diff -r 00e610fc3571 -r ca6b3d4f5a97 www/includes/db_inventory_water.php --- a/www/includes/db_inventory_water.php Wed Aug 10 11:43:19 2022 +0200 +++ /dev/null Thu Jan 01 00:00:00 1970 +0000 @@ -1,102 +0,0 @@ - false, - 'msg' => 'Ok', -); - -if (isset($_POST['insert']) || isset($_POST['update'])) { - if (isset($_POST['insert'])) { - $sql = "INSERT INTO `inventory_waters` SET "; - } - if (isset($_POST['update'])) { - $sql = "UPDATE `inventory_waters` SET "; - } - - if (isset($_POST['uuid']) && (strlen($_POST['uuid']) == 36)) { - $sql .= "uuid='" . $_POST['uuid']; - } else { - $uuid = str_replace("\n", "", file_get_contents('/proc/sys/kernel/random/uuid')); - $sql .= "uuid='" . $uuid; - } - $sql .= "', name='" . mysqli_real_escape_string($connect, $_POST['name']); - ($_POST['unlimited_stock'] == 'true') ? $sql .= "', unlimited_stock='1" : $sql .= "', unlimited_stock='0"; - $sql .= "', calcium='" . $_POST['calcium']; - $sql .= "', bicarbonate='" . $_POST['bicarbonate']; - $sql .= "', sulfate='" . $_POST['sulfate']; - $sql .= "', chloride='" . $_POST['chloride']; - $sql .= "', sodium='" . $_POST['sodium']; - $sql .= "', magnesium='" . $_POST['magnesium']; - $sql .= "', ph='" . $_POST['ph']; - $sql .= "', notes='" . mysqli_real_escape_string($connect, $_POST['notes']); - $sql .= "', total_alkalinity='" . $_POST['total_alkalinity']; - $sql .= "', inventory='" . $_POST['inventory']; - $sql .= "', cost='" . $_POST['cost']; - if (isset($_POST['insert'])) { - $sql .= "';"; - } - if (isset($_POST['update'])) { - $sql .= "' WHERE record='" . $_POST['record'] . "';"; - } - $result = mysqli_query($connect, $sql); - if (! $result) { - syslog(LOG_NOTICE, "db_inventory_waters: ".$sql." result: ".mysqli_error($connect)); - $response['error'] = true; - $response['msg'] = "SQL fout: ".mysqli_error($connect); - } - exit(json_encode($response)); - -} else if (isset($_POST['delete'])) { - // DELETE COMMAND - $sql = "DELETE FROM `inventory_waters` WHERE record='".$_POST['record']."';"; - $result = mysqli_query($connect, $sql); - if (! $result) { - syslog(LOG_NOTICE, "db_inventory_waters: ".$sql." result: ".mysqli_error($connect)); - $response['error'] = true; - $response['msg'] = "SQL fout: ".mysqli_error($connect); - } - exit(json_encode($response)); - -} else { - // SELECT COMMAND - $query = "SELECT * FROM inventory_waters ORDER BY name"; - $result = mysqli_query($connect, $query) or die("SQL Error 1: " . mysqli_error($connect)); - while ($row = mysqli_fetch_array($result, MYSQLI_ASSOC)) { - $waters[] = array( - 'record' => $row['record'], - 'name' => $row['name'], - 'uuid' => $row['uuid'], - 'unlimited_stock' => $row['unlimited_stock'], - 'calcium' => $row['calcium'], - 'bicarbonate' => $row['bicarbonate'], - 'sulfate' => $row['sulfate'], - 'chloride' => $row['chloride'], - 'sodium' => $row['sodium'], - 'magnesium' => $row['magnesium'], - 'ph' => $row['ph'], - 'notes' => $row['notes'], - 'total_alkalinity' => $row['total_alkalinity'], - 'inventory' => $row['inventory'], - 'cost' => $row['cost'] - ); - } - header("Content-type: application/json"); - exit(json_encode($waters)); -} - -syslog(LOG_NOTICE, "db_inventory_water: missing arguments"); -$response['error'] = true; -$response['msg'] = "missing arguments"; -echo json_encode($response); - -?>