board_proc.php 7.3 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219
  1. <?php
  2. session_start();
  3. include $_SERVER['DOCUMENT_ROOT'].'/common/lib/comm.php';
  4. $upBaseDir = $_SERVER['DOCUMENT_ROOT'].UPLOAD_PATH."board";
  5. //게시판 글쓰기
  6. $cd_seq = trim(avoid_crack($_POST["cd_seq"]));
  7. $cd_board = trim(avoid_crack($_POST["cd_board"]));
  8. $cd_user = trim(avoid_crack($_POST["cd_user"]));
  9. $cd_userid = trim(avoid_crack($_POST["cd_userid"]));
  10. $nm_title = trim(avoid_crack($_POST["nm_title"]));
  11. $nm_content =$_POST["nm_content"];
  12. $nm_reply =$_POST["nm_reply"];
  13. $ds_open = trim(avoid_crack($_POST["ds_open"]));
  14. $ds_kind = trim(avoid_crack($_POST["ds_kind"]));
  15. $ds_top = trim(avoid_crack($_POST["ds_top"]));
  16. $ds_main = trim(avoid_crack($_POST["ds_main"]));
  17. $nm_name = trim(avoid_crack($_POST["nm_name"]));
  18. $nm_etc1 = trim(avoid_crack($_POST["nm_etc1"]));
  19. $nm_etc2 = trim(avoid_crack($_POST["nm_etc2"]));
  20. $nm_etc3 = trim(avoid_crack($_POST["nm_etc3"]));
  21. $nm_etc4 = trim(avoid_crack($_POST["nm_etc4"]));
  22. $nm_etc5 = trim(avoid_crack($_POST["nm_etc5"]));
  23. $nm_title = trim(avoid_crack($_POST["nm_title"]));
  24. $url = trim(avoid_crack($_POST["url"]));
  25. $no_pcd_seq = trim(avoid_crack($_POST["no_pcd_seq"]));
  26. $org_upload_file_name = trim(avoid_crack($_POST["org_upload_file_name"]));
  27. switch($mode) {
  28. case "Add" :
  29. $nm_content = addslashes($nm_content);
  30. $upload_file_name = "";
  31. $upload_path = $upBaseDir."/board_".$cd_board;
  32. if (is_uploaded_file($_FILES['nm_file']['tmp_name'])) {
  33. if($_FILES['nm_file']['size'] > 0 ){
  34. $upload_file_name = upload($_FILES['nm_file'],$upload_path, 50, array('gif', 'jpeg', 'jpg','png','bmp','hwp','doc','docx','xls','xlsx','ppt','docx','pptx' ,'pdf', 'txt' ));
  35. if($upload_file_name==false){
  36. AlertBack("첨부파일 업로드 실패 하였습니다.");
  37. die();
  38. }
  39. }
  40. }
  41. //계층형 관련 데이터 설정
  42. $no_famally=@mysql_result(mysql_query("SELECT (IFNULL(MIN(no_famally),0)) -(1) FROM board_master"),0,0);
  43. $no_order = 0;
  44. $no_step = 0;
  45. //파일 저장
  46. $sql="insert into board_master
  47. (cd_board, cd_user, cd_userid, nm_name, nm_title, no_hit , ds_open, nm_content, nm_file, nm_updir, no_famally, no_order, no_step, nm_reply, dt_insert,nm_insert, dt_update, nm_update,ds_delind, ds_top, ds_main, ds_kind, nm_etc1, nm_etc2, nm_etc3,nm_etc4,nm_etc5 )
  48. values
  49. ('$cd_board','$cd_user','$cd_userid','$nm_name','$nm_title',0,'$ds_open','$nm_content','$upload_file_name','$upload_path',$no_famally, $no_order, $no_step, '$nm_reply', now(),'$cd_userid',now(),'$cd_userid','N','$ds_top','$ds_main','$ds_kind','$nm_etc1','$nm_etc2','$nm_etc3','$nm_etc4','$nm_etc5')
  50. ";
  51. //echo $sql;
  52. //exit;
  53. $result = mysql_query($sql,$connect);
  54. if ($url == "") $url = "/m/mypage/qna_list.php?cd_board=".$cd_board."&ds_kind=".$ds_kind."";
  55. if ($result) {
  56. Redirect($url);
  57. }else{
  58. AlertBack("등록 실패 하였습니다.");
  59. }
  60. break;
  61. case "Reply" :
  62. $nm_content = addslashes($nm_content);
  63. $upload_file_name = "";
  64. $upload_path = $upBaseDir."/board_".$cd_board;
  65. if (is_uploaded_file($_FILES['nm_file']['tmp_name'])) {
  66. if($_FILES['nm_file']['size'] > 0 ){
  67. $upload_file_name = upload($_FILES['nm_file'],$upload_path, 50, array('gif', 'jpeg', 'jpg','png','bmp','hwp','doc','docx','xls','xlsx','ppt','docx','pptx' ,'ppt' ,'pdf', 'txt' ));
  68. if($upload_file_name==false){
  69. AlertBack("첨부파일 업로드 실패 하였습니다.");
  70. die();
  71. }
  72. }
  73. }
  74. //부모글 관련 정보 가져온다.
