diff --git a/login.php b/login.php index 761411a..a85460e 100644 --- a/login.php +++ b/login.php @@ -1,18 +1,24 @@ prepare("SELECT * FROM users WHERE username = :username"); + $statement = $pdo->prepare("SELECT * FROM users WHERE username = :username"); //looking in the database for "usernane" $result = $statement->execute(array('username' => $username)); $user = $statement->fetch(); - if ($user !== false && password_verify($password, $user['password'])) { - $_SESSION['userid'] = $user['id']; + if ($user !== false && password_verify($password, $user['password'])) { //if user exist & posted hash of password = saved password hash do the following: + $_SESSION['userid'] = $user['id']; //adding some user infos in the session $_SESSION['email'] = $user['email']; $_SESSION['username'] = $user['username']; $_SESSION['givenName'] = $user['givenName']; @@ -21,12 +27,13 @@ if(isset($_GET['login'])) { $_SESSION['updated_at'] = $user['updated_at']; $_SESSION['isadmin'] = $user['isadmin']; $_SESSION['profilepicture'] = $user['profilepicture']; - die('