fhiiqm/raum_ins.php
changeset 1 6288d5685bff
child 14 32203b8f40ee
equal deleted inserted replaced
0:ef68113ff309 1:6288d5685bff
       
     1 <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
       
     2 <html xmlns="http://www.w3.org/1999/xhtml" xml:lang="en" lang="en">
       
     3 
       
     4 <head>
       
     5 	<meta http-equiv="content-type" content="text/html; charset=iso-8859-1" />
       
     6    	<link href="css/db.css" rel="STYLESHEET" type="TEXT/CSS" /> 
       
     7 
       
     8 	<title>Eingabe Raumdaten</title>
       
     9 </head>
       
    10 
       
    11 <body>
       
    12     <div class="float-r"><img src="img/house.png" border="0" alt="Raumdaten eingeben" title="Raumdaten eingeben"/></div>
       
    13 
       
    14 <?php
       
    15 
       
    16 /**
       
    17  * @author Bettina Schwarzer, Fritz-Haber-Institut
       
    18  * @copyright 07/2011
       
    19  *
       
    20  * INSERT Raumdaten   
       
    21  */
       
    22 
       
    23     error_reporting(E_ALL ^ E_NOTICE);
       
    24     
       
    25 	include_once($_SERVER['DOCUMENT_ROOT'] ."/fhiiqm/inc/dbconnect.inc.php");
       
    26 	//$dbc = new dbconnection();
       
    27     
       
    28 	$ok		= $_POST["ok"];
       
    29 	$ins	= $_POST["ins"];
       
    30     $raum    = $_POST["raum"];
       
    31     if (!$raum['okn']) $ok=false;
       
    32     
       
    33 //    print_r($vtr);
       
    34 //    echo "<br><br>\n";
       
    35 //    echo "Vertragsbezeichnung: " . $vtr['cname'] ."<br><br>\n";
       
    36     
       
    37     if (!$ok || !$ins || ($ins && is_uploaded_file($_FILES["rfile"]["tmp_name"]) && $raum['rfname']<'!'))
       
    38     {
       
    39         $upd = $ins; // wegen filename-Pruefung bei Upload
       
    40         include_once("form/raum_form.inc.php");
       
    41         
       
    42         if ($ins == "eingeben" )
       
    43 		{
       
    44             echo            
       
    45             "<tr>
       
    46         		<td>Upload  Raumplan </td>
       
    47         		<td><input type=\"file\" name=\"rfile\" size=\"50\" maxlength=\"50\" value=\"" .
       
    48             $_FILES["rfile"]["name"] . "\"/></td>
       
    49             </tr>";
       
    50     
       
    51 		  	$frage = "Alle Angaben ok?<br>
       
    52               erst wenn Haken gesetzt, Upload-File w&auml;hlen!";
       
    53 			echo "<tr>
       
    54 			  <td class=\"red\" valign=\"top\" align=\"left\">$frage</td>
       
    55 			        <td><input type=\"checkbox\" name=\"ok\" value=\"1\"";
       
    56 			        if ($ok)  echo "checked"; 
       
    57 			echo "></td>\n</tr>\n"; 
       
    58 		}
       
    59 		
       
    60 		echo "<tr>\n";
       
    61 		echo "
       
    62 		  <td>&nbsp;</td>
       
    63 		  <td><input class=\"button\" type=\"submit\" value=\"eingeben\" name=\"ins\" title=\"insert\" /></td>\n";
       
    64 		echo "</tr>\n";
       
    65         echo "</table>\n";
       
    66         echo "</div>\n";
       
    67         echo "</form>\n";	
       
    68 
       
    69     }
       
    70     else
       
    71     {
       
    72         echo "<div align='center'>\n";
       
    73         //daten speichern
       
    74 //            echo "1realer filename: " . $_FILES["vfile"]["name"] . "<br><br>\n";
       
    75         //INSERT Raum
       
    76         $raum['rbez'] = substr($raum['rbez'],0,50);
       
    77         $raum['rnum'] = substr($raum['rnum'],0,10);
       
    78         if ($raum['rtyp']== -1) $rtyp = "NULL"; else $rtyp = "'" . $raum['rtyp'] . "'"; 
       
    79         // Filename Vertrag
       
    80         $raum['rfname'] = substr($raum['rfname'],0,50);
       
    81         if (isset($raum['rflae']) && $raum['rflae']>"0")
       
    82             $raum['rflae'] = str_replace(",",".",$raum['rflae']);
       
    83         else
       
    84             $raum['rflae'] = null;
       
    85 //            $raum['rflae'] = "NULL";
       
    86 
       
    87         if (!isset($dbc) || !$dbc) 
       
    88             $dbc = new dbconnection();
       
    89 /*      
       
    90         $sql = "INSERT INTO Raum (raum_nr,raum_name,geb_ID,raumtyp_ID,raum_flaeche) 
       
    91                     VALUES ('" . $raum['rnum'] . "', '" .
       
    92                     $raum['rbez'] . "', '" . 
       
