%PDF- %PDF-
Direktori : /home/riacommer/domains/gasworld.com.my/private_html/admin/api/ |
Current File : /home/riacommer/domains/gasworld.com.my/private_html/admin/api/bank.php |
<?php //error_reporting(-1); //report all error! include_once("security.php"); include_once("db.php"); //[member] //for delete only if(isset($_GET["id"])){ if($_GET["id"]!=""){ $id = $_GET["id"]; $sql = "DELETE FROM sa_bank WHERE id='$id'"; mysql_query($sql); header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/bank.php"); } else { header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/400.php"); } } else { //for create, update if(isset($_POST["act"])){ $act = trim($_POST["act"]); $bank_name = trim($_POST["bank_name"]); $site_address = trim($_POST["site_address"]); $desp = trim($_POST["desp"]); $status = trim($_POST["status"]); if($act=="create"){ $sql = "INSERT INTO sa_bank (bank_name, site_address, desp, status, created_date) VALUES ('$bank_name', '$site_address', '$desp', '$status', now())"; mysql_query($sql); header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/bank.php"); } else if($act=="update"){ $id = trim($_POST["id"]); $sql = "UPDATE sa_bank SET bank_name='$bank_name', site_address='$site_address', desp='$desp', status='$status', last_updated=now() WHERE id='$id'"; mysql_query($sql); header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/bank.php"); } } else { header("Location: http://" .$_SERVER['HTTP_HOST'] . str_replace("/api", "", dirname($_SERVER['PHP_SELF'])) ."/400.php"); } } ?>