require('db.php');
if ($_REQUEST['Submit'] == "Store Info")
{
storeInfo();
}
elseif( (!isset($_SESSION['custID'])) && (!isset($_REQUEST['newcustomer'])) )
die("You must login to view this page");
else
{
showForm();
}
function showForm()
{
$newcustomer = (isset($_REQUEST['newcustomer'])) ? true : false;
if(!$newcustomer)
{
$sql = "SELECT * FROM Rest_Customer WHERE $ID = " . $_SESSION['custID'];
$res = mysql_query($sql) or die("Failed at query: '$sql' " . mysql_error());
$custData = mysql_fetch_assoc($res);
}
?>
Edit your info below
}
function storeInfo()
{
$FName = $_REQUEST['FName'];
$LName = $_REQUEST['LName'];
$Gender = $_REQUEST['Gender'];
$Phone = $_REQUEST['Phone'];
$Pass = md5($_REQUEST['password']);
if($_REQUEST['insert'])
{
$sql = "INSERT INTO Rest_Customer VALUES (NULL, '$FName', '$LName', '$Gender', '$Phone', '$Pass')";
}
else
{
$sql = "UPDATE Rest_Customer SET FName = '$FName', LName = '$LName', Gender = '$Gender',
Phone = '$Phone'
WHERE ID = " . $_SESSION['custID'];
}
$res = mysql_query($sql);
if(!$res)
{
die ("Failed to insert: " . mysql_error());
}
print "Thank you $FName, your info has been stored.
";
if($_REQUEST['insert']){
$id = mysql_insert_id();
$_SESSION['custID'] = $id;
print "Your Customer ID is " . $id . "
";
}
print "Home";
}