|
1 <?php |
|
2 |
|
3 require($_SERVER['DOCUMENT_ROOT']."/config.php"); |
|
4 require($_SERVER['DOCUMENT_ROOT']."/version.php"); |
|
5 |
|
6 #Connect to the database |
|
7 $connect = mysqli_connect(DBASE_HOST, DBASE_USER, DBASE_PASS, DBASE_NAME); |
|
8 if (! $connect) { |
|
9 die('Connect Error (' . mysqli_connect_errno() . ') ' . mysqli_connect_error()); |
|
10 } |
|
11 |
|
12 // get data and store in a json array |
|
13 $query = "SELECT * FROM inventory_miscs"; |
|
14 if (isset($_GET['insert'])) { |
|
15 // INSERT COMMAND |
|
16 $sql = "INSERT INTO `inventory_miscs` SET name='" . mysqli_real_escape_string($connect, $_GET['name']); |
|
17 $sql .= "', type='" . $_GET['type']; |
|
18 $sql .= "', use_use='" . $_GET['use_use']; |
|
19 $sql .= "', time='" . $_GET['time']; |
|
20 ($_GET['amount_is_weight'] == 'true') ? $sql .= "', amount_is_weight='1" : $sql .= "', amount_is_weight='0"; |
|
21 $sql .= "', use_for='" . mysqli_real_escape_string($connect, $_GET['use_for']); |
|
22 $sql .= "', notes='" . mysqli_real_escape_string($connect, $_GET['notes']); |
|
23 ($_GET['always_on_stock'] == 'true') ? $sql .= "', always_on_stock='1" : $sql .= "', always_on_stock='0"; |
|
24 $sql .= "', inventory='" . $_GET['inventory']; |
|
25 $sql .= "', cost='" . $_GET['cost']; |
|
26 $sql .= "', production_date='" . $_GET['production_date']; |
|
27 $sql .= "', tht_date='" . $_GET['tht_date']; |
|
28 $sql .= "';"; |
|
29 $result = mysqli_query($connect, $sql); |
|
30 if (! $result) { |
|
31 syslog(LOG_NOTICE, "db_inventory_miscs: ".$sql." result: ".mysqli_error($connect)); |
|
32 } else { |
|
33 syslog(LOG_NOTICE, "db_inventory_miscs: inserted ".$_GET['name']); |
|
34 } |
|
35 echo $result; |
|
36 |
|
37 } else if (isset($_GET['update'])) { |
|
38 // UPDATE COMMAND |
|
39 $sql = "UPDATE `inventory_miscs` SET name='" . mysqli_real_escape_string($connect, $_GET['name']); |
|
40 $sql .= "', type='" . $_GET['type']; |
|
41 $sql .= "', use_use='" . $_GET['use_use']; |
|
42 $sql .= "', time='" . $_GET['time']; |
|
43 ($_GET['amount_is_weight'] == 'true') ? $sql .= "', amount_is_weight='1" : $sql .= "', amount_is_weight='0"; |
|
44 $sql .= "', use_for='" . mysqli_real_escape_string($connect, $_GET['use_for']); |
|
45 $sql .= "', notes='" . mysqli_real_escape_string($connect, $_GET['notes']); |
|
46 ($_GET['always_on_stock'] == 'true') ? $sql .= "', always_on_stock='1" : $sql .= "', always_on_stock='0"; |
|
47 $sql .= "', inventory='" . $_GET['inventory']; |
|
48 $sql .= "', cost='" . $_GET['cost']; |
|
49 $sql .= "', production_date='" . $_GET['production_date']; |
|
50 $sql .= "', tht_date='" . $_GET['tht_date']; |
|
51 $sql .= "' WHERE record='" . $_GET['record'] . "';"; |
|
52 $result = mysqli_query($connect, $sql); |
|
53 if (! $result) { |
|
54 syslog(LOG_NOTICE, "db_inventory_miscs: ".$sql." result: ".mysqli_error($connect)); |
|
55 } else { |
|
56 syslog(LOG_NOTICE, "db_inventory_miscs: updated record ".$_GET['record']); |
|
57 } |
|
58 echo $result; |
|
59 |
|
60 } else if (isset($_GET['delete'])) { |
|
61 // DELETE COMMAND |
|
62 $sql = "DELETE FROM `inventory_miscs` WHERE record='".$_GET['record']."';"; |
|
63 $result = mysqli_query($connect, $sql); |
|
64 if (! $result) { |
|
65 syslog(LOG_NOTICE, "db_inventory_miscs: ".$sql." result: ".mysqli_error($connect)); |
|
66 } else { |
|
67 syslog(LOG_NOTICE, "db_inventory_miscs: deleted record ".$_GET['record']); |
|
68 } |
|
69 echo $result; |
|
70 |
|
71 } else { |
|
72 // SELECT COMMAND |
|
73 $result = mysqli_query($connect, $query) or die("SQL Error 1: " . mysqli_error($connect)); |
|
74 while ($row = mysqli_fetch_array($result, MYSQLI_ASSOC)) { |
|
75 $miscs[] = array( |
|
76 'record' => $row['record'], |
|
77 'name' => $row['name'], |
|
78 'type' => $row['type'], |
|
79 'use_use' => $row['use_use'], |
|
80 'time' => $row['time'], |
|
81 'amount_is_weight' => $row['amount_is_weight'], |
|
82 'use_for' => $row['use_for'], |
|
83 'notes' => $row['notes'], |
|
84 'always_on_stock' => $row['always_on_stock'], |
|
85 'inventory' => $row['inventory'], |
|
86 'cost' => $row['cost'], |
|
87 'production_date' => $row['production_date'], |
|
88 'tht_date' => $row['tht_date'] |
|
89 ); |
|
90 } |
|
91 echo json_encode($miscs); |
|
92 } |
|
93 ?> |