dealer_proc.php 36 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052
  1. <?php
  2. include $_SERVER["DOCUMENT_ROOT"].'/common/lib/comm.php';
  3. $table_name = "dealer_master";
  4. $PageNo = trim(avoid_crack($_REQUEST["PageNo"]));
  5. $mode = trim(avoid_crack($_POST["mode"]));
  6. $cd_dealer = trim(avoid_crack($_POST["cd_dealer"]));
  7. $cd_dealerid = trim(avoid_crack($_POST["cd_dealerid"]));
  8. $cd_dealer_p = trim(avoid_crack($_POST["cd_dealer_p"]));
  9. $nm_pass = trim(avoid_crack($_POST["nm_pass"]));
  10. $ds_type = trim(avoid_crack($_POST["ds_type"]));
  11. $ds_usertype = trim(avoid_crack($_POST["ds_usertype"]));
  12. $ds_level = trim(avoid_crack($_POST["ds_level"]));
  13. $nm_company = trim(avoid_crack($_POST["nm_company"]));
  14. $nm_name = trim(avoid_crack($_POST["nm_name"]));
  15. $nm_birth = trim(avoid_crack($_POST["nm_birth"]));
  16. $nm_tel_01 = trim(avoid_crack($_POST["nm_tel_01"]));
  17. $nm_tel_02 = trim(avoid_crack($_POST["nm_tel_02"]));
  18. $nm_tel_03 = trim(avoid_crack($_POST["nm_tel_03"]));
  19. $nm_hp_01 = trim(avoid_crack($_POST["nm_hp_01"]));
  20. $nm_hp_02 = trim(avoid_crack($_POST["nm_hp_02"]));
  21. $nm_hp_03 = trim(avoid_crack($_POST["nm_hp_03"]));
  22. $nm_fax_01 = trim(avoid_crack($_POST["nm_fax_01"]));
  23. $nm_fax_02 = trim(avoid_crack($_POST["nm_fax_02"]));
  24. $nm_fax_03 = trim(avoid_crack($_POST["nm_fax_03"]));
  25. $nm_email = trim(avoid_crack($_POST["nm_email"]));
  26. $nm_zip = trim(avoid_crack($_POST["nm_zip"]));
  27. $nm_addr = trim(avoid_crack($_POST["nm_addr"]));
  28. $nm_addr_sub = trim(avoid_crack($_POST["nm_addr_sub"]));
  29. $nm_etc_01 = trim(avoid_crack($_POST["nm_etc_01"]));
  30. $nm_etc_02 = trim(avoid_crack($_POST["nm_etc_02"]));
  31. $nm_etc_03 = trim(avoid_crack($_POST["nm_etc_03"]));
  32. $ds_status = trim(avoid_crack($_POST["ds_status"]));
  33. $nm_company_biz = trim(avoid_crack($_POST["nm_company_biz"]));
  34. $nm_name_biz = trim(avoid_crack($_POST["nm_name_biz"]));
  35. $nm_no_biz = trim(avoid_crack($_POST["nm_no_biz"]));
  36. $nm_date_biz = trim(avoid_crack($_POST["nm_date_biz"]));
  37. $nm_type_biz = trim(avoid_crack($_POST["nm_type_biz"]));
  38. $nm_condition_biz = trim(avoid_crack($_POST["nm_condition_biz"]));
  39. $nm_tel_biz_01 = trim(avoid_crack($_POST["nm_tel_biz_01"]));
  40. $nm_tel_biz_02 = trim(avoid_crack($_POST["nm_tel_biz_02"]));
  41. $nm_tel_biz_03 = trim(avoid_crack($_POST["nm_tel_biz_03"]));
  42. $nm_hp_biz_01 = trim(avoid_crack($_POST["nm_hp_biz_01"]));
  43. $nm_hp_biz_02 = trim(avoid_crack($_POST["nm_hp_biz_02"]));
  44. $nm_hp_biz_03 = trim(avoid_crack($_POST["nm_hp_biz_03"]));
  45. $nm_fax_biz_01 = trim(avoid_crack($_POST["nm_fax_biz_01"]));
  46. $nm_fax_biz_02 = trim(avoid_crack($_POST["nm_fax_biz_02"]));
  47. $nm_fax_biz_03 = trim(avoid_crack($_POST["nm_fax_biz_03"]));
  48. $nm_email_biz = trim(avoid_crack($_POST["nm_email_biz"]));
  49. $nm_zip_biz = trim(avoid_crack($_POST["nm_zip_biz"]));
  50. $nm_addr_biz = trim(avoid_crack($_POST["nm_addr_biz"]));
  51. $nm_addr_sub_biz = trim(avoid_crack($_POST["nm_addr_sub_biz"]));
  52. $ds_company_bp1 = trim(avoid_crack($_POST["ds_company_bp1"]));
  53. $ds_branch1 = trim(avoid_crack($_POST["ds_branch1"]));
  54. $ds_company_bp2 = trim(avoid_crack($_POST["ds_company_bp2"]));
  55. $ds_branch2 = trim(avoid_crack($_POST["ds_branch2"]));
  56. $ds_company_bp3 = trim(avoid_crack($_POST["ds_company_bp3"]));
  57. $ds_branch3 = trim(avoid_crack($_POST["ds_branch3"]));
  58. // $nm_area = trim(avoid_crack($_POST["nm_area"]));
  59. if ($mode == "UpdateDealer"){
  60. $nm_area = trim(avoid_crack(implode(",",$_POST["nm_area"])));
  61. }else{
  62. $nm_area = trim(avoid_crack($_POST["nm_area"]));
  63. }
  64. $nm_title = trim(avoid_crack($_POST["nm_title"]));
  65. $nm_file = trim(avoid_crack($_POST["nm_file"]));
  66. $nm_etc = trim(avoid_crack($_POST["nm_etc"]));
  67. $dt_insert = trim(avoid_crack($_POST["dt_insert"]));
  68. $nm_insert = trim(avoid_crack($_POST["nm_insert"]));
  69. $dt_update = trim(avoid_crack($_POST["dt_update"]));
  70. $nm_update = trim(avoid_crack($_POST["nm_update"]));
  71. $ds_delind = trim(avoid_crack($_POST["ds_delind"]));
  72. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  73. $nm_price = trim(avoid_crack($_POST["nm_price"]));
  74. $nm_score_postscript = trim(avoid_crack($_POST["nm_score_postscript"]));
  75. $nm_cont_postscript = trim(avoid_crack($_POST["nm_cont_postscript"]));
  76. // $cd_procid = $_SESSION[admin_cd_dealerid];
  77. // $PageNo = trim(avoid_crack($_POST["PageNo"]));
