<?php
// member.php
// RJM Programming
// May, 2015
// Thanks to PHP and MySql Web Development by Luke Welling, Laura Thomson
// Thanks to Professional PHP Programming by Jesus Castagnetto, Haeish Rawat, Sascha Schumann, Chris Scollo, Deepak Veliath ... chapter 20

$nextpage="next.php";
$nextval="Next Page";

$logpage="login.php";
if (!file_exists("loginpage.name")) {
   $loginpage=@file_get_contents("loginpage.name");
   if (strpos($loginpage, ".php") !== false) $logpage=$loginpage;
}
if (!isset($_SESSION['login']) && !isset($_POST['login'])) {
   header("Location: " . $logpage . str_replace("?&", "?", ("?" . str_replace("backto=", "lastone=", $_SERVER['QUERY_STRING']) . "&backto=" . $_SERVER['PHP_SELF'])));
   exit;
}
$_SESSION['login']=true;
$backbuttonhtml="";
if (strpos($_SERVER['HTTP_REFERER'], $logpage) === false && strpos($_SERVER['HTTP_REFERER'], $nextpage) === false && strlen($_SERVER['HTTP_REFERER']) > 0) {
   $backpage=$_SERVER['HTTP_REFERER'];
   $backvals=explode("/", $backpage);
   $backval= strtoupper(substr($backvals[sizeof($backvals) - 1],0,1)) . str_replace(".php", " Page", substr($backvals[sizeof($backvals) - 1],1));
   $backbuttonhtml="<form action='" . $_SERVER['HTTP_REFERER'] . "' method='post'><input type='hidden' name='login' value='true'></input><input type='submit' id='back' name='back' value='" . $backval . "'></input></form>&nbsp;</td><td>";
}
?>
<!doctype html>
<html>
<body>
<div align="center">
<table align="center"><tr><td><?php echo $backbuttonhtml; ?><form action='<?php echo $nextpage; ?>' method='post'><input type='hidden' name='login' value='true'></input><input type='submit' id='subm' name='subm' value='<?php echo $nextval; ?>'></input></form></td></tr></table>
<br>
<br>
<a href="<?php echo $logpage; ?>?logout=<?php echo urlencode(str_replace('=form','=y', $_SERVER['QUERY_STRING'])); ?>" title="Logout">Logout</a>
</div>
</body>
</html>
