function delete_copy() { /* Creates SQL statement to retrieve the copies using the releaseID */ $results = db_query('DELETE FROM ' . preg_replace('/[^\\w\\d_]+/', '', $file) . ' WHERE $recordid = ?', array($_POST['ID'])); $msg[0] = "Sorry ERROR in deletion"; $msg[1] = "Record successful DELETED"; AddSuccess($results, $msg); /* calls get_data */ //get_data(); }
function delete_copy() { /* makes connection */ $conn = db_connect(HOST, USER, PASS, DB, PORT); /* Creates SQL statement to retrieve the copies using the releaseID */ $sql = "DELETE FROM {$file} WHERE {$recordid} =" . $_POST['ID']; $results = mkr_query($sql, $conn); $msg[0] = "Sorry ERROR in deletion"; $msg[1] = "Record successful DELETED"; AddSuccess($results, $conn, $msg); /* Closes connection */ mysql_close($conn); /* calls get_data */ //get_data(); }
$sql = "Update reservation set billed=1 where billed=0"; //get the actual updated reservation_id, currently this simply updates all reservations that have not been billed $results = mkr_query($sql, $conn); $msg[0] = "Sorry Reservation not updated"; $msg[1] = "Reservations successful updated"; AddSuccess($results, $conn, $msg); } else { echo "<div align=\"center\"><h1>Bill/Reservation will be created on deposit</h1></div>"; } //mark room as booked $sql = "Update rooms set status='R' where roomid={$roomid}"; //get the actual updated book_id, currently this simply updates all bookings $results = mkr_query($sql, $conn); $msg[0] = "Sorry room reservation not marked"; $msg[1] = "Room marked as reserved"; AddSuccess($results, $conn, $msg); } } find($guestid); $results = mkr_query($sql, $conn); break; case 'List': break; case 'Find': //check if user is searching using name, payrollno, national id number or other fields $search = $_POST["search"]; find($search); $sql = "Select guests.guestid,guests.lastname,guests.firstname,guests.middlename,guests.pp_no,\n\t\t\tguests.idno,guests.countrycode,guests.pobox,guests.town,guests.postal_code,guests.phone,\n\t\t\tguests.email,guests.mobilephone,countries.country\n\t\t\tFrom guests\n\t\t\tInner Join countries ON guests.countrycode = countries.countrycode where pp_no='{$search}'"; $results = mkr_query($sql, $conn); $reservation = fetch_object($results); break;
$roomno = $_POST["roomno"]; $roomtypeid = $_POST["roomtypeid"]; $roomname = !empty($_POST["roomname"]) ? "'" . $_POST["roomname"] . "'" : 'NULL'; $noofrooms = $_POST["noofrooms"]; $occupancy = $_POST["occupancy"]; $tv = !empty($_POST["tv"]) ? "'" . $_POST["tv"] . "'" : 'NULL'; $aircondition = !empty($_POST["aircondition"]) ? "'" . $_POST["aircondition"] . "'" : 'NULL'; $fun = !empty($_POST["fun"]) ? "'" . $_POST["fun"] . "'" : 'NULL'; $safe = !empty($_POST["safe"]) ? "'" . $_POST["safe"] . "'" : 'NULL'; $fridge = !empty($_POST["fridge"]) ? "'" . $_POST["fridge"] . "'" : 'NULL'; $reserverd = !empty($_POST["status"]) ? "'" . $_POST["status"] . "'" : 'NULL'; $photo = !empty($_POST["photo"]) ? "'" . $photo . "'" : 'NULL'; $filetype = !empty($_POST["filetype"]) ? "'" . $filetype . "'" : 'NULL'; $sql = "INSERT INTO rooms (roomno,roomtypeid,roomname,noofrooms,occupancy,tv,aircondition,fun,safe,fridge,status,photo,filetype)\n\t\t\t\t VALUES({$roomno},{$roomtypeid},{$roomname},{$noofrooms},{$occupancy},{$tv},{$aircondition},{$fun},{$safe},{$fridge},{$status},{$photo},{$filetype})"; $results = mkr_query($sql, $conn); AddSuccess($results, $conn); } break; case 'List': break; case 'Find': //check if user is searching using name, payrollno, national id number or other fields $search = $_POST["search"]; $sql = "Select rooms.roomid,rooms.roomno,rooms.roomtypeid,roomtype.roomtype,rooms.roomname,\n\t\t\trooms.noofrooms,rooms.occupancy,rooms.tv,rooms.aircondition,rooms.fun,rooms.safe,rooms.fridge,rooms.status,rooms.photo\n\t\t\tFrom rooms Inner Join roomtype ON rooms.roomtypeid = roomtype.roomtypeid where roomno='{$search}'"; $results = mkr_query($sql, $conn); $rooms = fetch_object($results); break; } } ?>
/** *Connect to the database to delete file by the http POST variable ID<br> *uses constants <b>HOST</b>,<b>USER</b>,<b>PASS</b>,<b>DB</b>,<b>PORT</b> to connect to the database */ function delete_copy() { global $conn; if (!$conn) { /* makes connection */ $conn = connect_Hotel_db(HOST, USER, PASS, DB, PORT); } /* Creates SQL statement to retrieve the copies using the releaseID */ $sql = "DELETE FROM " . $file . " WHERE " . $recordid . "=" . strip_specials($_POST['ID']); $stmt = $conn->prepare($sql); $results = $stmt->execute(); $msg[0] = "Sorry ERROR in deletion"; $msg[1] = "Record successful DELETED"; AddSuccess($results, $conn, $msg); }