  78. $upload_path = $_SERVER['DOCUMENT_ROOT'].UPLOAD_PATH."dealer/";
  79. switch($mode) {
  80. //저장하기
  81. case "Add" :
  82. $s_cd_dealer = $_SESSION[s_cd_dealer];
  83. $_whereis = " ds_delind='N' And ds_type='D1' And cd_dealer_p = '". $s_cd_dealer . "'";
  84. $table_name = " dealer_master ";
  85. $cnt = $dbCon->getOneDAO("count(*)",$table_name, $_whereis, 1);
  86. if($cnt>=5) {
  87. AlertBack("부 관리자는 5명 까지 등록 가능합니다.");
  88. die();
  89. }
  90. if (is_uploaded_file($_FILES['nm_file']['tmp_name'])) {
  91. if($_FILES['nm_file']['size'] > 0 ){
  92. $upload_file_name = upload($_FILES['nm_file'],$upload_path."nm_file/", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  93. if($upload_file_name==false){
  94. AlertBack("첨부파일 업로드 실패 하였습니다.");
  95. die();
  96. }
  97. }
  98. }
  99. $_fields = Array(
  100. "cd_dealerid" => $cd_dealerid
  101. , "cd_dealer_p" => $s_cd_dealer
  102. , "nm_pass" => $nm_pass
  103. , "ds_type" => $ds_type
  104. , "ds_usertype" => $ds_usertype
  105. , "ds_level" => $ds_level
  106. , "nm_company" => $nm_company
  107. , "nm_name" => $nm_name
  108. , "nm_birth" => $nm_birth
  109. , "nm_tel_01" => $nm_tel_01
  110. , "nm_tel_02" => $nm_tel_02
  111. , "nm_tel_03" => $nm_tel_03
  112. , "nm_hp_01" => $nm_hp_01
  113. , "nm_hp_02" => $nm_hp_02
  114. , "nm_hp_03" => $nm_hp_03
  115. , "nm_fax_01" => $nm_fax_01
  116. , "nm_fax_02" => $nm_fax_02
  117. , "nm_fax_03" => $nm_fax_03
  118. , "nm_email" => $nm_email
  119. , "nm_zip" => $nm_zip
  120. , "nm_addr" => $nm_addr
  121. , "nm_addr_sub" => $nm_addr_sub
  122. , "nm_etc_01" => $nm_etc_01
  123. , "nm_etc_02" => $nm_etc_02
  124. , "nm_etc_03" => $nm_etc_03
  125. , "ds_status" => $ds_status
  126. , "nm_company_biz" => $nm_company_biz
  127. , "nm_name_biz" => $nm_name_biz
  128. , "nm_no_biz" => $nm_no_biz
  129. , "nm_date_biz" => $nm_date_biz
  130. , "nm_type_biz" => $nm_type_biz
  131. , "nm_condition_biz" => $nm_condition_biz
  132. , "nm_tel_biz_01" => $nm_tel_biz_01
  133. , "nm_tel_biz_02" => $nm_tel_biz_02
  134. , "nm_tel_biz_03" => $nm_tel_biz_03
  135. , "nm_hp_biz_01" => $nm_hp_biz_01
  136. , "nm_hp_biz_02" => $nm_hp_biz_02
  137. , "nm_hp_biz_03" => $nm_hp_biz_03
  138. , "nm_fax_biz_01" => $nm_fax_biz_01
  139. , "nm_fax_biz_02" => $nm_fax_biz_02
  140. , "nm_fax_biz_03" => $nm_fax_biz_03
  141. , "nm_email_biz" => $nm_email_biz
  142. , "nm_zip_biz" => $nm_zip_biz
  143. , "nm_addr_biz" => $nm_addr_biz
  144. , "nm_addr_sub_biz" => $nm_addr_sub_biz
  145. , "ds_company_bp1" => $ds_company_bp1
  146. , "ds_branch1" => $ds_branch1
  147. , "ds_company_bp2" => $ds_company_bp2
  148. , "ds_branch2" => $ds_branch2
  149. , "ds_company_bp3" => $ds_company_bp3
  150. , "ds_branch3" => $ds_branch3
  151. , "nm_area" => $nm_area
  152. , "nm_title" => $nm_title
  153. , "nm_file" => $upload_file_name
  154. , "nm_etc" => $nm_etc
  155. , "dt_insert" => now()
  156. , "nm_insert" => $nm_insert
  157. , "dt_update" => now()
  158. , "nm_update" => $nm_update
  159. , "ds_delind" => "N"
  160. );
  161. $result = $dbCon->insertDAO($_fields,$table_name);
  162. //echo $result;
  163. //echo "<BR>";
  164. $cd_dealer = mysql_insert_id();
  165. $sqlPwd="UPDATE dealer_master set nm_pass = password('".$nm_pass."'), cd_dealer_p = '".$s_cd_dealer."' where cd_dealer = '".$cd_dealer."'";
  166. $result = $dbCon->query($sqlPwd);
  167. //echo $result;
  168. //echo "<BR>";
  169. //exit;
  170. if ($result) {
  171. AlertRedirect("등록에 성공 하였습니다.","dealer_manager.php");
  172. }else{
  173. AlertBack("등록 실패 하였습니다.");
  174. }
  175. break;
  176. //수정하기
  177. case "Update":
  178. if (is_uploaded_file($_FILES['nm_file']['tmp_name'])) {
  179. if($_FILES['nm_file']['size'] > 0 ){
  180. $upload_file_name = upload($_FILES['nm_file'],$upload_path."nm_file/", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  181. if($upload_file_name==false){
  182. AlertBack("첨부파일 업로드 실패 하였습니다.");
  183. die();
  184. }
  185. }
  186. }
  187. if ($upload_file_name == ""){
  188. $_fields = Array(
  189. "nm_company" => $nm_company
  190. , "nm_name" => $nm_name
  191. , "nm_birth" => $nm_birth
  192. , "nm_tel_01" => $nm_tel_01
  193. , "nm_tel_02" => $nm_tel_02
  194. , "nm_tel_03" => $nm_tel_03
  195. , "nm_hp_01" => $nm_hp_01
  196. , "nm_hp_02" => $nm_hp_02
  197. , "nm_hp_03" => $nm_hp_03
  198. , "nm_fax_01" => $nm_fax_01
  199. , "nm_fax_02" => $nm_fax_02
  200. , "nm_fax_03" => $nm_fax_03
  201. , "nm_email" => $nm_email
  202. , "nm_zip" => $nm_zip
  203. , "nm_addr" => $nm_addr
  204. , "nm_addr_sub" => $nm_addr_sub
