26/08/2008, 13:32
Ayuda con script login simple


Necesitaba proteger una pagina html en mi sitio y buscando una forma rapida y sencilla encontre este script:

 Login Script Version 1.9
 By H G Laughland

This script can be used free of charge and may only be
redistributed the same way. The disclaimer must remain

DISCLAIMER: Use this script with caution. This script is not 
the most secure method available, for protecting material. Its
main purpose is to demonstrate the javascript techniques used.
The author takes no responsibility for data loss
resulting from the use of this script.

INSTRUCTIONS - Read Before Using Script

If you are using frames, the code referred to in steps 2 - 5 must be put in the 
pages displayed in the frames and NOT in the parent document.

Step 1
In the Usernames & Passwords section, configure the variables as
indicated by the comments.
Step 2:
Add the following code to the <head> section of your login page: 
 <script src="scripts/login.js"></script> 
Change "scripts/login.js" to reflect the correct path to this script
file on your server. 
Step 3:
Add this code to the login page, at the place you want the login
panel to show:
 <script language="JavaScript">
Step 4:
Add the following code to the <head> section of each page procteded
by this script:
 <script src="scripts/login.js"></script>
 <script language="JavaScript">

Change "scripts/login.js" to reflect the correct path to the script
file on your server.
Step 5: 
On the page that is to have the logout button, paste this code where you
want the button to be:

 <form action="" name="frmLogoff">
  <input type="button" name="btLogoff" value="log out" onclick="logout();">
 To use your own image instead of the grey button change the type from button to image
 and add src="myimage.gif" where myimage.gif is the image (including the path to it if
 needed, you want to use.
Step 6:
Upload this script and your html pages to the relevant directories
on your server. 


//  Usernames, Passwords & User Pages - These require configuration.
var successpage = "info_curso_nobel_replace.html"; // The page users go to after login, if they have no personal page.
var loginpage = "login.html"; //Change this to the page the login panel is on.

var imgSubmit = ""; //Change to the path to your login image,if you don't want the standard button, otherwise do not change.
var imgReset = "";  //Change to the path to your reset image,if you don't want the standard button, otherwise do not change.

var users = new Array();

users[0] = new Array("user","pass",""); // Change these two entries to valid logins.
users[1] = new Array("username2","password2","");          // Add addtional logins, straight after these, as
                                                           // required, followig the same format. Increment the 
											               // numbers in the square brackets, in new each one. Note:
											               // the 3rd parameter is the the page that user goes to
											               // after successful login. Ensure the paths are correct.
                                                           // Make this "" if user has no personal page.
//  Login Functions
function login(username,password){
 var member = null;
 var loggedin = 0;
 var members = users.length;
 for(x=0;x<members && !loggedin; x++){
    loggedin = 1;
    member = x;
	break; // User validated, terminate the for loop.
  if(users[member][2] != "") {
   successpage = users[member][2];
  if (top.location.href != location.href){
   location.href = successpage;           
   top.location.href = successpage;  
  alert('access denied');

function logout() {
 if (top.location.href != location.href){
  location.href = loginpage;           
  top.location.href = loginpage;  

// Cookie Handler
var ckTemp = document.cookie;

function setCookie(name, value) { 
 if (value != null && value != "")
  document.cookie=name + "=" + escape(value) + ";";
 ckTemp = document.cookie;
function deleteCookie(name) {
  if (getCookie(name)) {
    document.cookie = name + "=" +
    "; expires=Thu, 01-Jan-70 00:00:01 GMT";

function getCookie(name) { 
 var index = ckTemp.indexOf(name + "=");
 if(index == -1) return null;
  index = ckTemp.indexOf("=", index) + 1;
 var endstr = ckTemp.indexOf(";", index);
 if (endstr == -1) endstr = ckTemp.length;
 return unescape(ckTemp.substring(index, endstr));
function checkCookie() {
 var temp = getCookie("login");
 if(!temp==1) {
  alert('Contraseña o Nombre de Usuario Incorrectos'); 
  if(top.location.href != location.href){
   location.href = loginpage;           
   top.location.href = loginpage;  

// Login Panel

function BuildPanel() {
document.write('<form name="logon"><table align="left" border="0"><tr><td align="right">');
document.write('<small><font color="#999999" face="Verdana">Usuario </font></small>');
document.write('<td><small><font face="Verdana"><input type="text" name="username" size="20"></font></small></td></tr>');
document.write('<tr><td align="right"><small><font color="#999999" face="Verdana">Contrase&ntilde;a </font></small></td>');
document.write('<td><small><font face="Verdana"><input type="password" name="password" size="20"></font></small></td></tr>');
if(imgSubmit == ""){
 document.write('<tr><td align="center" colspan="2"><p><input type="button" value="Ingresar" name="Ingresar" onclick="login(username.value,password.value)">'); 
} else {
 document.write('<tr><td align="center" colspan="2"><p><input type="image" src="'+imgSubmit+'" name="Ingresar" onclick="login(username.value,password.value)">');
if(imgReset == ""){
 //document.write('<input type="reset" value="Reset" name="Reset">');
} else {
 //document.write('<input type="image" src="'+imgReset+'" name="Reset" onclick="logon.reset();">');
Seguí los pasos al pie de la letra, sin embargo, las páginas protegidas (de las que habla el Step 4) se pueden accesar sin que pida logearse escribiendo la dirección en el navegador de internet.

Será que algo hize mal o al script le falta algo??
