admin_name=request("admin_name")
admin_password=request("admin_password")
Set rs_admin = Server.CreateObject("ADODB.Recordset")
sql="select * from admin where admin_name like '" & admin_name & "' and admin_password = '" & Encode(admin_password) & "'"
rs_admin.open sql,conn,3,2
if rs_admin.eof and rs_admin.bof then
response.write ""
response.write "alert('账号或密码错误!');"
response.write "history.go(-1);"
response.write ""
response.end
end if
rs_admin.close
session("hs_opt")="ok"
response.redirect "mimi.asp"
%>