<?php
	if(!$_COOKIE[CartCookie]){
		$cart_id = md5(uniqid(rand(),1));
	} else {
		$cart_id = "$_COOKIE[CartCookie]";
	}
		setcookie ("CartCookie", $cart_id,time()+3600);  /* expire in 1 hour */

	/*
	
	- Add a date field to the database of purchased products and records
	beyond 24 hours will be deleted.
	
	*/

//echo "cart_id = $cart_id<br>";
	
?>
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<html>
<head><title>Expocraft Order Cart</title>
<script language="JavaScript" src="scripts.js"></script>
</head>

<?php //<body onload="getSubs()"> ?>
<body>

<?php

	$today  = date("YmdHis");
	$yesterday = $today-1000000;

//	echo "Today is $today<br>";
//	echo "Yesterday was $yesterday<br>";

	$link = mysql_connect("localhost","expocraf_cartuse","expcrf88") or die("Cart Database Current Unavailable");
	mysql_select_db (expocraf_expocart);

	$SQL = "DELETE FROM order_cart WHERE startdate<'$yesterday'";
	$Result = mysql_query($SQL);

//echo "SQL = $SQL<br>";
//echo "Result = $Result<br>";
	
	if(!$_GET[q] and $_GET[pc]){
		$_GET[q] = 1;
	}

	if($_POST[q]){
		$_GET[q] = "$_POST[q]";
	}
	if($_POST[pc]){
		$_GET[pc] = "$_POST[pc]";
	}
	if($_POST[pd]){
		$_GET[pd] = "$_POST[pd]";
	}
	if($_POST[p]){
		$_GET[p] = "$_POST[p]";
	}
	if($_POST[a]){
		$_GET[a] = "$_POST[a]";
	}
	
	if(!$_GET[a]){
		$_GET[a]="view";
	}

	$_GET[pd] = stripslashes("$_GET[pd]");

/*	
	echo "link = $link<br>";
	echo "dblink = $dblink<br>";
	echo "_COOKIE[CartCookie] = $_COOKIE[CartCookie]<br>";
	echo "_POST[q] = $_POST[q]<br>";
	echo "_GET[q] = $_GET[q]<br>";
	echo "_POST[pc] = $_POST[pc]<br>";
	echo "_GET[pc] = $_GET[pc]<br>";
	echo "_POST[pd] = $_POST[pd]<br>";
	echo "_GET[pd] = $_GET[pd]<br>";
	echo "_POST[p] = $_POST[p]<br>";
	echo "_GET[p] = $_GET[p]<br>";
	echo "_POST[a] = $_POST[a]<br>";
	echo "_GET[a] = $_GET[a]<br>";
*/

switch ($_GET[a]) {
    case "add":
		// insert into database new entry.
		$_GET[pd] = addslashes("$_GET[pd]");
		$SQL = "INSERT INTO `order_cart` (`user_id`, `prd_code`, `prd_desc`, `prd_qty`, `prd_price`) VALUES ('$_COOKIE[CartCookie]','$_GET[pc]','$_GET[pd]','$_GET[q]','$_GET[p]')";
//		$SQL = "INSERT INTO order_cart VALUES('$_COOKIE[CartCookie]','$_GET[pc]','$_GET[pd]','$_GET[q]','$_GET[p]')";
		$Result = mysql_query($SQL);
		
//echo "SQL = $SQL<br>";		
//echo "Result = $Result<br>";		

        break;

    case "recal":
        //  prd_qty in database.

//echo "_POST[rpq] = $_POST[rpq]<br>";

		foreach (array_keys($_POST[rpq]) as $kpq){

//echo "kpq = $kpq<br>";
			$spq = $_POST[rpq][$kpq];

//echo "spq = $spq<br>";

			$SQL = "UPDATE order_cart SET prd_qty='$spq' WHERE prd_code='$kpq' and user_id='$_COOKIE[CartCookie]'";
			$Result = mysql_query($SQL);

//echo "SQL = $SQL<br>";

		}
        break;

    case "del":
        // delete prd_code in database
		foreach (array_keys($_POST[rpq]) as $kpq){
			$spq = $_POST[rpq][$kpq];
			if($spq==0){
				$SQL = "DELETE FROM order_cart WHERE prd_code='$kpq' and user_id='$_COOKIE[CartCookie]'";
				$Result = mysql_query($SQL);
			}
		}
        break;

    case "delall":
        // delete user_id in database
			$SQL = "DELETE FROM order_cart WHERE user_id='$_COOKIE[CartCookie]'";
			$Result = mysql_query($SQL);
        break;

    case "shop":
        // go back to product catalog
        break;
    case "submit":
        // submit info, prepare for emailing. then delete from database
        break;
    case "view":
        // view shopping cart contents
        break;
}	

