if (isset($_POST['submit']))
$_session['username'] = $_POST["Username"];
$_session['password'] = $_POST["password"];
/* Check user details */
$passwordHash = sha1($_session['password']);
$sql = "SELECT Username,Password FROM Manager1 WHERE Username = '".$_session['username']."' AND Password = '$passwordHash'";
/*$sql = mysql_query("INSERT INTO Manager1 (Username,Password) VALUES ('$p','$passwordHash')");*/
$rs = mysql_query($sql);
$numrows = mysql_num_rows($rs);
if($numrows == 1)
 /* Log user in */
echo 'Welcome back';
echo"Sorry, your username or password was incorrect!";