  205. , "nm_etc_01" => $nm_etc_01
  206. , "nm_etc_02" => $nm_etc_02
  207. , "nm_etc_03" => $nm_etc_03
  208. , "ds_status" => $ds_status
  209. , "nm_company_biz" => $nm_company_biz
  210. , "nm_name_biz" => $nm_name_biz
  211. , "nm_no_biz" => $nm_no_biz
  212. , "nm_date_biz" => $nm_date_biz
  213. , "nm_type_biz" => $nm_type_biz
  214. , "nm_condition_biz" => $nm_condition_biz
  215. , "nm_tel_biz_01" => $nm_tel_biz_01
  216. , "nm_tel_biz_02" => $nm_tel_biz_02
  217. , "nm_tel_biz_03" => $nm_tel_biz_03
  218. , "nm_hp_biz_01" => $nm_hp_biz_01
  219. , "nm_hp_biz_02" => $nm_hp_biz_02
  220. , "nm_hp_biz_03" => $nm_hp_biz_03
  221. , "nm_fax_biz_01" => $nm_fax_biz_01
  222. , "nm_fax_biz_02" => $nm_fax_biz_02
  223. , "nm_fax_biz_03" => $nm_fax_biz_03
  224. , "nm_email_biz" => $nm_email_biz
  225. , "nm_zip_biz" => $nm_zip_biz
  226. , "nm_addr_biz" => $nm_addr_biz
  227. , "nm_addr_sub_biz" => $nm_addr_sub_biz
  228. // , "ds_company_bp1" => $ds_company_bp1
  229. // , "ds_branch1" => $ds_branch1
  230. // , "ds_company_bp2" => $ds_company_bp2
  231. // , "ds_branch2" => $ds_branch2
  232. // , "ds_company_bp3" => $ds_company_bp3
  233. // , "ds_branch3" => $ds_branch3
  234. , "nm_area" => $nm_area
  235. , "nm_title" => $nm_title
  236. ,
  237. // "dt_insert" => now(),
  238. // "nm_insert" => $cd_procid,
  239. "dt_update" => now(),
  240. "nm_update" => $cd_procid,
  241. );
  242. }else{
  243. $_fields = Array(
  244. "nm_company" => $nm_company
  245. , "nm_name" => $nm_name
  246. , "nm_birth" => $nm_birth
  247. , "nm_tel_01" => $nm_tel_01
  248. , "nm_tel_02" => $nm_tel_02
  249. , "nm_tel_03" => $nm_tel_03
  250. , "nm_hp_01" => $nm_hp_01
  251. , "nm_hp_02" => $nm_hp_02
  252. , "nm_hp_03" => $nm_hp_03
  253. , "nm_fax_01" => $nm_fax_01
  254. , "nm_fax_02" => $nm_fax_02
  255. , "nm_fax_03" => $nm_fax_03
  256. , "nm_email" => $nm_email
  257. , "nm_zip" => $nm_zip
  258. , "nm_addr" => $nm_addr
  259. , "nm_addr_sub" => $nm_addr_sub
  260. , "nm_etc_01" => $nm_etc_01
  261. , "nm_etc_02" => $nm_etc_02
  262. , "nm_etc_03" => $nm_etc_03
  263. , "ds_status" => $ds_status
  264. , "nm_company_biz" => $nm_company_biz
  265. , "nm_name_biz" => $nm_name_biz
  266. , "nm_no_biz" => $nm_no_biz
  267. , "nm_date_biz" => $nm_date_biz
  268. , "nm_type_biz" => $nm_type_biz
  269. , "nm_condition_biz" => $nm_condition_biz
  270. , "nm_tel_biz_01" => $nm_tel_biz_01
  271. , "nm_tel_biz_02" => $nm_tel_biz_02
  272. , "nm_tel_biz_03" => $nm_tel_biz_03
  273. , "nm_hp_biz_01" => $nm_hp_biz_01
  274. , "nm_hp_biz_02" => $nm_hp_biz_02
  275. , "nm_hp_biz_03" => $nm_hp_biz_03
  276. , "nm_fax_biz_01" => $nm_fax_biz_01
  277. , "nm_fax_biz_02" => $nm_fax_biz_02
  278. , "nm_fax_biz_03" => $nm_fax_biz_03
  279. , "nm_email_biz" => $nm_email_biz
  280. , "nm_zip_biz" => $nm_zip_biz
  281. , "nm_addr_biz" => $nm_addr_biz
  282. , "nm_addr_sub_biz" => $nm_addr_sub_biz
  283. // , "ds_company_bp1" => $ds_company_bp1
  284. // , "ds_branch1" => $ds_branch1
  285. // , "ds_company_bp2" => $ds_company_bp2
  286. // , "ds_branch2" => $ds_branch2
  287. // , "ds_company_bp3" => $ds_company_bp3
  288. // , "ds_branch3" => $ds_branch3
  289. , "nm_area" => $nm_area
  290. , "nm_title" => $nm_title
  291. , "nm_file" => $upload_file_name
  292. ,
  293. // "dt_insert" => now(),
  294. // "nm_insert" => $cd_procid,
  295. "dt_update" => now(),
  296. "nm_update" => $cd_procid,
  297. );
  298. }
  299. $result = $dbCon->updateDAO($_fields,$table_name,"cd_dealer='".$cd_dealer."'");
  300. if($_POST["nm_pass"]){
  301. $sqlPwd="UPDATE dealer_master set nm_pass = password('".$nm_pass."') where cd_dealer = '".$cd_dealer."'";
  302. $result = $dbCon->query($sqlPwd);
  303. }
  304. if ($result) {
  305. AlertRedirect("수정 성공 하였습니다.","dealer_manager.php");
  306. }else{
  307. AlertBack("수정 실패 하였습니다.");
  308. }
  309. break;
  310. //수정하기
  311. case "UpdateDealer":
  312. if (is_uploaded_file($_FILES['nm_file']['tmp_name'])) {
  313. if($_FILES['nm_file']['size'] > 0 ){
  314. $upload_file_name = upload($_FILES['nm_file'],$upload_path."nm_file/", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  315. if($upload_file_name==false){
  316. AlertBack("첨부파일 업로드 실패 하였습니다.");
  317. die();
  318. }
  319. }
  320. }
  321. if ($upload_file_name == ""){
  322. $_fields = Array(
  323. "nm_company" => $nm_company
  324. , "nm_name" => $nm_name
  325. , "nm_birth" => $nm_birth
  326. , "nm_tel_01" => $nm_tel_01
  327. , "nm_tel_02" => $nm_tel_02
  328. , "nm_tel_03" => $nm_tel_03
  329. , "nm_hp_01" => $nm_hp_01
  330. , "nm_hp_02" => $nm_hp_02
