Voilà mon code de connection
<?php
if (isset($_POST['envoyer']) && $_POST['envoyer']=='Envoyer' && $_SESSION['logged'] == false)
{
if ( isset($_POST['login']) && isset($_POST['pwd']) )
{
include('../script/connect_db.php');
$sql = 'SELECT idmembre,login,pwd_md5,actif FROM membre WHERE login=\''.htmlentities($_POST['login']).'\' AND pwd_md5=\''.md5($_POST['pwd']).'\'';
$req = mysql_query($sql);
mysql_close();
$res = mysql_fetch_array($req);
$res_1=mysql_num_rows($req);
if ($res_1 == 1)
{
if( $res['actif'] == 0 )
{
$erreur = '<p1>Votre compte n\'est pas encore activer<br></p1>';
}
else
{
if (isset($_POST['connection_auto']) && $_POST['connection_auto'] == 'on')
{
$expire = time() + 3600 * 24 * 365;
setcookie('pseudo', $_POST['login'], $expire);
setcookie('mot_passe', md5($_POST['pwd']), $expire);
}
session_start();
$_SESSION['logged'] = true;
$_SESSION['login'] = $res['login'];
$_SESSION['idmembre'] = $res['idmembre'];
header('Location: index.php');
exit();
}
}
else
{
$erreur = '<p1>Pseudo ou mot de pass incorrect<br></p1>';
}
}
}
?>