単純なログインシステムを作成しようとしていますが、ユーザーが指定したユーザー名がデータベースに存在するかどうかをクエリしていますが、行数を取得するのに問題があります。未定義の変数num:errorを取得し続けます。
$num = $stmt->rowCount();
しかし、オブジェクト以外のエラーでメンバー関数rowCount()への呼び出しを取得します。phpとWeb開発に非常に慣れていないため、混乱し、動作させる方法がわかりません。誰かが私を助けてくれますか?これがdb.phpファイルのコードです
<?php
require "config.php";
function DBconnect($config) {
try {
$conn = new PDO('mysql:host=localhost;dbname=' . $config['database'],
$config['username'],
$config['password']);
$conn->setAttribute( PDO::ATTR_ERRMODE, PDO::ERRMODE_EXCEPTION);
return $conn;
} catch(Exception $e) {
return false;
}
}
function query($query, $bindings, $conn) {
$stmt = $conn->prepare($query);
$stmt->execute($bindings);
return $stmt;
}
そして、これがログインページであるindex.phpファイルのコードです。
<?php
// Allow sessions to be passed so we can see if the user is logged in
session_start();
// include the necessary files
require "db.php";
require "functions.php";
include "index.view.php";
//conect to the database so we can check, edit or ,data to our users table
$conn = DBconnect($config);
// if the user has submitted the form
if( $_SERVER["REQUEST_METHOD"] === "POST") {
//protect the posted value then store them to variables
$username = protect($_POST["username"]);
$password = protect($_POST["password"]);
//Check if the username or password boxes were not filled in
if ( !$username || !$password ){
// if not display an error message.
echo "You need to fill in a username and password!";
}else
// if correct continue cheking
//select all the rows where the username and password match the ones submitted by the user
query( "SELECT * FROM users WHERE username = :username",
array("username" => $username),
$conn);
$num = $stmt->fetchColumn();
//check if there was not a match
if( $num == 0) {
//if not display an error message
echo "The username you entered does not exist!";
}else{
//if there was a mactch continue chekcing
//select all rows where the username and password match the ones submitted by the user
query( "SELECT * FROM users WHERE username =:username && password = :pasword",
array("username" => $username, "password" => $password ),
$conn);
$num = $stmt->fetchColumn();
//check if there was not a match
if( $num == 0) {
//if not display error message
echo "Username and password do not mactch";
}else {
//if there was continue checking
//split all the fields from the correct row into an associative array
$row = $user->fetch(PDO::FETCH_ASSOC);
//check to see if the user has not activated their account
if($row["active"] != 1) {
//if not display an error message
echo "You have not yet activated your account!";
}else {
//if so then log them in
// set the login session storing their id. We use this to
// see if they are logged in or not.
$_SESSION["uid"] = $row["id"];
//show message confirming that they are loggd in
echo "You have succesfully logged in!";
//update the online field to 50 seconds in the future
$time = date("u")+50;
query( "UPDATE users SET online = :time WHERE id = :id",
array("time" => $time, "id" => $_SESSION["uid"]),
$conn);
//redirect them to the usersonline page
header("Location: usersOnline.php");
}
}
}
}