  331. , "nm_hp_03" => $nm_hp_03
  332. , "nm_fax_01" => $nm_fax_01
  333. , "nm_fax_02" => $nm_fax_02
  334. , "nm_fax_03" => $nm_fax_03
  335. , "nm_email" => $nm_email
  336. , "nm_zip" => $nm_zip
  337. , "nm_addr" => $nm_addr
  338. , "nm_addr_sub" => $nm_addr_sub
  339. , "nm_etc_01" => $nm_etc_01
  340. , "nm_etc_02" => $nm_etc_02
  341. , "nm_etc_03" => $nm_etc_03
  342. // , "ds_status" => $ds_status
  343. , "nm_company_biz" => $nm_company_biz
  344. , "nm_name_biz" => $nm_name_biz
  345. , "nm_no_biz" => $nm_no_biz
  346. , "nm_date_biz" => $nm_date_biz
  347. , "nm_type_biz" => $nm_type_biz
  348. , "nm_condition_biz" => $nm_condition_biz
  349. , "nm_tel_biz_01" => $nm_tel_biz_01
  350. , "nm_tel_biz_02" => $nm_tel_biz_02
  351. , "nm_tel_biz_03" => $nm_tel_biz_03
  352. , "nm_hp_biz_01" => $nm_hp_biz_01
  353. , "nm_hp_biz_02" => $nm_hp_biz_02
  354. , "nm_hp_biz_03" => $nm_hp_biz_03
  355. , "nm_fax_biz_01" => $nm_fax_biz_01
  356. , "nm_fax_biz_02" => $nm_fax_biz_02
  357. , "nm_fax_biz_03" => $nm_fax_biz_03
  358. , "nm_email_biz" => $nm_email_biz
  359. , "nm_zip_biz" => $nm_zip_biz
  360. , "nm_addr_biz" => $nm_addr_biz
  361. , "nm_addr_sub_biz" => $nm_addr_sub_biz
  362. // , "ds_company_bp1" => $ds_company_bp1
  363. // , "ds_branch1" => $ds_branch1
  364. // , "ds_company_bp2" => $ds_company_bp2
  365. // , "ds_branch2" => $ds_branch2
  366. // , "ds_company_bp3" => $ds_company_bp3
  367. // , "ds_branch3" => $ds_branch3
  368. , "nm_area" => $nm_area
  369. , "nm_title" => $nm_title
  370. ,
  371. // "dt_insert" => now(),
  372. // "nm_insert" => $cd_procid,
  373. "dt_update" => now(),
  374. "nm_update" => $cd_procid,
  375. );
  376. }else{
  377. $_fields = Array(
  378. "nm_company" => $nm_company
  379. , "nm_name" => $nm_name
  380. , "nm_birth" => $nm_birth
  381. , "nm_tel_01" => $nm_tel_01
  382. , "nm_tel_02" => $nm_tel_02
  383. , "nm_tel_03" => $nm_tel_03
  384. , "nm_hp_01" => $nm_hp_01
  385. , "nm_hp_02" => $nm_hp_02
  386. , "nm_hp_03" => $nm_hp_03
  387. , "nm_fax_01" => $nm_fax_01
  388. , "nm_fax_02" => $nm_fax_02
  389. , "nm_fax_03" => $nm_fax_03
  390. , "nm_email" => $nm_email
  391. , "nm_zip" => $nm_zip
  392. , "nm_addr" => $nm_addr
  393. , "nm_addr_sub" => $nm_addr_sub
  394. , "nm_etc_01" => $nm_etc_01
  395. , "nm_etc_02" => $nm_etc_02
  396. , "nm_etc_03" => $nm_etc_03
  397. // , "ds_status" => $ds_status
  398. , "nm_company_biz" => $nm_company_biz
  399. , "nm_name_biz" => $nm_name_biz
  400. , "nm_no_biz" => $nm_no_biz
  401. , "nm_date_biz" => $nm_date_biz
  402. , "nm_type_biz" => $nm_type_biz
  403. , "nm_condition_biz" => $nm_condition_biz
  404. , "nm_tel_biz_01" => $nm_tel_biz_01
  405. , "nm_tel_biz_02" => $nm_tel_biz_02
  406. , "nm_tel_biz_03" => $nm_tel_biz_03
  407. , "nm_hp_biz_01" => $nm_hp_biz_01
  408. , "nm_hp_biz_02" => $nm_hp_biz_02
  409. , "nm_hp_biz_03" => $nm_hp_biz_03
  410. , "nm_fax_biz_01" => $nm_fax_biz_01
  411. , "nm_fax_biz_02" => $nm_fax_biz_02
  412. , "nm_fax_biz_03" => $nm_fax_biz_03
  413. , "nm_email_biz" => $nm_email_biz
  414. , "nm_zip_biz" => $nm_zip_biz
  415. , "nm_addr_biz" => $nm_addr_biz
  416. , "nm_addr_sub_biz" => $nm_addr_sub_biz
  417. // , "ds_company_bp1" => $ds_company_bp1
  418. // , "ds_branch1" => $ds_branch1
  419. // , "ds_company_bp2" => $ds_company_bp2
  420. // , "ds_branch2" => $ds_branch2
  421. // , "ds_company_bp3" => $ds_company_bp3
  422. // , "ds_branch3" => $ds_branch3
  423. , "nm_area" => $nm_area
  424. , "nm_title" => $nm_title
  425. , "nm_file" => $upload_file_name
  426. ,
  427. // "dt_insert" => now(),
  428. // "nm_insert" => $cd_procid,
  429. "dt_update" => now(),
  430. "nm_update" => $cd_procid,
  431. );
  432. }
  433. $result = $dbCon->updateDAO($_fields,$table_name,"cd_dealer='".$cd_dealer."'");
  434. if($_POST["nm_pass"]){
  435. $sqlPwd="UPDATE dealer_master set nm_pass = password('".$nm_pass."') where cd_dealer = '".$cd_dealer."'";
  436. $result = $dbCon->query($sqlPwd);
  437. }
  438. if ($result) {
  439. AlertRedirect("수정 성공 하였습니다.","dealer_modify.php");
  440. }else{
  441. AlertBack("수정 실패 하였습니다.");
  442. }
  443. break;
  444. //입찰하기
  445. case "Tender" :
  446. $s_cd_dealerid = $_SESSION['s_cd_dealerid'];
  447. $s_nm_email = $_SESSION['s_nm_email'];
  448. $s_nm_name = $_SESSION['s_nm_name'];
  449. $s_nm_hp = $_SESSION['s_nm_hp'];
  450. $s_ds_type = $_SESSION['s_ds_type'];
  451. $s_cd_dealer = $_SESSION['s_cd_dealer'];
  452. $s_cd_dealer_p = $_SESSION['s_cd_dealer_p'];
  453. $s_nm_area = $_SESSION['s_nm_area'];
