Example #1
0
        //public override bool CheckCredentials(string argUserName, string argPassoword)
        //{

        //        string query = string.Format("SELECT Count(*) FROM Users WHERE name=\'"+ argUserName + "\' AND pass=\'" + argPassoword+"\'");

        //        return conn.executeSelectQuery(query, new SqlParameter[] { });

        //}

        public override bool CheckCredentials(string argUserName, string argPassoword)
        {
            var command = new SqlCommand("UserCheckPassUser", conn.openConnection())
            {
                CommandType = CommandType.StoredProcedure
            };

            SqlParameter[] sqlParameters = new SqlParameter[2];
            sqlParameters[0]       = new SqlParameter("@name", SqlDbType.VarChar);
            sqlParameters[0].Value = Convert.ToString(argUserName);
            sqlParameters[1]       = new SqlParameter("@pass", SqlDbType.VarChar);
            sqlParameters[1].Value = Convert.ToString(argPassoword);
            //sqlParameters[2] = new SqlParameter("@phone", SqlDbType.VarChar);
            //sqlParameters[2].Value = Convert.ToString(phoneNumber);
            //sqlParameters[3] = new SqlParameter("@cheie", SqlDbType.VarChar);
            //sqlParameters[3].Value = Convert.ToString(cheie);
            //sqlParameters[4] = new SqlParameter("@administrator", SqlDbType.VarChar);
            //sqlParameters[4].Value = Convert.ToString(phoneNumber);
            command.Parameters.AddRange(sqlParameters);

            int userCount = (int)command.ExecuteScalar();

            if (userCount == 1)
            {
                return(true);
            }
            else
            {
                return(false);
            }
        }
Example #2
0
        //string connectionString = @"Data Source=.;Initial Catalog=Chat;Integrated Security=True";
        public void activityMethod(string argUserName, string argAction, DateTime argTimestamp)
        {
            var command = new SqlCommand("UserAddActivity", conn.openConnection())
            {
                CommandType = CommandType.StoredProcedure
            };


            command.Parameters.AddWithValue("@username", argUserName);
            command.Parameters.AddWithValue("@action", argAction);
            command.Parameters.AddWithValue("@timestamp", argTimestamp);
            command.ExecuteNonQuery();
        }