    93                     $raum['geb'] . "', '" .
       
    94                     $raum['rtyp'] . "', " .
       
    95                     $raum['rflae'] . ")";
       
    96                     
       
    97         echo "INSERT = $sql<br />\n";
       
    98 
       
    99         $result=$dbc->execute($sql);
       
   100 */
       
   101         // vermeiden von SQL-Injection
       
   102         $stmt = $dbc -> stmtinit();
       
   103         if (is_object($stmt))
       
   104         {
       
   105             if ($raum['rtyp']== -1) $raum['rtyp']=null;
       
   106             $stmt -> prepare ("INSERT INTO Raum (raum_nr,raum_name,geb_ID,raumtyp_ID,raum_flaeche) VALUES (?,?,?,?,?)");
       
   107             $stmt -> bind_param('ssssd', $raum['rnum'], $raum['rbez'], $raum['geb'], $raum['rtyp'], $raum['rflae']);
       
   108             $result = $stmt -> execute();      
       
   109         }
       
   110         if ($dbc->error) echo "error: " . $dbc->error . "<br><br>\n";
       
   111         if ($result)
       
   112         { // INSERT o.k.
       
   113           // raum_ID ermitteln
       
   114            $rid = $dbc -> insertId();
       
   115 
       
   116             // upload File
       
   117             if (is_uploaded_file($_FILES["rfile"]["tmp_name"]) && isset($_FILES["rfile"]["name"]) && $_FILES["rfile"]["name"] )
       
   118             {
       
   119                 include ("inc/file_upload.inc.php");
       
   120                 $fname = gen_filename($raum['rfname'],"rfile",$rid);
       
   121                 $retf   = upload("rfile", $fname, $rid, "raeume");              // Datei prüfen und in Dokumentenverzeichnis verschieben
       
   122                 
       
   123                 if ($retf)
       
   124                 {   // upload o.k.
       
   125                     //UPDATE des Filenamens
       
   126                     $sql = "UPDATE Raum SET raum_file = '" . $rid . "_" . $fname ."' WHERE raum_ID=$rid";
       
   127                     $retv=$dbc->execute($sql);
       
   128                     if (!$retv) 
       
   129                         echo $dbc -> error . "<br>\n";
       
   130                 }
       
   131                
       
   132             }
       
   133             else $retf=1; //kein Raumplan hochgeladen
       
   134 
       
   135             if ($result && $retf) // INSERT Raum
       
   136             {
       
   137                 //Eingabe Daten, Upload File erfolgreich 
       
   138                     echo "<p class='green'><b>Raumdaten zu ID '$rid' wurden erfolgreich gespeichert.</b></p>\n";
       
   139                     echo "<br /><br />\n";
       
   140 
       
   141                 // Anzeigen gespeicherte Raumdaten
       
   142                 if ($fname)
       
   143                     $rfile = $rid . "_" . $fname;
       
   144                 else
       
   145                     $rfile = $raum['rfname'];
       
   146                 include ("inc/raum_dat_show.inc.php");
       
   147             }            
       
   148         }
       
   149         $dbc -> close();
       
   150         // Raumliste filtern mit zuletzt eingegeben Haus
       
   151         $liste="?s=2&f=4&b=" . substr($raum["geb"],0,3);
       
   152         echo "</div>\n";
       
   153         echo "<p>&nbsp;&nbsp;&nbsp;<a href=\"raum_flist.php$liste\" target=\"_self\" title=\"Raumliste\">Zur&uuml;ck zur Raumliste</a></p>\n";    
       
   154         echo "<p>&nbsp;&nbsp;&nbsp;<a href=\"raum_ins.php\" target=\"_self\" title=\"Raum erfassen\">Weiteren Raum erfassen</a></p>\n";    
       
   155 
       
   156     }
       
   157 
       
   158 ?>
       
   159 
       
   160 </body>
       
   161 </html>