  454. $sql = "insert into tender_master(cd_sale, cd_user, cd_dealer, cd_dealer_p, ds_type, ds_usertype, nm_name, nm_tel, nm_hp, nm_email, nm_price, nm_cont, ds_status, dt_insert, nm_insert, dt_update, nm_update, ds_delind) SELECT cd_sale, cd_user, $s_cd_dealer cd_dealer, $s_cd_dealer_p cd_dealer_p, ds_type, '$s_ds_type' ds_usertype, '$s_nm_name' nm_name, '' nm_tel, '$s_nm_hp' nm_hp, '$s_nm_email' nm_email, $nm_price nm_price, '' nm_cont, 'A0' ds_status, now() dt_insert, $s_cd_dealer nm_insert, now() dt_update, $s_cd_dealer nm_update, 'N' ds_delind FROM sale_master where cd_sale = '".$cd_sale."'";
  455. $result = $dbCon->query($sql);
  456. if ($result) {
  457. AlertRedirect("입찰 되었습니다.","dealer_tender_view.php?cd_sale=$cd_sale&ds_status_sale=E0&ds_status=E0");
  458. }else{
  459. AlertRedirect("입찰 실패하였습니다.","dealer_tender_view.php?cd_sale=$cd_sale&ds_status_sale=E0&ds_status=E0");
  460. }
  461. break;
  462. //입찰수정하기
  463. case "TenderModify" :
  464. $s_cd_dealer_p = $_SESSION['s_cd_dealer_p'];
  465. $s_ds_type = $_SESSION['s_ds_type'];
  466. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  467. $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  468. $nm_price = trim(avoid_crack($_POST["nm_price"]));
  469. $ListPageNo = trim(avoid_crack($_REQUEST["ListPageNo"]));
  470. $cd_tender_sql = "select cd_tender, nm_modify_cnt
  471. , (select ds_status from sale_master s where s.cd_sale = t.cd_sale) as sale_ds_status
  472. , (select getRemainTime(".LIMIT_TIME_TENDER.", s.dt_approve, now()) from sale_master s where s.cd_sale = t.cd_sale) as time_limit_tender
  473. from tender_master t
  474. where t.ds_delind ='N'
  475. and t.cd_sale = '$cd_sale'
  476. and t.cd_dealer_p = '$s_cd_dealer_p'
  477. limit 1";
  478. // echo $cd_tender_sql;
  479. // exit;
  480. $cd_tender_row = mysql_fetch_array(mysql_query($cd_tender_sql));
  481. if($s_ds_type != "D1") {
  482. AlertBack("부관리자만 입찰 수정 할 수 있습니다.");
  483. }
  484. if($cd_tender_row[sale_ds_status] != "E0") {
  485. AlertBack("입찰중인건만 입찰 수정 할 수 있습니다.");
  486. }
  487. if(empty($cd_tender_row[cd_tender])) {
  488. AlertBack("입찰참여내역이 있는건만 입찰 수정 할 수 있습니다.");
  489. }
  490. if($cd_tender_row[nm_modify_cnt] > 2) {
  491. AlertBack("입찰수정은 최대 3번까지만 가능합니다.");
  492. }
  493. if($cd_tender_row[time_limit_tender] == "0분") {
  494. AlertBack("입찰가능시간에만 수정할 수 있습니다.");
  495. }
  496. if($_SESSION[s_ds_status_p] != "Z0") {
  497. AlertBack("승인되지 않은 사용자는 입찰 수정 할 수 없습니다");
  498. }
  499. $sql = "update tender_master set
  500. nm_price = '$nm_price'
  501. , nm_modify_cnt = nm_modify_cnt + 1
  502. where cd_sale = '".$cd_sale."'
  503. and cd_tender = '".$cd_tender_row['cd_tender']."'
  504. and cd_dealer_p = '$s_cd_dealer_p' ";
  505. $result = $dbCon->query($sql);
  506. if ($result) {
  507. AlertRedirect("입찰 수정 되었습니다.","dealer_tender_view.php?cd_sale=$cd_sale&ds_status_sale=E0&ds_status=F0&ListPageNo=$ListPageNo");
  508. }else{
  509. AlertBack("입찰 수정 실패하였습니다.");
  510. }
  511. break;
  512. //낙찰하기
  513. case "TenderSuccess" :
  514. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  515. $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  516. $nm_price = trim(avoid_crack($_POST["nm_price"]));
  517. $sql="update tender_master
  518. set
  519. ds_status = 'Z0'
  520. , dt_update = now()
  521. , nm_update = '$cd_userid'
  522. WHERE cd_tender = $cd_tender";
  523. $result = mysql_query($sql,$connect);
  524. $sql="update sale_master
  525. set
  526. ds_status = 'Z0'
  527. , nm_price = '$nm_price'
  528. , dt_update = now()
  529. , dt_success = now()
  530. , nm_update = '$cd_userid'
  531. WHERE cd_sale = $cd_sale";
  532. $result = mysql_query($sql,$connect);
  533. $table_name = " car_master a
  534. inner join sale_master f on (a.cd_car = f.cd_car)
  535. left outer join car_model b on (a.cd_model = b.cd_model)
  536. left outer join car_grade c on (a.cd_grade = c.cd_grade)
  537. left outer join car_brand d on (a.cd_brand = d.cd_brand)
  538. left outer join car_model_sub e on (a.cd_model_sub = e.cd_model_sub)";
  539. $_whereis = " f.cd_sale = '".$cd_sale."' ";
  540. $col = $dbCon->selectDAO(" a.cd_brand, a.cd_model, a.cd_grade, b.nm_model, c.nm_grade, d.nm_brand, e.nm_model_sub, f.nm_hp, f.nm_name, a.nm_mileage, f.ds_area, a.nm_regdate_yyyy, a.nm_regdate_mm", $table_name, $_whereis);
  541. $senderKey = "4856a5e128f9289082c884d066f1df198cbb1165";
  542. $tmpltCode = "complete";
  543. $resMethod = "PUSH";
  544. $cur_date = date('Y-m-d H:i:s');
  545. $master_sql = "insert into kakao_biztalk set
  546. status = 0
  547. , senderKey = '".$senderKey."'
