<?
//Here is the function check it out if you like it let me
//know if you think it needs help let me know just something
function lockout($user_id)
{
/*
This will lock out after 3 invalid logins It will flag the
Locked tag so then when login is attempted It will give the friendly
Error that tells them that there account is locked and someone will get
there account back up and running shortly
*/
$db = mysql_connect("localhost","user","pass");
mysql_select_db("database",$db);
$query = "SELECT * FROM log_attempts where login = '$user_id'";
$result = mysql_query($query);
$num = mysql_num_rows($result);
if ($num=="0")
{
$sql="INSERT INTO log_attempts values('$user_id','','')";
mysql_query($sql,$db);
}else{
while($row = mysql_fetch_array($result))
{
$times = $row["times"];
$i = $times ; $i++;
$sql = "UPDATE log_attempts SET times='$i' WHERE login='$user_id'";
$done = mysql_query($sql);
}
}
$attempt = $i;
if ($attempt == "3")
{
$lock = "yes";
$sql = "UPDATE log_attempts SET locked='$lock' WHERE login='$user_id'";
$result = mysql_query($sql,$db);
print "You have entered an invalid password three times. We have locked your account for security reasons.";
print "\n An email was sent to the site administrator he will evaluate the activity of your account and will\n";
print "then choose if he will re-activate your account. They may have some questions to ask you so please be on";
print "the look out for an email from <a href=mailto:admin@before-ipo.com>admin@before-ipo.com</a>";
print "<BR><BR><BR>We are sorry for the inconvience";
}else{
$sql = "UPDATE log_attempts SET times='$i' WHERE login='$user_id'";
$result = mysql_query($sql,$db);
}