  75. $sqlParent = "SELECT no_famally, no_order, no_step FROM board_master WHERE cd_seq = $no_pcd_seq";
  76. $col=mysql_fetch_array(mysql_query($sqlParent));
  77. if (!empty($col[no_famally])){
  78. $no_famally = $col[no_famally];
  79. $no_order = $col[no_order];
  80. $no_step = $col[no_step];
  81. //ORDER 재정렬
  82. $sqlOrder = "UPDATE board_master SET no_order=no_order+1 WHERE no_famally=$no_famally and no_order>$no_order";
  83. mysql_query($sqlOrder,$connect);
  84. }else{
  85. AlertBack("등록 실패 하였습니다.");
  86. die();
  87. }
  88. //DB저장
  89. $sql="insert into board_master
  90. (cd_board, cd_userid, nm_name, nm_title, no_hit , ds_open, nm_content, nm_file, nm_updir, no_famally, no_order, no_step, dt_insert,nm_insert, dt_update, nm_update,ds_delind, ds_top, ds_main, ds_kind )
  91. values
  92. ('$cd_board','$cd_userid','$nm_name' ,'$nm_title',0,'$ds_open','$nm_content','$upload_file_name','$upload_path',$no_famally, ($no_order+1), ($no_step+1), now(),'$cd_userid',now(),'$cd_userid','N','$ds_top','$ds_main','A')
  93. ";
  94. $result = mysql_query($sql,$connect);
  95. if ($result) {
  96. Redirect("/m/mypage/qna_list.php?cd_board=".$cd_board."&ds_kind=".$ds_kind."");
  97. }else{
  98. AlertBack("등록 실패 하였습니다.");
  99. }
  100. break;
  101. //reply inquiry
  102. case "ReplyInquiry":
  103. //파일 저장
  104. $sql="update board_master
  105. set
  106. nm_reply = '$nm_reply'
  107. ,dt_reply = now()
  108. ,dt_update = now()
  109. ,nm_update = '$cd_userid'
  110. WHERE cd_seq =$cd_seq";
  111. $result = mysql_query($sql,$connect);
  112. if ($result) {
  113. Redirect("/m/mypage/qna_list.php?cd_board=".$cd_board."&ds_kind=".$ds_kind."");
  114. }else{
  115. AlertBack("수정 실패 하였습니다.");
  116. }
  117. break;
  118. //글수정
  119. case "Update":
  120. $upload_file_name = "";
  121. $upload_path = $upBaseDir."/board_".$cd_board;
  122. if (is_uploaded_file($_FILES['nm_file']['tmp_name'])) {
  123. if($_FILES['nm_file']['size'] > 0 ){
  124. $upload_file_name = upload($_FILES['nm_file'],$upload_path, 50, array('gif', 'jpeg', 'jpg','png','bmp','hwp','doc','docx','xls','xlsx','ppt','docx','pptx' ,'ppt' ,'pdf', 'txt' ));
  125. if($upload_file_name==false){
  126. AlertBack("첨부파일 업로드 실패 하였습니다.");
  127. die();
  128. }
  129. }else{
  130. $upload_file_name = $org_upload_file_name;
  131. }
  132. }
  133. if($upload_file_name=="" || $upload_file_name == null || $upload_file_name == false){
  134. $upload_file_name = $org_upload_file_name;
  135. }
  136. //파일 저장
  137. $sql="update board_master
  138. set
  139. cd_board = '$cd_board'
  140. ,nm_title = '$nm_title'
  141. ,nm_name = '$nm_name'
  142. ,ds_open = '$ds_open'
  143. ,nm_content = '$nm_content'
  144. ,nm_reply = '$nm_reply'
  145. ,nm_file = '$upload_file_name'
  146. ,nm_updir = '$upload_path'
  147. ,dt_update = now()
  148. ,nm_update = '$cd_userid'
  149. ,ds_top = '$ds_top'
  150. ,ds_main = '$ds_main'
  151. ,ds_kind ='$ds_kind'
  152. ,nm_etc1 ='$nm_etc1'
  153. ,nm_etc2 ='$nm_etc2'
  154. ,nm_etc3 ='$nm_etc3'
  155. ,nm_etc4 ='$nm_etc4'
  156. ,nm_etc5 ='$nm_etc5'
  157. WHERE cd_seq =$cd_seq";
  158. $result = mysql_query($sql,$connect);
  159. if ($result) {
  160. Redirect("/m/mypage/qna_list.php?cd_board=".$cd_board."&ds_kind=".$ds_kind."");
  161. }else{
  162. AlertBack("수정 실패 하였습니다.");
  163. }
  164. break;
  165. //글삭제 처리
  166. case "Delete" :
  167. $cd_seq = trim(avoid_crack($_POST["cd_seq"]));
  168. $cd_userid = trim(avoid_crack($_POST["cd_userid"]));
  169. $cd_board = trim(avoid_crack($_POST["cd_board"]));
  170. $PageNo = trim(avoid_crack($_POST["PageNo"]));
  171. $sql = "update board_master set ds_delind='Y' , nm_update = '$cd_userid' , dt_update = now() where cd_seq='$cd_seq'";
  172. $result = mysql_query($sql,$connect);
  173. if ($result) {
  174. Redirect("/m/mypage/qna_list.php?cd_board=".$cd_board."&ds_kind=".$ds_kind."");
  175. }else{
  176. AlertRedirect("삭제 실패하였습니다.","/mypage/qna_list.php?cd_board=".$cd_board."&ds_kind=".$ds_kind."");
  177. }
  178. break;
  179. default :
  180. AlertRedirect("지정되지않은 요청입니다",ADMIN_PATH."/m/index.php");
  181. break;
  182. }
  183. mysql_close($connect);
  184. ?>