<?php

$con=mysql_connect("localhost", "root", "");
if(!$con)
{
  die('Could not connect:'.mysql_error());
}
mysql_select_db("tcems",$con);
$check="SELECT * FROM tbl_admin where Username ='$_POST[username]' AND AdminPword ='$_POST[password]'";
$checkResult=mysql_query($check);
$flag=0;
while ($row=mysql_fetch_array($checkResult))
{
  $flag=$flag+1;
  }

if($flag>0){
  $sql="INSERT INTO tblcurrentuser(Username,Password)
VALUES
('$_POST[username]','$_POST[password]')";
if (!mysql_query($sql,$con))
  {
  die('Error: ' . mysql_error());
  }
include("main.php");
}
else{
$query = "SELECT UserName,Password FROM tbl_users WHERE UserName = '".$_POST['username']."' AND Password ='".$_POST['password']."'";
$result = mysql_query($query);
$count = mysql_num_rows($result);

if($count==1){
$_SESSION['username'] =$_POST['username'];
$_SESSION['password'] = $_POST['password'];
header("location:main.php");
}

else {

echo "<script type='text/javascript'>
alert('INCORRECT Username or Password');
</script>";
include("LogIn.php");
}
}
?>

