Thursday 1 December 2011

user init


<?php
require_once(ADMIN_LIB_PATH."user/userManager.php");
$userDetail = new userManager();//object for userManager class for accesing all function in userManager

//****************************PAGINATION START FROM HERE*********************************************
$numberOfRecordsPerPage = 2;
$minimumNumberOfPage = 1;
if(isset($_REQUEST['page']) && $_REQUEST['page']!=''){
$minimumNumberOfPage = $_REQUEST['page'];
}
$limitStartfrom = ($minimumNumberOfPage-1)*$numberOfRecordsPerPage;
//There is an object for count the number of record, From these we get number of page.................
$totalNumberOfRecords = $userDetail->count_User();
$totalNumberOfPages = ceil($totalNumberOfRecords/$numberOfRecordsPerPage);
$self = $_SERVER['PHP_SELF'];
if($minimumNumberOfPage>1){
$currentPage = $minimumNumberOfPage-1;
$previous = "<a href=\"$self?page=$currentPage\">Previous</a>";
$first = "<a href=\"$self?page=1\">First</a>";
} else{
$previous = "<a href=\"#\" class=\"disable\">Previous</a>";
$first = "<a href=\"#\" class=\"disable\">First</a>";
}
if($totalNumberOfPages>$minimumNumberOfPage){
$currentPage = $minimumNumberOfPage+1;
$next = "<a href=\"$self?page=$currentPage\">Next</a>";
$last = "<a href=\"$self?page=$totalNumberOfPages\">Last</a>";
} else {
$next = "<a href=\"#\" class=\"disable\">Next</a>";
$last = "<a href=\"#\" class=\"disable\">Last</a>";
}
//*************************FOR INSERT AND UPDATE CALL OBJECT FROM CMS MANNAGER*********************

if(isset($_REQUEST['action']) && $_REQUEST['action']=='add_new_user')
{
$insertUser= $userDetail->addUser($_REQUEST,$_FILES);
if(isset($_REQUEST['uId']) && $_REQUEST['uId']!=''){
$returnUrlAddress ='admin-users.php?msg=2&page='.$_REQUEST['url'];
echo '<script>document.location.href="'.$returnUrlAddress.'"</script>';
exit();
} else {
echo '<script>document.location.href="admin-users.php?msg=1";</script>';
exit();
}
}

//******************************OBJECT FOR THE LISTING*************************************************
if($pg_Name=='userlist'){
$userList = $userDetail->getUserList($_REQUEST,$limitStartfrom,$numberOfRecordsPerPage);
}
//*****************************SHOW VALUE ON EDITING***************************************************
$name=$usr_name=$password=$access_level=$status='';
if(isset($_REQUEST['uId']) && $_REQUEST['uId']!='' ) {
$editList= $userDetail->getUserForEdit($_REQUEST['uId']);
if(count($editList)>0){
$name=$editList[0]['name'];
$usr_name=$editList[0]['usr_name'];
$password=$editList[0]['decrypt_password'];
$access_level=$editList[0]['access_level'];
$status=$editList[0]['status'];
}
}
//*********************************************************************************

action user


include("include/common.inc.php");
include("./include/headerAdmin.php");
require_once("include/DatabaseManager.php");

if(isset($_REQUEST['action']) && $_REQUEST['action'] == 'delUser' && isset(   $_REQUEST['uId']) && $_REQUEST['uId'] != ''){
  $delete = "DELETE FROM admin_users WHERE usrid='".$_REQUEST['uId']."'";
mysql_query($delete);
$result = "admin-users.php?".$_REQUEST['url']."&deleted=true";
echo '<script>document.location.href="'.$result.'"</script>';
    }

if(isset($_REQUEST['action']) && $_REQUEST['action']=="deactive" ){
if(!empty($_POST['chk'])){
foreach($_POST['chk'] as $val){
$query='UPDATE admin_users SET status="0" WHERE  usrid="'.$val.'"';
mysql_query($query);
$result = "admin-users.php?start=".$_POST['urlForDeleteAndDeactivate']."&deactive=true";
echo '<script>document.location.href="'.$result.'"</script>';
    }
}
}
else {
if(!empty($_POST['chk'])) {
foreach($_POST['chk'] as $val){
$del = "delete from admin_users where usrid='".$val."'";
mysql_query($del);
$result = "admin-users.php?start=".$_POST['urlForDeleteAndDeactivate']."&deleted=true";
echo '<script>document.location.href="'.$result.'"</script>';
}
}
}

$name=$usr_name=$password=$access_level=$status='';
if(isset($_REQUEST['action']) && $_REQUEST['action'] =='add_new_user' ) {
if(isset($_REQUEST['uId']) && $_REQUEST['uId']!='' ) {
$query = 'UPDATE admin_users SET name="'.$_REQUEST['name'].'",usr_name="'.$_REQUEST['usr_name'].'",password="'.md5($_REQUEST['password']).'",access_level="'.$_REQUEST['access_level'].'",status="'.$_REQUEST['status'].'",decrypt_password="'.$_REQUEST['password'].'" WHERE usrid="'.$_REQUEST['uId'].'"';
$dbCon->executeInsert($query);
$result = "admin-users.php?".$_REQUEST['url']."&msg=1";
echo '<script>document.location.href="'.$result.'"</script>';

} else {
$query='INSERT INTO `admin_users`(name,usr_name,password,access_level,status,decrypt_password)VALUES("'.$_REQUEST['name'].'","'.$_REQUEST['usr_name'].'","'.md5($_REQUEST['password']).'","'.$_REQUEST['access_level'].'","'.$_REQUEST['status'].'","'.$_REQUEST['password'].'")';
$dbCon->executeInsert($query);
$result = "admin-users.php?msg=2";
echo '<script>document.location.href="'.$result.'"</script>';
}
}

$name=$usr_name=$password=$access_level=$status='';
if(isset($_REQUEST['uId']) && $_REQUEST['uId']!='' ) {
$selectAll="SELECT * FROM `admin_users` WHERE usrid='".$_REQUEST['uId']."'";
$result = $dbCon->executeQuery($selectAll,1);
if(count($result)>0){
$name=$result[0]['name'];
$usr_name=$result[0]['usr_name'];
$password=$result[0]['decrypt_password'];
$access_level=$result[0]['access_level'];
$status=$result[0]['status'];
}
}


if(isset($_REQUEST['action']) && $_REQUEST['action'] =='userStatus') {
$status='';
$url='';
if($_REQUEST['status']=='0'){
$status=1;
} else{
$status=0;
}
$update="UPDATE admin_users SET status='".$status."' WHERE usrid=".$_REQUEST['id'];
mysql_query($update);
$result ='admin-users.php?'.$_REQUEST['url'];
echo '<script>document.location.href="'.$result.'"</script>';
}


No comments:

Post a Comment