<%
else
sql = "select * from admin where 姓名='"&request("user")&"'"
Set rs = Server.CreateObject("ADODB.RecordSet")
rs.Open sql,conn,1,1
if rs.recordcount=0 then
response.write "对不起,用户名或密码错误"
response.redirect "admin.asp"
end if
response.write request("user")
response.write rs("姓名")
if request("user")=rs("姓名") and request("pass")=rs("密码") then
session("user")=request("user")
session("pass")=request("pass")
response.redirect "adminindex.asp"
else
response.write "验证错误"
end if
end if
%>