35128-vm/login.php
Flatlogic Bot 491d61d600 sikms
2025-10-23 01:36:23 +00:00

69 lines
2.4 KiB
PHP

<?php
require_once __DIR__ . '/config/db.php';
require_once __DIR__ . '/includes/functions.php';
require_once __DIR__ . '/templates/header.php';
if (isset($_SESSION['user'])) {
header('Location: /index.php');
exit();
}
$error = '';
if ($_SERVER['REQUEST_METHOD'] === 'POST') {
$username = $_POST['username'] ?? '';
$password = $_POST['password'] ?? '';
if (empty($username) || empty($password)) {
$error = 'Username dan password tidak boleh kosong.';
} else {
$pdo = db();
$stmt = $pdo->prepare("SELECT * FROM users WHERE username = ?");
$stmt->execute([$username]);
$user = $stmt->fetch(PDO::FETCH_ASSOC);
if ($user && password_verify($password, $user['password'])) {
$_SESSION['user'] = [
'id' => $user['id'],
'username' => $user['username'],
'role' => $user['role'],
'nama_lengkap' => $user['nama_lengkap']
];
log_activity($user['id'], "User logged in");
header('Location: /index.php');
exit();
} else {
$error = 'Username atau password salah.';
log_activity(null, "Failed login attempt for username: $username");
}
}
}
?>
<div class="container vh-100 d-flex justify-content-center align-items-center">
<div class="card shadow-lg" style="width: 22rem;">
<div class="card-body p-5">
<h3 class="card-title text-center mb-4">Login SIKMS</h3>
<?php if ($error): ?>
<div class="alert alert-danger" role="alert">
<?php echo $error; ?>
</div>
<?php endif; ?>
<form method="POST">
<div class="mb-3">
<label for="username" class="form-label">Username / NIS</label>
<input type="text" class="form-control" id="username" name="username" required>
</div>
<div class="mb-3">
<label for="password" class="form-label">Password</label>
<input type="password" class="form-control" id="password" name="password" required>
</div>
<div class="d-grid">
<button type="submit" class="btn btn-primary">Login</button>
</div>
</form>
</div>
</div>
</div>
<?php require_once __DIR__ . '/templates/footer.php'; ?>