//echo "sdfsdfsdf $username";
if(isset($Submit)){
if($username=="") {$error="用户名不能为空" ;}
if(@ereg("[/\\.$<>!@#$%^&*()+`~'\",]",$username )) {$error="
用户名包含了非法字符!";}
if($content==""){$error="
内容不能为空";}
if (strlen($content)>200) {$error="
留言内容过长!";}
if(isset($error)) {echo $error; exit;}//有待修改
}
$ip=empty($_SERVER['HTTP_X_FORWARDED_FOR'])?$_SERVER['REMOTE_ADDR']:$_SERVER['HTTP_X_FORWARDED_FOR'];
$proxy=empty($_SERVER['HTTP_VIA'])?"未使用代理":"使用代理";//获得ip
$nowdate=date("Y-m-d");
$db=mysql_connect("61.152.169.239","sq_orczhou","123qwe");
if(!$db) die("链接数据库失败1");
mysql_select_db(lrj001sql,$db) or die("链接数据库失败2");
if(isset($Submit)){
$sql="insert into notes(id,name,email,words,ips,date) values ('','$username','$email','$content','$ip','$nowdate')";
$result=mysql_query($sql,$db);
if(!$result){echo 留言失败;}
}
$display="select * from notes order by -id";
$result=mysql_query($display,$db);
while($myrow= mysql_fetch_array ($result)){
printf("
%s:
",$myrow["name"]);
printf("
    %s
",$myrow["words"]);
} //test
?>