%PDF- %PDF-
Direktori : /home/riacommer/domains/gasworld.com.my/private_html/admin/api/ |
Current File : /home/riacommer/domains/gasworld.com.my/private_html/admin/api/ads_slider.php |
<?php //error_reporting(-1); //report all error! include_once("security.php"); include_once("db.php"); include_once ("imageresize.php"); //[product] //for delete only if(isset($_GET["id"])){ if($_GET["id"]!=""){ $id = $_GET["id"]; $sql = "DELETE FROM sa_banner WHERE id='$id'"; mysql_query($sql); header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/ads_slider.php"); } else { header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/400.php"); } } else { //for create, update if(isset($_POST["act"])){ $act = trim($_POST["act"]); //$banner = trim($_POST["banner"]); //business logic code here $tmp_name = $_FILES["banner"]["tmp_name"]; $banner = $_FILES["banner"]["name"]; $caption1 = trim($_POST["caption1"]); $caption2 = trim($_POST["caption2"]); $caption3 = trim($_POST["caption3"]); $linkto = trim($_POST["linkto"]); if(isset($_POST["publish"])){ $publish = '1'; } else { $publish = '0'; } if($act=="create"){ $sql = "INSERT INTO sa_banner (banner, caption1, caption2, caption3, linkto, publish, ordering, created_date, lastupdated_date) VALUES ('$banner', '$caption1', '$caption2', '$caption3', '$linkto', '$publish', 0, now(), now())"; $isSuccess = mysql_query($sql); //echo $sql; if($banner!=""){ if(!file_exists("../../contents/sliders")){ mkdir("../../contents/sliders", 0777, true); } move_uploaded_file($tmp_name, "../../contents/sliders/".$banner); //resize to 120x50 if($banner!=""){ $imgrz= new ImageResize(); $imgrz->doResize("../../contents/sliders/".$banner, 120, 50, "../../contents/sliders/thumb_".$banner); } } header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/ads_slider.php"); } else if($act=="update"){ $id = trim($_POST["id"]); $sql = "UPDATE sa_banner SET caption1='$caption1', caption2='$caption2', caption3='$caption3', linkto='$linkto', publish='$publish', lastupdated_date=now() WHERE id='$id'"; mysql_query($sql); header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/ads_slider.php"); } } else { header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/400.php"); } } ?>