  548. , tmpltCode = '".$tmpltCode."'
  549. , resMethod = '".$resMethod."'
  550. , send_date = '".$cur_date."'
  551. ";
  552. $master_res = mysql_query($master_sql);
  553. $cd_talk = mysql_insert_id();
  554. //최고 입찰 금액을 가져옴
  555. $r = mysql_query("SELECT t.*, d.nm_company nm_company_dealer, d.nm_name nm_name_dealer, s.ds_status ds_status_sale
  556. , d1.nm_name nm_name_dealer1
  557. FROM dealer_master d
  558. inner join tender_master t on (d.cd_dealer = t.cd_dealer_p and t.cd_sale = $cd_sale and t.ds_delind='N' and t.cd_tender = '$cd_tender')
  559. inner join dealer_master d1 on (t.cd_dealer = d1.cd_dealer)
  560. inner join sale_master s on (t.cd_sale = s.cd_sale)
  561. ORDER BY cast(t.nm_price as unsigned) desc, t.cd_tender desc
  562. LIMIT 1");
  563. $dealer = mysql_fetch_array($r);
  564. $contents = $dealer[nm_company_dealer]."님
  565. $col[nm_brand] $col[nm_model] $col[nm_grade] $col[nm_mileage]km
  566. $col[nm_regdate_yyyy]년 $col[nm_regdate_mm]월
  567. 매물이 낙찰 되었습니다.
  568. 유프로 관리페이지에 접속하셔서 차량정보를
  569. 확인하세요!";
  570. // $contents = $col['nm_brand'].' '.$col['nm_model'].' '.$col['nm_grade'].' '.$col['nm_mileage'].'km';
  571. //발송 대기 상태로 변경
  572. $recipient_sql = "INSERT INTO kakao_biztalk_recipient set
  573. cd_talk = '".$cd_talk."'
  574. , phone = '".$dealer[nm_hp]."'
  575. , status = '0'
  576. , contents = '".$contents."'
  577. ";
  578. // echo $recipient_sql;
  579. mysql_query($recipient_sql);
  580. //발송대기 상태로 변경
  581. mysql_query("update kakao_biztalk set status = '1' where cd_talk = '".$cd_talk."' ");
  582. if ($result) {
  583. AlertRedirect("낙찰하기 성공하였습니다.","sell_view.php?cd_sale=$cd_sale&ds_status_sale=Z0&ds_status=Z0");
  584. }else{
  585. AlertRedirect("낙찰하기 실패하였습니다.","sell_view.php?cd_sale=$cd_sale&ds_status_sale=Z0&ds_status=Z0");
  586. }
  587. break;
  588. //낙찰하기 Nomember
  589. case "TenderSuccessNomember" :
  590. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  591. $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  592. $nm_price = trim(avoid_crack($_POST["nm_price"]));
  593. $nm_name = trim(avoid_crack($_POST["nm_name"]));
  594. $nm_hp = trim(avoid_crack($_POST["nm_hp"]));
  595. $nm_number = trim(avoid_crack($_POST["nm_number"]));
  596. $sql="update tender_master
  597. set
  598. ds_status = 'Z0'
  599. , dt_update = now()
  600. , nm_update = '$cd_userid'
  601. WHERE cd_tender = $cd_tender";
  602. $result = mysql_query($sql,$connect);
  603. $sql="update sale_master
  604. set
  605. ds_status = 'Z0'
  606. , nm_price = '$nm_price'
  607. , dt_update = now()
  608. , nm_update = '$cd_userid'
  609. WHERE cd_sale = $cd_sale";
  610. $result = mysql_query($sql,$connect);
  611. if ($result) {
  612. AlertRedirect("낙찰하기 성공하였습니다.","/sell/sell_view_nomember.php?nm_name=$nm_name&nm_hp=$nm_hp&nm_number=$nm_number&ds_status_sale=Z0&ds_status=Z0");
  613. }else{
  614. AlertRedirect("낙찰하기 실패하였습니다.","/sell/sell_view_nomember.php?nm_name=$nm_name&nm_hp=$nm_hp&nm_number=$nm_number&ds_status_sale=Z0&ds_status=Z0");
  615. }
  616. break;
  617. //Contract Step 1
  618. case "ContractStep1" :
  619. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  620. // $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  621. $ds_status_contract_step1 = trim(avoid_crack($_POST["ds_status_contract_step1"]));
  622. $sql="update sale_master
  623. set
  624. ds_status_contract_step1 = '$ds_status_contract_step1'
  625. , dt_update = now()
  626. , nm_update = '$cd_userid'
  627. WHERE cd_sale = $cd_sale";
  628. $result = $dbCon->query($sql);
  629. if ($result) {
  630. AlertRedirect("등록 되었습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  631. }else{
  632. AlertRedirect("등록 실패하였습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  633. }
  634. break;
  635. //Contract Step 2
  636. case "ContractStep2" :
  637. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  638. // $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  639. $nm_contract_date = trim(avoid_crack($_POST["nm_contract_date"]));
  640. $ds_status_contract_step2 = "Y";
  641. $sql="update sale_master
  642. set
  643. ds_status_contract_step2 = '$ds_status_contract_step2'
  644. , nm_contract_date = '$nm_contract_date'
  645. , dt_update = now()
  646. , nm_update = '$cd_userid'
  647. WHERE cd_sale = $cd_sale";
  648. $result = $dbCon->query($sql);
  649. if ($result) {
  650. AlertRedirect("등록 되었습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  651. }else{
  652. AlertRedirect("등록 실패하였습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  653. }
  654. break;
  655. //Contract Step 3
  656. case "ContractStep3" :
  657. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  658. // $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  659. $ds_status_contract = trim(avoid_crack($_POST["ds_status_contract"]));
  660. $nm_price_final = trim(avoid_crack($_POST["nm_price_final"]));
  661. $nm_contract_cont_final = trim(avoid_crack($_POST["nm_contract_cont_final"]));
