www/includes/db_inventory_mash_profiles.php

changeset 23
4b157d7a1cee
child 25
d9da6c40dff5
--- /dev/null	Thu Jan 01 00:00:00 1970 +0000
+++ b/www/includes/db_inventory_mash_profiles.php	Sat Aug 18 17:31:11 2018 +0200
@@ -0,0 +1,87 @@
+<?php
+
+require($_SERVER['DOCUMENT_ROOT']."/config.php");
+require($_SERVER['DOCUMENT_ROOT']."/version.php");
+
+#Connect to the database
+$connect = mysqli_connect(DBASE_HOST, DBASE_USER, DBASE_PASS, DBASE_NAME);
+if (! $connect) {
+	die('Connect Error (' . mysqli_connect_errno() . ') ' . mysqli_connect_error());
+}
+
+// get data and store in a json array
+$query = "SELECT * FROM inventory_mash_profiles";
+if (isset($_GET['insert'])) {
+	// INSERT COMMAND
+	$sql  = "INSERT INTO `inventory_mash_profiles` SET name='" . mysqli_real_escape_string($connect, $_GET['name']);
+	$sql .= "', grain_temp='" . $_GET['grain_temp'];
+	$sql .= "', notes='" . mysqli_real_escape_string($connect, $_GET['notes']);
+	$sql .= "', tun_temp='" . $_GET['tun_temp'];
+	$sql .= "', sparge_temp='" . $_GET['sparge_temp'];
+	$sql .= "', ph='" . $_GET['ph'];
+	$sql .= "', tun_weight='" . $_GET['tun_weight'];
+	$sql .= "', tun_specific_heat='" . $_GET['tun_specific_heat'];
+	($_GET['equip_adjust'] == 'true') ? $sql .= "', equip_adjust='1" : $sql .= "', equip_adjust='0";
+	$sql .= "', steps='" . mysqli_real_escape_string($connect, $_GET['steos']);
+	$sql .= "';";
+	$result = mysqli_query($connect, $sql);
+	if (! $result) {
+		syslog(LOG_NOTICE, "db_inventory_mash_profiles: ".$sql." result: ".mysqli_error($connect));
+	} else {
+		syslog(LOG_NOTICE, "db_inventory_mash_profiles: inserted ".$_GET['name']);
+	}
+	echo $result;
+
+} else if (isset($_GET['update'])) {
+	// UPDATE COMMAND
+	$sql  = "UPDATE `inventory_mash_profiles` SET name='" . mysqli_real_escape_string($connect, $_GET['name']);
+	$sql .= "', grain_temp='" . $_GET['grain_temp'];
+	$sql .= "', notes='" . mysqli_real_escape_string($connect, $_GET['notes']);
+	$sql .= "', tun_temp='" . $_GET['tun_temp'];
+	$sql .= "', sparge_temp='" . $_GET['sparge_temp'];
+	$sql .= "', ph='" . $_GET['ph'];
+	$sql .= "', tun_weight='" . $_GET['tun_weight'];
+	$sql .= "', tun_specific_heat='" . $_GET['tun_specific_heat'];
+	($_GET['equip_adjust'] == 'true') ? $sql .= "', equip_adjust='1" : $sql .= "', equip_adjust='0";
+	$sql .= "', steps='" . mysqli_real_escape_string($connect, $_GET['steos']);
+	$sql .= "' WHERE record='" . $_GET['record'] . "';";
+	$result = mysqli_query($connect, $sql);
+	if (! $result) {
+		syslog(LOG_NOTICE, "db_inventory_mash_profiles: ".$sql." result: ".mysqli_error($connect));
+	} else {
+		syslog(LOG_NOTICE, "db_inventory_mash_profiles: updated record ".$_GET['record']);
+	}
+	echo $result;
+
+} else if (isset($_GET['delete'])) {
+	// DELETE COMMAND
+	$sql = "DELETE FROM `inventory_mash_profiles` WHERE record='".$_GET['record']."';";
+	$result = mysqli_query($connect, $sql);
+	if (! $result) {
+		syslog(LOG_NOTICE, "db_inventory_mash_profiles: ".$sql." result: ".mysqli_error($connect));
+	} else {
+		syslog(LOG_NOTICE, "db_inventory_mash_profiles: deleted record ".$_GET['record']);
+	}
+	echo $result;
+
+} else {
+	// SELECT COMMAND
+	$result = mysqli_query($connect, $query) or die("SQL Error 1: " . mysqli_error($connect));
+	while ($row = mysqli_fetch_array($result, MYSQLI_ASSOC)) {
+		$suppliers[] = array(
+			'record' => $row['record'],
+			'name' => $row['name'],
+			'grain_temp' => $row['grain_temp'],
+			'tun_temp' => $row['tun_temp'],
+			'sparge_temp' => $row['sparge_temp'],
+			'ph' => $row['ph'],
+			'tun_weight' => $row['tun_weight'],
+			'tun_specific_heat' => $row['tun_specific_heat'],
+			'equip_adjust' => $row['equip_adjust'],
+			'notes' => $row['notes'],
+			'steps' => $row['steps']
+		);
+	}
+	echo json_encode($suppliers);
+}
+?>

mercurial