115 lines
5.5 KiB
PHP
115 lines
5.5 KiB
PHP
<?php
|
|
include('includes/config/config.php');
|
|
include('includes/auth/auth.php');
|
|
include('includes/functions.php');
|
|
include('access.php');
|
|
// error_reporting(E_ERROR | E_PARSE);
|
|
include('log_entry.php')
|
|
?>
|
|
<?php
|
|
|
|
// Connect to mysqli database
|
|
$page = 1; // The current page
|
|
$sortname = 'id'; // Sort column
|
|
$sortorder = 'asc'; // Sort order
|
|
$qtype = ''; // Search column
|
|
$query = ''; // Search string
|
|
// Get posted data
|
|
if (isset($_POST['page'])) {
|
|
$page = @mysqli_real_escape_string($conn, $_POST['page']);
|
|
}
|
|
if (isset($_POST['sortname'])) {
|
|
$sortname = @mysqli_real_escape_string($conn, $_POST['sortname']);
|
|
}
|
|
if (isset($_POST['sortorder'])) {
|
|
$sortorder = @mysqli_real_escape_string($conn, $_POST['sortorder']);
|
|
}
|
|
if (isset($_POST['qtype'])) {
|
|
$qtype = @mysqli_real_escape_string($conn, $_POST['qtype']);
|
|
}
|
|
if (isset($_POST['query'])) {
|
|
$query = @mysqli_real_escape_string($conn, $_POST['query']);
|
|
}
|
|
if (isset($_POST['rp'])) {
|
|
$rp = @mysqli_real_escape_string($conn, $_POST['rp']);
|
|
}
|
|
// Setup sort and search SQL using posted data
|
|
$hasReadAccess = isAccessible($_SESSION['RoleId'], $menu_key, 'R');
|
|
$hasWriteAccess = isAccessible($_SESSION['RoleId'], $menu_key, 'W');
|
|
$hasExecuteAccess = isAccessible($_SESSION['RoleId'], $menu_key, 'E');
|
|
|
|
$sortSql = "order by $sortname $sortorder";
|
|
$searchSql = ($qtype != '' && $query != '') ? "where upper($qtype) like upper('%$query%')" : '';
|
|
// Get total count of records
|
|
$sql = "select count(*) from tbl_items a left join item_rate b on a.item_id=b.item_id left join employer_contractor c on a.vendor_id=c.id $searchSql";
|
|
$result = @mysqli_query($conn, $sql);
|
|
$row = @mysqli_fetch_array($result);
|
|
$total = $row[0];
|
|
// Setup paging
|
|
if (!isset($rp)) {
|
|
$rp = 10;
|
|
}
|
|
$pageStart = ($page - 1) * $rp;
|
|
$limitSql = "limit $pageStart, $rp";
|
|
// Return JSON data
|
|
$data = array();
|
|
$data['page'] = $page;
|
|
$data['total'] = $total;
|
|
$data['rows'] = array();
|
|
$sql_vaccine = "select a.item_name,a.unit_id,a.item_id,b.item_rate_id,a.vendor_id,b.item_rate,b.unit,c.employer_contractor_name,c.employer_contractor_code,c.employer_contractor_email from tbl_items a left join item_rate b on a.item_id=b.item_id left join employer_contractor c on a.vendor_id=c.id ";
|
|
$sql_export = $sql_vaccine . " $searchSql $sortSql";
|
|
$sql_vaccine = $sql_vaccine . " $searchSql $sortSql $limitSql";
|
|
//echo $sql_vaccine;
|
|
error_log("Sql: " . $sql_vaccine);
|
|
$results_ailment = @mysqli_query($conn, $sql_vaccine);
|
|
$count = ($page - 1) * $rp + 1;
|
|
|
|
//echo $sql_vaccine;
|
|
//echo $access_level;
|
|
|
|
while ($row_vaccine = @mysqli_fetch_assoc($results_ailment)) {
|
|
// $row_vaccine['item_name']= getTableFieldValue('tbl_item','item_name','item_id',$row_vaccine['item_id']);
|
|
$id = $row_vaccine['item_rate_id'];
|
|
$item_id = $row_vaccine['item_id'];
|
|
|
|
$item_id_from_item_rate = getFieldFromTable('item_rate_id', 'item_rate', 'item_id', $item_id);
|
|
//echo $id;
|
|
error_log("item rate id" . $item_id_from_item_rate);
|
|
$item_name = getItemWithFormName($row_vaccine['item_id']);
|
|
error_log("id: " . $id . ' item_id:' . $row_vaccine['item_id']);
|
|
$view_link = "";
|
|
$edit_link = "";
|
|
$delete_link = "";
|
|
$links = "";
|
|
$add_new_button = '';
|
|
$rate_change_history_button = '';
|
|
if ($hasReadAccess) {
|
|
//echo "shubham";
|
|
$view_link = "<a href=\"#\"class=\"grey\" onclick=\"open_item('" . $id . "','V','" . $item_id . "');\"><i class=\"ace-icon fa fa-eye bigger-130\"></i></a>";
|
|
}
|
|
|
|
if ($hasWriteAccess) {
|
|
if ($item_id_from_item_rate == '' || $item_id_from_item_rate == null) {
|
|
$edit_link = "<a href=\"#\" class=\"blue\" onclick=\"open_item('" . $id . "','E','" . $item_id . "');\"><i class=\"ace-icon fa fa-edit bigger-130\"></i></a>";
|
|
} else {
|
|
$add_new_button = "<button class='btn btn-success new_button' id='new_rate_button' type='button' onclick=\"open_item('" . $id . "','A');\"><i class='ace-icon fa fa-plus-square-o bigger-110'></i></button>";
|
|
}
|
|
$rate_change_history_button = "<button class='btn btn-info save_button' id='rate_change_history_button' type='button' onclick=\"rate_change_history('" . $id . "','E');\"><i class='ace-icon fa fa-folder-open-o bigger-110 '></i></button>";
|
|
}
|
|
if ($hasExecuteAccess) {
|
|
$delete_link = "<a href=\"#\" class=\"red\" onclick=\"delete_item('" . $id . "');\"><i class=\"ace-icon fa fa-trash-o bigger-130\"></i></a>";
|
|
}
|
|
$space = " ";
|
|
$links = $assign_link . $space . $view_link . $space . $edit_link . $space . $delete_link;
|
|
$data['rows'][] = array(
|
|
'id' => $row_vaccine['item_rate_id'],
|
|
'cell' => array($count++,$links, $item_name, $row_vaccine['item_rate'], $row_vaccine['unit'] . " " . getTableFieldValue('unit_master', 'unit_name', 'unit_id', $row_vaccine['unit_id']), $row_vaccine['employer_contractor_code'], $row_vaccine['employer_contractor_name'], $row_vaccine['employer_contractor_email'], $add_new_button, $rate_change_history_button)
|
|
);
|
|
}
|
|
$data['rows'][] = array(
|
|
'id' => $row['filterkey'],
|
|
'cell' => array('', "<input type=hidden name='filterkey' id='filterkey' value=\"" . base64_encode($sql_export) . "\">", "<input type=hidden name=paramlist id=paramlist value=\"" . base64_encode($paramlist) . "\">", '', '', '', '', '', '', '', '', '', '', '', '', '', '', '', '', '')
|
|
);
|
|
|
|
echo json_encode($data);
|
|
?>
|