new database
This commit is contained in:
@@ -7,31 +7,31 @@ use Backend\Models\AdminUser;
|
||||
//Start the php session
|
||||
session_start();
|
||||
|
||||
if(isset($_POST['aLogin'])){
|
||||
if (isset($_POST['aLogin'])) {
|
||||
|
||||
$userName = $_POST["userName"];
|
||||
$password = $_POST["password"];
|
||||
|
||||
$user = AdminUser::firstWhere('user_name', $userName );
|
||||
if($user){
|
||||
$user = AdminUser::firstWhere('user_name', $userName);
|
||||
if ($user) {
|
||||
$hashedPassword = $user->password;
|
||||
if(password_verify($password, $hashedPassword )){
|
||||
if (password_verify($password, $hashedPassword)) {
|
||||
$_SESSION['userName'] = $userName;
|
||||
$_SESSION['admin'] = true;
|
||||
$_SESSION['success'] = "You are now logged in";
|
||||
http_response_code(200);
|
||||
makeAdminLogin($userName);
|
||||
}else{
|
||||
} else {
|
||||
session_destroy();
|
||||
http_response_code(401);
|
||||
echo json_encode(["message" => "wrong password"]);
|
||||
}
|
||||
|
||||
}else{
|
||||
} else {
|
||||
session_destroy();
|
||||
http_response_code(401);
|
||||
echo json_encode(["message" => "admin don't exist"]);
|
||||
}
|
||||
}else{
|
||||
} else {
|
||||
http_response_code(400);
|
||||
}
|
||||
@@ -4,20 +4,20 @@ require_once "Admin.php";
|
||||
|
||||
use Backend\Models\AdminUser;
|
||||
|
||||
if (isAdmin()){
|
||||
if (isset($_POST["newAdmin"])){
|
||||
if (isAdmin()) {
|
||||
if (isset($_POST["newAdmin"])) {
|
||||
$admin = new AdminUser();
|
||||
$admin->user_name = $_POST["newUsername"];
|
||||
$admin->password = $_POST["newPassword"];
|
||||
if ($admin->save()){
|
||||
if ($admin->save()) {
|
||||
http_response_code(201);
|
||||
}else{
|
||||
} else {
|
||||
http_response_code(500);
|
||||
}
|
||||
}else{
|
||||
} else {
|
||||
http_response_code(400);
|
||||
}
|
||||
}else{
|
||||
} else {
|
||||
http_response_code(401);
|
||||
echo json_encode(["message" => "is not admin"]);
|
||||
}
|
||||
Reference in New Issue
Block a user