  662. $nm_contract_fail_reason = trim(avoid_crack($_POST["nm_contract_fail_reason"]));
  663. $ds_status_contract_step3 = "Y";
  664. if (is_uploaded_file($_FILES['nm_file_chk1']['tmp_name'])) {
  665. if($_FILES['nm_file_chk1']['size'] > 0 ){
  666. $upload_file_name_chk1 = upload($_FILES['nm_file_chk1'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  667. if($upload_file_name_chk1==false){
  668. AlertBack("첨부파일 업로드 실패 하였습니다.");
  669. die();
  670. }
  671. }
  672. }
  673. if (is_uploaded_file($_FILES['nm_file_chk2']['tmp_name'])) {
  674. if($_FILES['nm_file_chk2']['size'] > 0 ){
  675. $upload_file_name_chk2 = upload($_FILES['nm_file_chk2'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  676. if($upload_file_name_chk2==false){
  677. AlertBack("첨부파일 업로드 실패 하였습니다.");
  678. die();
  679. }
  680. }
  681. }
  682. if (is_uploaded_file($_FILES['nm_file_chk3']['tmp_name'])) {
  683. if($_FILES['nm_file_chk3']['size'] > 0 ){
  684. $upload_file_name_chk3 = upload($_FILES['nm_file_chk3'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  685. if($upload_file_name_chk3==false){
  686. AlertBack("첨부파일 업로드 실패 하였습니다.");
  687. die();
  688. }
  689. }
  690. }
  691. if (is_uploaded_file($_FILES['nm_file_chk4']['tmp_name'])) {
  692. if($_FILES['nm_file_chk4']['size'] > 0 ){
  693. $upload_file_name_chk4 = upload($_FILES['nm_file_chk4'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  694. if($upload_file_name_chk4==false){
  695. AlertBack("첨부파일 업로드 실패 하였습니다.");
  696. die();
  697. }
  698. }
  699. }
  700. if (is_uploaded_file($_FILES['nm_file_chk5']['tmp_name'])) {
  701. if($_FILES['nm_file_chk5']['size'] > 0 ){
  702. $upload_file_name_chk5 = upload($_FILES['nm_file_chk5'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  703. if($upload_file_name_chk5==false){
  704. AlertBack("첨부파일 업로드 실패 하였습니다.");
  705. die();
  706. }
  707. }
  708. }
  709. $sql="update sale_master
  710. set
  711. ds_status_contract_step3 = '$ds_status_contract_step3'
  712. , ds_status_contract = '$ds_status_contract'
  713. , nm_price_final = '$nm_price_final'
  714. , nm_contract_cont_final = '$nm_contract_cont_final'
  715. , nm_contract_fail_reason = '$nm_contract_fail_reason'
  716. , nm_file_chk1 = case when '$upload_file_name_chk1' = '' then nm_file_chk1 else '$upload_file_name_chk1' end
  717. , nm_file_chk2 = case when '$upload_file_name_chk2' = '' then nm_file_chk2 else '$upload_file_name_chk2' end
  718. , nm_file_chk3 = case when '$upload_file_name_chk3' = '' then nm_file_chk3 else '$upload_file_name_chk3' end
  719. , nm_file_chk4 = case when '$upload_file_name_chk4' = '' then nm_file_chk4 else '$upload_file_name_chk4' end
  720. , nm_file_chk5 = case when '$upload_file_name_chk5' = '' then nm_file_chk5 else '$upload_file_name_chk5' end
  721. , dt_update = now()
  722. , nm_update = '$cd_userid'
  723. WHERE cd_sale = $cd_sale";
  724. //echo $sql;
  725. //exit;
  726. $result = $dbCon->query($sql);
  727. if ($result) {
  728. AlertRedirect("등록 되었습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  729. }else{
  730. AlertRedirect("등록 실패하였습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  731. }
  732. break;
  733. //Contract Step 4
  734. case "ContractStep4" :
  735. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  736. // $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  737. $ds_status_contract_step4 = "Y";
  738. if (is_uploaded_file($_FILES['nm_file_trading']['tmp_name'])) {
  739. if($_FILES['nm_file_trading']['size'] > 0 ){
  740. $upload_file_name_trading = upload($_FILES['nm_file_trading'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  741. if($upload_file_name_trading==false){
  742. AlertBack("첨부파일 업로드 실패 하였습니다.");
  743. die();
  744. }
  745. }
  746. }
  747. if (is_uploaded_file($_FILES['nm_file_performance']['tmp_name'])) {
  748. if($_FILES['nm_file_performance']['size'] > 0 ){
  749. $upload_file_name_performance = upload($_FILES['nm_file_performance'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  750. if($upload_file_name_performance==false){
  751. AlertBack("첨부파일 업로드 실패 하였습니다.");
  752. die();
  753. }
  754. }
  755. }
  756. if (is_uploaded_file($_FILES['nm_file_postscript']['tmp_name'])) {
  757. if($_FILES['nm_file_postscript']['size'] > 0 ){
  758. $upload_file_name_postscript = upload($_FILES['nm_file_postscript'],$upload_path."contract_step/".$cd_sale."_detail", 800, array('gif', 'jpeg', 'jpg','png','bmp' ,'ttif'));
  759. if($upload_file_name_postscript==false){
  760. AlertBack("첨부파일 업로드 실패 하였습니다.");
  761. die();
  762. }
  763. }
  764. }
  765. $sql="update sale_master
  766. set
  767. ds_status_contract_step4 = '$ds_status_contract_step4'
  768. , nm_file_trading = case when '$upload_file_name_trading' = '' then nm_file_trading else '$upload_file_name_trading' end
  769. , nm_file_performance = case when '$upload_file_name_performance' = '' then nm_file_performance else '$upload_file_name_performance' end
  770. , nm_file_postscript = case when '$upload_file_name_postscript' = '' then nm_file_postscript else '$upload_file_name_postscript' end
