Update enter_information.php
[clinton/MarylandElectronicPetitionSignature.git] / admin / managers.php
CommitLineData
39a68a31 1<?PHP
d571b0f0 2include_once('../slack.php');
39a68a31 3include_once('security.php');
d571b0f0
PM
4if ($_COOKIE['level'] == 'user'){
5 slack_general('ADMIN: Redirect User Home ('.$_COOKIE['name'].') ('.$_COOKIE['level'].')','md-petition');
6 header('Location: user_home.php');
7}
8if ($_COOKIE['level'] == 'manager'){
9 slack_general('ADMIN: Redirect Manager Home ('.$_COOKIE['name'].') ('.$_COOKIE['level'].')','md-petition');
10 header('Location: manager_home.php');
11}
39a68a31 12include_once('header.php');
6c898699 13if(isset($_POST['name']) && isset($_POST['email']) && isset($_POST['group_id']) ){
a5d1f6b6
PM
14 $name = $petition->real_escape_string($_POST['name']);
15 $email = $petition->real_escape_string($_POST['email']);
6c898699 16 $group_id = $petition->real_escape_string($_POST['group_id']);
1ea78506 17 $petition->query("insert into users (name,email,group_id,sec_level) values ('$name','$email','$group_id','manager') ");
a5d1f6b6
PM
18}
19
20
39a68a31
PM
21slack_general('ADMIN: managers.php ('.$_COOKIE['name'].') ('.$_COOKIE['level'].')','md-petition');
22?>
05d9759e 23<h1>Groups</h1>
52431b89 24<?PHP
edafdf90 25$q="SELECT * FROM groups order by name";
52431b89
PM
26$r = $petition->query($q);
27while($d = mysqli_fetch_array($r)){
c84ef45d 28 echo "<li><a href='groups.php?edit=$d[id]'>EDIT</a> $d[name]</li>";
52431b89
PM
29}
30?>
05d9759e 31<h1>Managers</h1>
a5d1f6b6 32<?PHP
edafdf90 33$q="SELECT * FROM users where sec_level='manager' order by group_id";
a5d1f6b6
PM
34$r = $petition->query($q);
35while($d = mysqli_fetch_array($r)){
71205b1f 36 echo "<li><a href='managers.php?edit=$d[id]'>EDIT</a> $d[email] $d[name] ".id2group($d['group_id'])."</li>";
a5d1f6b6
PM
37}
38?>
39<h1>New Manager</h1>
40<form method='post'>
8fcc71d6
PM
41 Name <input name='name' required>
42 E-Mail <input name='email' required>
43 Group: <select name='group_id' required>
44 <?PHP
45$q="SELECT * FROM groups";
46$r = $petition->query($q);
47while($d = mysqli_fetch_array($r)){
48 echo "<option value='$d[id]'>$d[name]</option>
49 ";
50}
51?>
52 </select>
a5d1f6b6
PM
53 <input type='submit'>
54</form>
39a68a31
PM
55
56<?PHP
57include_once('footer.php');
58?>