include_once "./inc.php"; secure('mr.in51.com'); if ( $filter == '' ) { if (!empty($row[0]) ) $filter = " and category=\"$row[0]\""; if ( $filter == '' ) $filter = 'All'; } else { $filter = stripslashes($filter); } if ( ($submit == 'Save' || $submit == 'Save As New') && ( $last == 'Edit' || $last == 'Add Line') ) { if ( $f0 == $prot ) { $msg = 'Invalid category'; } else { $g10 = stripslashes($g10); $qry = "set category=\"$g0\", subcat=\"$g1\", name=\"$g2\", phone=\"$g3\", web=\"$g4\", email=\"$g5\", company=\"$g6\", fax=\"$g7\", phone2=\"$g8\", fax2=\"$g9\", notes=\"$g10\", ldate=now()"; $qry = ( $submit == 'Save' && $last == 'Edit' ) ? "update contact $qry where sid=$id and owner=\"$u\"" : "insert into contact $qry, owner=\"$u\""; $res = mysql_db_query($db, $qry, $sql) or die(Mysql_error().' in '.$qry); $msg = 'Saved'; } } elseif ( $submit == 'All' ) { $filter = 'All'; for ($i=0; $i<=9; $i++) unset ( ${"f$i"} ); } elseif ( $submit == 'Filter' ) { unset($filter); $filter .= empty($f0) ? '' : " and category=\"$f0\""; $filter .= empty($f1) ? '' : " and subcat=\"$f1\""; $filter .= empty($f2) ? '' : " and name like \"%$f2%\""; $filter .= empty($f3) ? '' : " and phone like \"%$f3%\""; $filter .= empty($f4) ? '' : " and (web like \"%$f4%\" or email like \"%$f4%\")"; $filter .= empty($f6) ? '' : " and company like \"%$f6%\""; $filter .= empty($f7) ? '' : " and fax like \"%$f7%\""; $filter .= empty($f8) ? '' : " and phone2 like \"%$f8%\""; $filter .= empty($f9) ? '' : " and fax2 like \"%$f9%\""; } elseif ( $submit == 'Delete' && $last == 'Edit' ) { $qry = "delete from contact where sid=$id and owner=\"$u\""; if ( !($res = mysql_db_query($db, $qry, $sql))) { die(Mysql_error($sql)); } $msg = 'Deleted'; } elseif ( $submit == 'Confirm' && $last == 'Config') { if ( $g3 <> $g4 ) { $msg = 'New passwords should be the same'; $submit = $last; } else { $fontsize = $g5 < 8 ? '8' : "$g5"; $fontsize = $fontsize > 20 ? '20' : $fontsize; $qry1 = empty($g3) ? '' : ", subcat=\"$g3\""; $qry = "update contact set name=\"$g0\", email=\"$g1\", web=\"$g2\", company=\"$fontsize\" $qry1 where owner=\"$u\" and category=\"$prot\""; if ( !($res = mysql_db_query($db, $qry, $sql))) { die(Mysql_error($sql)); } $msg = 'Saved'; } } elseif ( $submit == 'Confirm' && $last == 'Add User' ) { $qry = "select * from contact where owner=\"$g0\" and category=\"$prot\""; if ( !($res = mysql_db_query($db, $qry, $sql))) { die(Mysql_error($sql)); } if ( mysql_num_rows($res) > 0 ) { $msg = 'User already exists'; } else { $qry = "insert into contact set owner=\"$g0\", category=\"$prot\", subcat='first'"; if ( !($res = mysql_db_query($db, $qry, $sql))) { die(Mysql_error($sql)); } $msg = 'User added, initial password is "first", please change it'; } } elseif ( $submit == 'Confirm' && $last == 'Delete User' ) { $qry = "select * from contact where owner=\"$g0\""; if ( !($res = mysql_db_query($db, $qry, $sql))) { die(Mysql_error($sql)); } if ( mysql_num_rows($res) < 1 ) { $msg = 'User does not exist'; } else { $qry = "delete from contact where owner=\"$g0\""; if ( !($res = mysql_db_query($db, $qry, $sql))) { die(Mysql_error($sql)); } $msg = 'User and related records are deleted'; } } ?>