<?php
session_start();
$user_ID=$_SESSION[user_ID];
if (!$user_ID || $user_ID=='0')
{
header('location: index.php');
die('Login failed');
}
require("util.php");
$sql = new MySQL_class;
$sql->Create("generator");
$esql = new MySQL_class;
$esql->Create("generator");
if ($_GET[part]) { $_SESSION[var_part] = $_GET[part]; }
if ($_GET[right]) { $_SESSION[var_right] = $_GET[right]; }
$part=$_SESSION[var_part];
$right=$_SESSION[var_right];
?>
<html>
<head>
<link href="list.css" type="text/css" rel=stylesheet>
<meta content="text/css" http-equiv="Content-Style-Type">
<title>Screen generator Scherm: Part rights</title>
</head>
<script type="text/javascript" src="handlers.js" language="JavaScript">
alert ("no code");
</script>
<body>
<?php
include 'menu.php';
include 'makemenu.php';
makeMenu(1, 0, '');
?>
<div id="content">
<table class=ruler><tr><td>Part rights</td></tr></table>
<?php
if ($_GET[order71]<>'') {
$sql->QueryItem("DELETE FROM user_selection WHERE user=$user_ID and field='sort_71'");
$sql->QueryItem("INSERT INTO user_selection VALUES ('$user_ID', 'sort_71','$_GET[order71]'");
}
$lastid=$_SESSION[last_71];
$lastfilter71=$_SESSION[filter71];
$_SESSION[last_71]='';
if ($_GET[filter71]) { $filter71 =$_GET[filter71]; } else { $filter71=$_POST[filter71];}
if ($_GET[page71]) { $page=$_GET[page71]; } else { $page=$_POST[page71]; }
if ($filter71!=$lastfilter71) {
$_SESSION[filter71]=$filter71;
$page=0;
}
if ($_GET[full_71]=='Fullpage') {
$_SESSION[fullpage_71]='f';
}
if ($_GET[full_71]=='Pages') {
$_SESSION[fullpage_71]='';
}
if ($filter71!='')
{
$qfilter71 = quote('%'.$filter71.'%');
$query = ("
FROM `user_part`
WHERE (user_part.`part` LIKE $qfilter71
OR user_part.`right` LIKE $qfilter71
OR T508.`user` LIKE $qfilter71
) AND `user_part`.`part`='$part' AND `user_part`.`right`='$right'
");
}
else
{
$query = ("
FROM `user_part`
WHERE 1 AND `user_part`.`part`='$part' AND `user_part`.`right`='$right'
");
}
$lastrec=-1;
$sql->QueryItem("SELECT COUNT(*) AS records$query");
$records=$sql->data[records];
$sortorder=$sql->QueryItem("SELECT value FROM user_selection WHERE user=$user_ID and field='sort_71'");
if ($lastid=='') {$fromrec=20*$page;} else {
$fromrec=0;
$sql->Query("SELECT `user_part`.`user_part` AS id $query$querysort");
for ($r=0; $r<$sql->rows; $r++) {
$sql->Fetch($r);
if ($sql->data[id]==$lastid) {
$fromrec=$r-10;
if($fromrec<0) $fromrec=0;
$lastrec=$r-$fromrec;
break;
}
}
}
$sql->Query("SELECT user_part.part as F506, user_part.right as F507, user_part.user as F508$query".
($_SESSION[fullpage_71]==''?"LIMIT $fromrec, 20":''));
if (($part_rights['32/nofilter']==0)) {
echo "<form action=\"\" method=get name=Filter71>";
echo "<p class=filter>";
echo "Records: $records ";
$maxpage=(int) (($records+19)/20);
if ($maxpage>1) {
if ($_SESSION[fullpage_71]=='') {
echo "Page: ";
echo "<select name=\"page71\" OnChange=\"Filter71.submit();\">\n";
for ($i = 0; $i < $maxpage; $i++)
{
$nr=$i+1;
if ($i==$page) {$sel=" selected";} else {$sel="";}
echo "<option value=$i$sel>$nr van $maxpage</option>\n";
}
echo "</select>\n";
echo "<input type=submit name=full_71 value=\"Fullpage\">";
} else {
echo "<input type=submit name=full_71 value=\"Pages\">";
}
}
echo "<input type=text name=\"filter71\" size=25 value=\"$filter71\">";
echo "<input type=submit value=\"Search\">";
echo "<input type=button value=\"Add User part\" onClick=\"javascript: window.open('adduser_part.php?part=$part&right=$right','','width=300,height=300,location=no,menubar=no,scrollbars=yes,status=no,resizable=yes'); return false;\">";
echo "</p>";
echo "</form>";
}
?>
<table class=list>
<tr>
<th width=35px></th>
<th width=35px></th>
<th width=175px>User</th>
</tr>
<?php
for ($i = 0; $i < $sql->rows; $i++)
{
$sql->Fetch($i);
$part = htmlspecialchars($sql->data['F506']);
$right = htmlspecialchars($sql->data['F507']);
$user = htmlspecialchars($sql->data['F508']);
if ($lastrec==$i) {$color="style=\"background-color: #aaaaff;\"";} else {$color="";}
echo ("
<tr $color onMouseOver=\"ChangeColor(this)\" onMouseOut=\"ChangeColorBack(this)\" onClick=\"window.open('edituser_part.php?part=$part&right=$right','wijzigen','width=300,height=300,location=no,menubar=no,scrollbars=yes,status=no,resizable=yes')\">
<td>$part</td>
<td>$right</td>
<td>$user</td>
</tr>");
}
?>
</table>
</div></body>
</html>