If Request.Form("submit") <> "" Then
bValidPwd = False
' Setup variables
sUserId = Request.Form("userid")
sPassWd = Request.Form("passwd")
If Not bValidPwd Then
Set conn = Server.CreateObject("ADODB.Connection")
conn.open xDb_Conn_Str
sSql = "SELECT * FROM [uselist]"
sSql = sSql & " WHERE [usname] = '" & AdjustSql(sUserId) & "'"
Set rs = conn.Execute(sSql)
If Not rs.Eof Then
If UCase(rs("uspass")) = UCase(sPassWd) Then
Session("ddd_status_User") = rs("usname")
Session("ddd_status_UserID") = rs("usbm")
bValidPwd = True
End If
End If
rs.Close
Set rs = Nothing
conn.Close
Set conn = Nothing
End If
If bValidPwd Then
' Write cookies
If Request.Form("rememberme") <> "" Then
Response.Cookies("ddd")("userid") = sUserId
Response.Cookies("ddd").Expires = Date + 365 ' Change the expiry date of the cookies here
End If
Session("ddd_status") = "login"
Response.Redirect "sbklist1.asp"
Else
Session("ewmsg") = "Incorrect user ID or password"
End If
End If