try
{
string username = context.Request["username"],
password = context.Request["password"];
var sql = "";
sql = "select * from Users where Name='" + username + "' ";
var ds = GetData(sql);
if (ds.Tables[0].Rows.Count == 0)
{
//sql = "insert into 日志管理(用户名,权限,说明) values('" + username + "','" + quanxian + "','登陆失败:用户名不存在')";//用户名不正确
//_bll.ExcuteSql(sql);
message = "登陆失败:用户名不存在";
return;
}
else
{
if (password == ds.Tables[0].Rows[0]["PassWord"].ToString())
{ //quanxian = ds.Tables[0].Rows[0]["权限"].ToString();
//sql = "insert into 日志管理(用户名,权限,说明) values('" + username + "','" + quanxian + "','登陆成功')";//用户名不正确
message = "登陆成功";
}
else
{
//sql = "insert into 日志管理(用户名,权限,说明) values('" + username + "','" + quanxian + "','登陆失败:密码错误')";//用户名不正确
//_bll.ExcuteSql(sql);
message = "登陆失败:密码错误";
}
}
}
catch (Exception ex)
{
error_str = ex.Message;
}
finally
{
state = "success";
if (error_str != "")
message = error_str;
context.Response.Write("{\"state\":\"" + state + "\",\"message\":\"" + message + "\",\"quanxian\":\"" + quanxian + "\"}");
context.Response.End();
}