connect_error) { die("Connection failed: " . $conn->connect_error); } session_start(); if($_SERVER["REQUEST_METHOD"] == "POST") { // username and password sent from form $myusername = mysqli_real_escape_string($conn,$_POST['username']); $mypassword = mysqli_real_escape_string($conn,$_POST['password']); $sql = "SELECT * FROM Login WHERE User = '$myusername' and Password = '$mypassword'"; $result = mysqli_query($conn,$sql); $row = $result->fetch_assoc(); $active = $row['Active']; $count = mysqli_num_rows($result); $SerialNumber = $row['SerialNumber']; $Reseller = $row['Reseller']; $ResellerName = $row['ResellerName']; $_SESSION['SuperUser'] = $row['SuperUser']; // If result matched $myusername and $mypassword, table row must be 1 row if ($count == 1 && $active == "true") { $_SESSION['login_user'] = $myusername; $_SESSION['login_pass'] = $mypassword; $_SESSION['SerialNumber'] = $row['SerialNumber']; $_SESSION["auth"] = 1; $_SESSION["Reseller"] = $Reseller; $_SESSION["ResellerName"] = $ResellerName; if ($Reseller === "false") { $sql = "SELECT * FROM DisplayData WHERE SerialNumber='$SerialNumber'"; $result = mysqli_query($conn,$sql); $row1 = $result->fetch_assoc(); if ($row1['RemoteCommand'] === "false") header("location: crossmanager.php"); else header("location: invio.php"); } else { header("location: installazioni.php"); } } else $error = "Your Login Name or Password is invalid"; } ?>