dengluyanzh.jsp
<%@ page language="java" import="java.sql.*"%>
<%@ page contentType="text/html;charset=GB18030"%>
<%
String username,passward;
username=request.getParameter("uid");
passward=request.getParameter("upwd");
String selectquery="select * from student where Name='"+username+"' and passward1='"+passward+"'";
Connection conn=null;
Statement stmt=null;
ResultSet rs=null;
try{
Class.forName("com.mysql.jdbc.Driver").newInstance();
conn= DriverManager.getConnection("jdbc:mysql://localhost/test","root","root");
stmt= conn.createStatement();
rs=stmt.executeQuery(selectquery);
if(rs.next()){
response.sendRedirect("chenggong.jsp");
session.setAttribute("username",rs.getString("Name"));
}
else{
response.sendRedirect("login.jsp");}
}catch(SQLException ex)
{
ex.printStackTrace();
}
finally{
stmt.close();
conn.close();}
%>