Developing a Login System with PHP and MySQL


John L

This article is written by daBoss. daBoss is the Webmaster of Designer Banners. daBoss can be contacted at sales at designerbanners dot com.

Developing a Login System with PHP and MySQL

Most interactive websites nowadays would require a user to log in into the website’s system in order to provide a customized experience for the user. Once the user has logged in, the website will be able to provide a presentation that is tailored to the user’s preferences.

A basic login system typically contains 3 components:

  1. The component that allows a user to register his preferred login id and password
  2. The component that allows the system to verify and authenticate the user when he subsequently logs in
  3. The component that sends the user’s password to his registered email address if the user forgets his password

Such a system can be easily created using PHP and MySQL.

Component 1 – Registration

Component 1 is typically implemented using a simple HTML form that contains 3 fields and 2 buttons:

  1. A preferred login id field
  2. A preferred password field
  3. A valid email address field
  4. A Submit button
  5. A Reset button

Assume that such a form is coded into a file named register.html. The following HTML code excerpt is a typical example. When the user has filled in all the fields, the register.php page is called when the user clicks on the Submit button.

[form name="register" method="post" action="register.php"]
   [input name="login id" type="text" value="loginid" size="20"/][br]
   [input name="password" type="text" value="password" size="20"/][br]
   [input name="email" type="text" value="email" size="50"/][br]
   [input type="submit" name="submit" value="submit"/]
   [input type="reset" name="reset" value="reset"/]
[/form]

The following code excerpt can be used as part of register.php to process the registration. It connects to the MySQL database and inserts a line of data into the table used to store the registration information.

@mysql_connect"localhost", "mysql_login", "mysql_pwd" or die"Cannot connect to DB!";
@mysql_select_db"tbl_login" or die"Cannot select DB!";
$sql="INSERT INTO login_tbl loginid, password and email VALUES ".$loginid.”,”.$password.”,”.$email.””;
$r = mysql_query$sql;
if!$r {
   $err=mysql_error;
   print $err;
   exit;
}

The code excerpt assumes that the MySQL table that is used to store the registration data is named tbl_login and contains 3 fields – the loginid, password and email fields. The values of the $loginid, $password and $email variables are passed in from the form in register.html using the post method.

Component 2 – Verification and Authentication

A registered user will want to log into the system to access the functionality provided by the website. The user will have to provide his login id and password for the system to verify and authenticate.

This is typically done through a simple HTML form. This HTML form typically contains 2 fields and 2 buttons:

  1. A login id field
  2. A password field
  3. A Submit button
  4. A Reset button

Assume that such a form is coded into a file named authenticate.html. The following HTML code excerpt is a typical example. When the user has filled in all the fields, the authenticate.php page is called when the user clicks on the Submit button.

[form name="authenticate" method="post" action="authenticate.php"]
   [input name="login id" type="text" value="loginid" size="20"/][br]
   [input name="password" type="text" value="password" size="20"/][br]
   [input type="submit" name="submit" value="submit"/]
   [input type="reset" name="reset" value="reset"/]
[/form]

The following code excerpt can be used as part of authenticate.php to process the login request. It connects to the MySQL database and queries the table used to store the registration information.

@mysql_connect"localhost", "mysql_login", "mysql_pwd" or die"Cannot connect to DB!";
@mysql_select_db"tbl_login" or die"Cannot select DB!";
$sql="SELECT loginid FROM login_tbl WHERE loginid=’".$loginid.”’ and password=’”.$password.”’”;
$r = mysql_query$sql;
if!$r {
   $err=mysql_error;
   print $err;
   exit;
}
ifmysql_affected_rows==0{
   print "no such login in the system. please try again.";
   exit;
}
else{
   print "successfully logged into system.";
   //proceed to perform website’s functionality – e.g. present information to the user
}

As in component 1, the code excerpt assumes that the MySQL table that is used to store the registration data is named tbl_login and contains 3 fields – the loginid, password and email fields. The values of the $loginid and $password variables are passed in from the form in authenticate.html using the post method.

Component 3 – Forgot Password

A registered user may forget his password to log into the website’s system. In this case, the user will need to supply his loginid for the system to retrieve his password and send the password to the user’s registered email address.

This is typically done through a simple HTML form. This HTML form typically contains 1 field and 2 buttons:

  • A login id field
  • A Submit button
  • A Reset button

    Assume that such a form is coded into a file named forgot.html. The following HTML code excerpt is a typical example. When the user has filled in all the fields, the forgot.php page is called when the user clicks on the Submit button.

