用了验证页面admin_chk.php
代码如下:
session_start();
if(isset($_COOKIE["uname"]))
{
echo $_COOKIE["uname"];
}
else
{
echo "<script>alert('温馨提示:您的权限已经超时,请重新登录');location.href='index.php'</script>";
exit;
}
?>
这代码哪里写错了么?我这调试一登录就温馨提示:您的权限已经超时,请重新登录。
求高人指点,谢谢

回复讨论(解决方案)

代码没什么问题,你是怎么调试的。用多个浏览器测试下。

代码没什么问题,你是怎么调试的。用多个浏览器测试下。
谢谢啊 难道PHP还跟浏览器有关啊?

代码没什么问题,你是怎么调试的。用多个浏览器测试下。
我这换了IE 和 火狐 还是不行额
我直接在admin_chk.php 输出 $_COOKIE["uname"] 它报错说未定义。

怎么回事哦,我这刚学PHP就遇到这么奇怪的事啊

不知道你的 admin_chk.ph 代码是如何写的

cookie路径对么?

header("Content-Type: text/html; charset=gb2312");
session_start();
if(!isset($_COOKIE["uname"]))
{
echo "<script>alert('温馨提示:您的权限已经超时,请重新登录');location.href='index.php'</script>";
exit;
}
?>

这是admin_chk.php 文件

其中index_home.php 和 admin_chk.php 不是在一个目录下的
index_home.asp 引用:
include "inc/admin_chk.php"
?>
....


大神吃饭去了吗??

index_home.php 就是那点代码,前面还有不有?

文档布局
index_home.php
inc/admin_chk.php

inc/admin_chk.php 中有 setcookie("uname",$lname,time()+3600);

是这样吧?

那么
setcookie("uname",$lname,time()+3600);
应写作
setcookie("uname",$lname,time()+3600, '/');


index_home.php 就是那点代码,前面还有不有?
前面没了 后面就是一些html代码了



文档布局
index_home.php
inc/admin_chk.php

inc/admin_chk.php 中有 setcookie("uname",$lname,time()+3600);

是这样吧?

那么
setcookie("uname",$lname,time()+3600);
应写作
setcookie("uname",$lname,time()+3600, '/');

setcookie("uname",$lname,time()+3600); 这句是在登录验证login_ck.php的时候就写了的

登录界面是通过ajax 异步login_ck.php验证:

header("Content-Type: text/html; charset=gb2312");
session_start();
$lname=$_POST["Loname"];
if($lname=="")
{
echo "请输入用户名";
exit();
}
$lpass=$_POST["Lopass"];
if($lpass==""){
echo "请输入密码";
exit();
}
$lsx=$_POST["Losx"];
if($lsx=="")
{
echo "请输入密令";
exit();
}
if($lsx!="dhsystem")
{
echo "密令错误";
exit();
}
$lcode=strtolower($_POST["Locode"]);
if($lcode=="")
{
echo "请输入验证码";
exit();
}
if($lcode!=strtolower($_SESSION["randcode"]))
{
echo "验证码输入错误";
exit();
}
$ckpass=substr(md5($lpass),9,12);
$conn = mysql_connect("localhost","root","*******");
if(!$conn)
{
die('Could not connect: '.mysql_error());
}
mysql_select_db("dhbase",$conn);
$sql="select * from dh_admin where uname='$lname' and upass='$ckpass' and work=1";
$result=mysql_query($sql,$conn);
if(mysql_num_rows($result) {
echo "账号信息有误";
exit;
}
else
{
$row=mysql_fetch_array($result);
$lid=$row["id"];
$ltime=date('y-m-d h:i:s',time());
$user_IP=@($_SERVER["HTTP_VIA"])?$_SERVER["HTTP_X_FORWARDED_FOR"]:$_SERVER["REMOTE_ADDR"];
$user_IP=($user_IP)?$user_IP:$_SERVER["REMOTE_ADDR"];
$lsql="INSERT INTO dh_alog(aid,logtime,logip) VALUES ('$lid','$ltime','$user_IP')";
if(!mysql_query($lsql,$conn))
{
die('Error: '.mysql_error());
}
setcookie("uname",$lname,time()+3600);
//echo $_COOKIE["uname"];
echo "<script>location.href='index_home.php';</script>";
exit;
}

mysql_close($conn);
?>

这个是login_ck.php的

你的登陆不是请求到 inc/admin_chk.php 的吗?
那么在 inc/admin_chk.php 中设置的 cookie 只在 inc 目录中有效

bool setcookie ( string name [, string value [, int expire [, string  path [, string domain [, bool secure]]]]] )

