var xmlhttp

function login(usr,ps)
{
xmlhttp=GetXmlHttpObject();
if (xmlhttp==null)
  {
  alert ("Your browser does not support AJAX!");
  return;
  }
var url="_login.php";
url=url+"?email="+usr+"&pass="+ps;
url=url+"&sid="+Math.random();
xmlhttp.onreadystatechange=stateChanged;
xmlhttp.open("GET",url,true);
xmlhttp.send(null);
}

function stateChanged()
{
	
if (xmlhttp.readyState==4)
  {
  var ajaxDisplay = document.getElementById('divlogin'); 
  document.getElementById("divlogin").innerHTML=xmlhttp.responseText;
    
	var varredirect=xmlhttp.responseText.indexOf('ok');

	if (varredirect!= -1 ) {
	window.location = "?act=katalog";
	}
	ajaxDisplay.innerHTML = xmlhttp.responseText; 
	
	}
}

function GetXmlHttpObject()
{
if (window.XMLHttpRequest)
  {
  // code for IE7+, Firefox, Chrome, Opera, Safari
  return new XMLHttpRequest();
  }
if (window.ActiveXObject)
  {
  // code for IE6, IE5
  return new ActiveXObject("Microsoft.XMLHTTP");
  }
return null;
}
