Código PHP:
<?php
session_start();
require_once('servidor.php');
conectar('****', '****', '****', '****');
//Variables
$username = strip_tags($_POST['user']);
$password = strip_tags(sha1($_POST['pw']));
$ip = $_SERVER['REMOTE_ADDR'];
$ip = mysql_query("UPDATE usuarios SET ip='".$ip."' WHERE user='".mysql_real_escape_string($username)."' AND pw='".mysql_real_escape_string($password)."' LIMIT 1 ");
$query = @mysql_query("SELECT * FROM usuarios WHERE user='".mysql_real_escape_string($username)."' AND pw='".mysql_real_escape_string($password)."' LIMIT 1 ");
$data = mysql_fetch_array($query);
if($password = $data['pw'])
{
$_SESSION['logged'] = 'yes';
$_SESSION['username'] = $username;
header('Location: inicio.html');
}
else
{
echo 'El usuario y/o pass son incorrectos.';
}
?>
-sergi