    [form name="forgot" method="post" action="forgot.php"]
       [input name="login id" type="text" value="loginid" size="20"/][br]
       [input type="submit" name="submit" value="submit"/]
       [input type="reset" name="reset" value="reset"/]
    [/form]
    

    The following code excerpt can be used as part of forgot.php to process the login request. It connects to the MySQL database and queries the table used to store the registration information.

    @mysql_connect"localhost", "mysql_login", "mysql_pwd" or die"Cannot connect to DB!";
    @mysql_select_db"tbl_login" or die"Cannot select DB!";
    $sql="SELECT password, email FROM login_tbl WHERE loginid=’".$loginid.”’”;
    $r = mysql_query$sql;
    if!$r {
       $err=mysql_error;
       print $err;
       exit;
    }
    ifmysql_affected_rows==0{
       print "no such login in the system. please try again.";
       exit;
    }
    else {
       $row=mysql_fetch_array$r;
       $password=$row["password"];
       $email=$row["email"];
    
       $subject="your password";
       $header="from:you@yourdomain.com";
       $content="your password is ".$password;
       mail$email, $subject, $row, $header;
    
       print "An email containing the password has been sent to you";
    }
    

    As in component 1, the code excerpt assumes that the MySQL table that is used to store the registration data is named tbl_login and contains 3 fields – the loginid, password and email fields. The value of the $loginid variable is passed from the form in forgot.html using the post method.

    Conclusion

    The above example is to illustrate how a very basic login system can be implemented. The example can be enhanced to include password encryption and additional functionality – e.g. to allow users to edit their login information.

    - Used with the authors permission.





    About The Author

    Used with the authors permission.

    This article is written by daBoss. daBoss is the Webmaster of Designer Banners. daBoss can be contacted at sales at designerbanners dot com.

    http://www.designerbanners.com/



    To provide some examples of web design and development I give you here:

    10 latest blog posts by Web Developer Jim Westergren

    I’m an SEO and I have been working a lot with WordPress, here I give you all my tips for you to rank very well in Google with your blog. UPDATE: Check this blog post for a better guide. Quick Facts There are 55 million blogs out there, if you don’t stand out you will have no chance. The [...]

    Update, March 9th I have now changed it again and put some color into it. What do you guys think? Sunday today and I was away from work with clients so I decided to work with my blog today from home. I made a new design for this site. Check out the navigation links at the top left [...]

    This article is written for my friend “honey” (site). I have been bidding against honey on web site auctions for almost 2 years now. I have won maybe 60 auctions and I have now over 100 web sites. Honey owns over 300 … So here comes my checklist that I want to show honey as I [...]

    Have you also heard of those horror stories of Google banning Adsense accounts for the smallest mistakes? You have read the Terms and Conditions and you know the basics but what do you do when you show your friend your site on your computer and the first thing he does is to click the Adsense ad [...]

    This article is written more for myself so I remember how I do it the next time but probably a few people will also benefit from this for different uses and purposes. Today I updated all the PR values for the directories listed on my directory list. I had to update each listing in the MySQL [...]

    Official site of a children’s hospital in Japan Hey, your “logo” is not blinking! MSY Technology Pty. Ltd. Are you sure product X is HOT? Personal site of Franz Magnus Incredible that you got several awards for that site. Angren.net, electronic shop Can’t you squeeze in something more on the home page? Official site of Northbridge Police Department Still being updated in 2006. Perhaps [...]

    The last days I have been fighting in the war against the latest spam bot soldiers like a maniac. I own and manage over 70 web sites. This includes different forums, directories, blogs, topsites, article submission sites and you name it. Very recently there is a new wave of spam. The default captcha for vBulletin is now [...]

    This is a WordPress plugin that will give you more links and higher rankings in the search engines. Most bloggers knows the importance of getting links in order to get high rankings in search engines. But did you know that the best links are those that are natural recommendations? Additionally I experienced better rankings across all [...]

    To improve the navigation of your users as well as search engine traffic and ranking to your WordPress blog I suggest making a good site map of your posts - a map of your site. A kind of user friendly archive of your posts. This is not “Google sitemap”! The benefits: The user can quickly find a [...]

    How I rank on different keywords and links to the different SE queries.

  • home | site map

    Articles



    Mortgage | Mortgages | Credit Cards | Charity | Mortgage