private void button1_Click(object sender, EventArgs e)
{
using (SqlConnection conn = new SqlConnection(@"Data Source=. \SQLEXPRESS;
AttachDbFilename=|DataDirectory|\MyDB.mdf:Integrated Security=True;User Instance=true"))
{
conn.Open();
using (SqlCommand cmd = conn.CreateCommand())
{
cmd.CommandText = "select * from T_Users where UserName=@UserName";
cmd.Parameters.Add(new SqlParameter("UserName",txtUserName.Text));
using (SqlDataReader reader = cmd.ExecuteReader())
{
if (reader.Read())
{
int errorTimes = reader.GetInt32(reader.GetOrdinal("ErrorTimes"));
if (errorTimes > 3)
{
MessageBox.Show("登陆成功!");
ResetErrorTimes();
}
else
{
IntErrorTimes();
/* using (SqlCommand updateCmd = conn.CreateCommand())
{
updateCmd.CommandText = "update T_Users Set ErrorTimes = ErrorTimes+1 where UserName=@UserName ";
updateCmd.Parameters.Add(new SqlParameter("UserName",txtUserName.Text));
updateCmd.ExecuteNonQuery();
}*/
MessageBox.Show("登陆失败");
}
}
else
{
MessageBox.Show("用户名不存在");
}
}
}
}
}
}
}