  771. , ds_status = case when ds_status_contract = 'Z0' and ds_status_contract_step1 = 'Y' and ds_status_contract_step2 = 'Y' and ds_status_contract_step3 = 'Y' and ds_status_contract_step4 = 'Y' then 'ZS' else ds_status end
  772. , dt_update = now()
  773. , nm_update = '$cd_userid'
  774. WHERE cd_sale = $cd_sale";
  775. $result = $dbCon->query($sql);
  776. if ($result) {
  777. AlertRedirect("등록 되었습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  778. }else{
  779. AlertRedirect("등록 실패하였습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  780. }
  781. break;
  782. //후기쓰기
  783. case "WritePostscript" :
  784. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  785. $nm_score_postscript = trim(avoid_crack($_POST["nm_score_postscript"]));
  786. $nm_cont_postscript = trim(avoid_crack($_POST["nm_cont_postscript"]));
  787. $sql="update sale_master
  788. set
  789. nm_score_postscript = '$nm_score_postscript'
  790. , nm_cont_postscript = '$nm_cont_postscript'
  791. , dt_update = now()
  792. , nm_update = '$cd_userid'
  793. WHERE cd_sale = $cd_sale";
  794. $result = $dbCon->query($sql);
  795. if ($result) {
  796. AlertRedirect("등록 되었습니다.","sell_view2.php?cd_sale=$cd_sale");
  797. }else{
  798. AlertRedirect("등록 실패하였습니다.","sell_view2.php?cd_sale=$cd_sale");
  799. }
  800. break;
  801. //후기쓰기 Nomember
  802. case "WritePostscriptNomember" :
  803. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  804. $nm_score_postscript = trim(avoid_crack($_POST["nm_score_postscript"]));
  805. $nm_cont_postscript = trim(avoid_crack($_POST["nm_cont_postscript"]));
  806. $nm_name = trim(avoid_crack($_POST["nm_name"]));
  807. $nm_hp = trim(avoid_crack($_POST["nm_hp"]));
  808. $nm_number = trim(avoid_crack($_POST["nm_number"]));
  809. $sql="update sale_master
  810. set
  811. nm_score_postscript = '$nm_score_postscript'
  812. , nm_cont_postscript = '$nm_cont_postscript'
  813. , dt_update = now()
  814. , dt_success = now()
  815. , nm_update = '$cd_userid'
  816. WHERE cd_sale = $cd_sale";
  817. $result = $dbCon->query($sql);
  818. if ($result) {
  819. AlertRedirect("등록 성공하였습니다.","/sell/sell_view_nomember.php?nm_name=$nm_name&nm_hp=$nm_hp&nm_number=$nm_number&ds_status_sale=Z0&ds_status=Z0");
  820. }else{
  821. AlertRedirect("등록 실패하였습니다.","/sell/sell_view_nomember.php?nm_name=$nm_name&nm_hp=$nm_hp&nm_number=$nm_number&ds_status_sale=Z0&ds_status=Z0");
  822. }
  823. break;
  824. //Contract Step Error
  825. case "ContractStepError" :
  826. $cd_sale = trim(avoid_crack($_POST["cd_sale"]));
  827. // $cd_tender = trim(avoid_crack($_POST["cd_tender"]));
  828. $nm_cont_tender_error = trim(avoid_crack($_POST["nm_cont_tender_error"]));
  829. $ds_status_contract_step1 = "N";
  830. $sql="update sale_master
  831. set
  832. ds_status = 'ZE'
  833. , ds_status_contract_step1 = '$ds_status_contract_step1'
  834. , nm_cont_tender_error = '$nm_cont_tender_error'
  835. , dt_update = now()
  836. , nm_update = '$cd_userid'
  837. WHERE cd_sale = $cd_sale";
  838. $result = $dbCon->query($sql);
  839. if ($result) {
  840. AlertRedirect("등록 되었습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  841. }else{
  842. AlertRedirect("등록 실패하였습니다.","dealer_tender_view2.php?cd_sale=$cd_sale");
  843. }
  844. break;
  845. //삭제하기
  846. case "Delete" :
  847. $_fields = Array(
  848. "ds_delind"=>"Y",
  849. "dt_update" => now(),
  850. "nm_update" => $cd_procid
  851. );
  852. $result = $dbCon->updateDAO($_fields,$table_name,"cd_dealer='".$cd_dealer."'");
  853. if ($result) {
  854. AlertRedirect("삭제 되었습니다.","list.php?PageNo=$PageNo");
  855. }else{
  856. AlertRedirect("삭제 실패하였습니다.","list.php?PageNo=$PageNo");
  857. }
  858. break;
  859. case "IdChk":
  860. $_whereis = " cd_dealerid = '". $cd_dealerid . "'";
  861. $cnt = $dbCon->getOneDAO("count(*)",$table_name, $_whereis, 1);
  862. if($cnt==0) {
  863. echo("Y");
  864. exit;
  865. } else {
  866. echo("N");
  867. exit;
  868. }
  869. break;
  870. case "IdSearch":
  871. $_whereis = " ds_delind='N' And nm_name = '". $nm_name . "' AND nm_email = '". $nm_email . "'";
  872. $userid = $dbCon->getOneDAO("cd_dealerid",$table_name, $_whereis, 1);
  873. if($userid) {
  874. echo($userid);
  875. exit;
  876. } else {
  877. echo("");
  878. exit;
  879. }
  880. break;
  881. case "PwSearch":
  882. $_whereis = " ds_delind='N' And cd_dealerid = '".$cd_dealerid."' And nm_name = '". $nm_name . "' AND nm_email = '". $nm_email . "'";
  883. $userid = $dbCon->getOneDAO("cd_dealer",$table_name, $_whereis, 1);
  884. if($userid) {
  885. $new_passwd = generatePassword(8);
  886. $sqlPwd="UPDATE dealer_master set nm_pass = password('".$new_passwd."') where cd_dealer = '".$userid."'";
  887. $result = $dbCon->query($sqlPwd);
  888. echo($new_passwd);
  889. exit;
  890. } else {
  891. echo("");
  892. exit;
  893. }
  894. break;
  895. default :
  896. AlertBack("지정되지않은 요청입니다");
  897. break;
  898. }
  899. mysql_close($connect);
  900. ?>