donglu2523 2018-05-02 03:36 采纳率: 100%
浏览 286

PHP:登录后用户点击后退按钮时如何防止用户进入登录页面?

Basically, i dont want the user accessibly to the login page by clicking back button after he/she successfully login to the system.

Below us the code of login check.php:-

<?php


include 'database.php'; 
session_start();                                            

if (isset ($_POST['namaPengguna']))
{                   
$kataLaluan = $_POST['kataLaluan'];
$namaPengguna = $_POST['namaPengguna'];

$query = "SELECT * FROM pengguna 
        WHERE namaPengguna='$namaPengguna' && kataLaluan = '$kataLaluan' ";

$result = $mysqli->query($query) or die($mysqli->error._LINE_);
$row = $result->num_rows; 
$info = $result->fetch_assoc(); 
$_SESSION['PenggunanoKP']=$info['PenggunanoKP'];

    if($row<1)  
    {
       header("Location:login design.php");
    }
    else{
         header("Location:pilihAction.php");
    }

}

?>

The next page :

<?php include 'database.php';
include 'session.php'; 
?>


<?php

echo $_SESSION['PenggunanoKP'];
?>
/*html code
  • 写回答

1条回答 默认 最新

  • dongzhong6675 2018-05-02 04:25
    关注

    Your Welcome Page (after login) should look like this

    <?php
      session_start();
      if(isset($_SESSION['directaccess']))
      {
        if(isset($_POST['logoutbtn']))
        {
            session_destroy();
            header("location: loginform.php");
        }
      /* Your code goes here */
    
      }
      else{
         exit('Access denied');
       }
      ?>
    
     <form class="myform" action="" method="post">  
     <input name="logoutbtn" type="submit" value="logout" class="sbbtn" 
      id="logout_btn" class="test"/>
     </form>
      </div>
     </body>
      </html>
    

    Explanation : On your Main Login/check-in page : Set a flag in $_SESSION (in my example its $_SESSION['directaccess']) just before calling header function (to successful login Welcome page). . Then on your success Welcome Page, use the code snippet above. Check if that flag is set then only give access to your Page code else exit('Access Denied').

    Logout button action should be on the same Welcome page. If button is clicked, destroy session and then call header function back to Main Login/check-in page.

    评论

报告相同问题?

悬赏问题

  • ¥15 win11 23H2删除推荐的项目,支持注册表等
  • ¥15 matlab 用yalmip搭建模型,cplex求解,线性化处理的方法
  • ¥15 qt6.6.3 基于百度云的语音识别 不会改
  • ¥15 关于#目标检测#的问题:大概就是类似后台自动检测某下架商品的库存,在他监测到该商品上架并且可以购买的瞬间点击立即购买下单
  • ¥15 神经网络怎么把隐含层变量融合到损失函数中?
  • ¥15 lingo18勾选global solver求解使用的算法
  • ¥15 全部备份安卓app数据包括密码,可以复制到另一手机上运行
  • ¥20 测距传感器数据手册i2c
  • ¥15 RPA正常跑,cmd输入cookies跑不出来
  • ¥15 求帮我调试一下freefem代码