参数 path
说明 Cookie 在服务器端的有效路径。
  如果该参数设为 '/' 的话,cookie 就在整个 domain 内有效,如果设为 '/foo/',cookie 就只在 domain 下的 /foo/ 目录及其子目录内有效,例如 /foo/bar/。 默认值为设定 cookie 的当前目录。  



搞到了 真是路径问题 我之前用asp的 PHP 这cookie还存在路径问题啊

谢谢啊 谢谢

你的登陆不是请求到 inc/admin_chk.php 的吗?
那么在 inc/admin_chk.php 中设置的 cookie 只在 inc 目录中有效

bool setcookie ( string name [, string value [, int expire [, string  path [, string domain [, bool secure]]]]] )

参数 path
说明 Cookie 在服务器端的有效路径。
  如果该参数设为 '/' 的话,cookie 就在整个 domain 内有效,如果设为 '/foo/',cookie 就只在 domain 下的 /foo/ 目录及其子目录内有效,例如 /foo/bar/。 默认值为设定 cookie 的当前目录。  

谢谢

我也学习了

Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Undress AI Tool

Undress AI Tool

Undress images for free

Clothoff.io

Clothoff.io

AI clothes remover

AI Hentai Generator

AI Hentai Generator

Generate AI Hentai for free.

Hot Article

R.E.P.O. Energy Crystals Explained and What They Do (Yellow Crystal)
2 weeks ago By 尊渡假赌尊渡假赌尊渡假赌
R.E.P.O. Best Graphic Settings
2 weeks ago By 尊渡假赌尊渡假赌尊渡假赌

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

Working with Flash Session Data in Laravel Working with Flash Session Data in Laravel Mar 12, 2025 pm 05:08 PM

Laravel simplifies handling temporary session data using its intuitive flash methods. This is perfect for displaying brief messages, alerts, or notifications within your application. Data persists only for the subsequent request by default: $request-

cURL in PHP: How to Use the PHP cURL Extension in REST APIs cURL in PHP: How to Use the PHP cURL Extension in REST APIs Mar 14, 2025 am 11:42 AM

The PHP Client URL (cURL) extension is a powerful tool for developers, enabling seamless interaction with remote servers and REST APIs. By leveraging libcurl, a well-respected multi-protocol file transfer library, PHP cURL facilitates efficient execution of various network protocols, including HTTP, HTTPS, and FTP. This extension offers granular control over HTTP requests, supports multiple concurrent operations, and provides built-in security features.

Simplified HTTP Response Mocking in Laravel Tests Simplified HTTP Response Mocking in Laravel Tests Mar 12, 2025 pm 05:09 PM

Laravel provides concise HTTP response simulation syntax, simplifying HTTP interaction testing. This approach significantly reduces code redundancy while making your test simulation more intuitive. The basic implementation provides a variety of response type shortcuts: use Illuminate\Support\Facades\Http; Http::fake([ 'google.com' => 'Hello World', 'github.com' => ['foo' => 'bar'], 'forge.laravel.com' =>

12 Best PHP Chat Scripts on CodeCanyon 12 Best PHP Chat Scripts on CodeCanyon Mar 13, 2025 pm 12:08 PM

Do you want to provide real-time, instant solutions to your customers' most pressing problems? Live chat lets you have real-time conversations with customers and resolve their problems instantly. It allows you to provide faster service to your custom

PHP Logging: Best Practices for PHP Log Analysis PHP Logging: Best Practices for PHP Log Analysis Mar 10, 2025 pm 02:32 PM

PHP logging is essential for monitoring and debugging web applications, as well as capturing critical events, errors, and runtime behavior. It provides valuable insights into system performance, helps identify issues, and supports faster troubleshoot

Explain the concept of late static binding in PHP. Explain the concept of late static binding in PHP. Mar 21, 2025 pm 01:33 PM

Article discusses late static binding (LSB) in PHP, introduced in PHP 5.3, allowing runtime resolution of static method calls for more flexible inheritance.Main issue: LSB vs. traditional polymorphism; LSB's practical applications and potential perfo

Discover File Downloads in Laravel with Storage::download Discover File Downloads in Laravel with Storage::download Mar 06, 2025 am 02:22 AM

The Storage::download method of the Laravel framework provides a concise API for safely handling file downloads while managing abstractions of file storage. Here is an example of using Storage::download() in the example controller:

How to Register and Use Laravel Service Providers How to Register and Use Laravel Service Providers Mar 07, 2025 am 01:18 AM

Laravel's service container and service providers are fundamental to its architecture. This article explores service containers, details service provider creation, registration, and demonstrates practical usage with examples. We'll begin with an ove

See all articles