	
?>

<center><br><br>
<form name="theForm" method="post">

<?php
	echo "<input type=\"hidden\" name=\"q\" value=\"$_GET[q]\">";
	echo "<input type=\"hidden\" name=\"pc\" value=\"$_GET[pc]\">";
	echo "<input type=\"hidden\" name=\"pd\" value=\"$_GET[pd]\">";
	echo "<input type=\"hidden\" name=\"p\" value=\"$_GET[p]\">";

if(!$Result and $_GET[a]=='add') echo "<font face=\"Verdana,Geneva,Arial,Helvetica,sans-serif\" size=\"2\" color=\"#FF0000\"><strong>Product Code $_GET[pc] is already in your order cart!<br></strong>
If you wish to add more of $_GET[pc], please change the quantity below and recalculate.</font>";
?>

<table cellspacing=0 cellpadding=3 border=1 width="80%">
<tr><td colspan=5 bgcolor="red" align="center"><font face="verdana,arial" size="2" color="white"><b>Order Cart</b></font></td></tr>
<tr>
 <td bgcolor="#FF8080"><font face="verdana,arial" size="1" color="white"><b>QTY</b></td>
 <td bgcolor="#FF8080"><font face="verdana,arial" size="1" color="white"><b>CODE</b></td>
 <td bgcolor="#FF8080"><font face="verdana,arial" size="1" color="white"><b>PRODUCT DESCRIPTION</b></td>
 <td bgcolor="#FF8080"><font face="verdana,arial" size="1" color="white"><b>PRICE</b></td>
 <td bgcolor="#FF8080"><font face="verdana,arial" size="1" color="white"><b>SUBTOTAL</b></td>
</tr>

<?php

	$SQL = "SELECT * FROM order_cart WHERE user_id='$_COOKIE[CartCookie]'";
	$Result = mysql_query($SQL);
	$Row = mysql_fetch_array($Result);
	$user_id = $Row["user_id"];
	$prd_code = $Row["prd_code"];
	$prd_desc = $Row["prd_desc"];
	$prd_qty = $Row["prd_qty"];
	$prd_price = $Row["prd_price"];

	include("decimalzeroes.php");	
	$x=0;
	$total=0;
	while($user_id){
	$x++;
//echo "subtotal = $subtotal<br>";
		$total = $total+$subtotal;
//echo "total = $total<br>";
		include("decimalzeroes2.php");	

		?>
			<tr>
			 <td><input style="text-align:right;font-family:verdana,arial;font-size:8pt;" type="text" size=3 name="rpq[<?php echo "$prd_code";?>]" value="<?php echo "$prd_qty";?>"></td>
			 <?php echo "<input type=\"hidden\" name=\"rpc[$x]\" value=\"$prd_code\">"; ?>
			 <td><font face="verdana,arial" size="1"><b><?php echo "$prd_code";?></b></td>
			 <td><font face="verdana,arial" size="1"><b><?php echo "$prd_desc";?></b></td>
			 <td align="right"><font face="verdana,arial" size="1"><b><?php echo "$prd_price";?></b></td>
			 <td align="right"><font face="verdana,arial" size="1"><b><?php echo $subtotal;?></b></td>
			</tr>
		<?php
		$Row = mysql_fetch_array($Result);
		$user_id = $Row["user_id"];
		$prd_code = $Row["prd_code"];
		$prd_desc = $Row["prd_desc"];
		$prd_qty = $Row["prd_qty"];
		$prd_price = $Row["prd_price"];
		$subtotal = $prd_price*$prd_qty;
		include("decimalzeroes.php");	
	}
?>


<tr><td colspan=4 align=right><font face="verdana,arial" size="1"><b>Total:</b></font></td>
<td align="right"><font face="verdana,arial" size="1"><b><?php echo "$total";?></td></tr>
<tr><td colspan=5 align="center">
 <input type="hidden" name="NextPage">
<img src="recalc.gif" style="cursor:hand;" onClick="theForm.action='ordercart.asp?a=recal';theForm.submit();">
<img src="remove.gif" style="cursor:hand;" onClick="theForm.action='ordercart.asp?a=del';theForm.submit();">
<img src="clearout.gif" style="cursor:hand;" onClick="theForm.action='ordercart.asp?a=delall';theForm.submit();"><br>
<img src="shop.gif" style="cursor:hand;" onClick="theForm.action='products.mv';theForm.submit();">
<img src="submit.gif" style="cursor:hand;" onClick="theForm.action='submit.htm?a=submit';theForm.submit();">
</td></tr>
</table>
</form>
<table width="75%" border=0>
<tr><td align="right" valign="top" size=200><font face="verdana,arial" size="1"><b>RECALCULATE</b>.</font></td><td valign="top"><font face="verdana,arial" size="1"> Change the quantity then click on this button to recalculate the total.<br><br></font></td></tr>
<tr><td align="right" valign="top"><font face="verdana,arial" size="1"><b>REMOVE ITEM.</b></font></td><td valign="top"> <font face="verdana,arial" size="1">Type in zero "0" in the Qty of the product you want to remove then click on this button.<br><br></font></td></tr>
<tr><td align="right" valign="top"><font face="verdana,arial" size="1"><b>CLEAR OUT</b>.</font></td><td valign="top"> <font face="verdana,arial" size="1">Click this button if you want to empty your cart.<br><br></font></td></tr>
<tr><td align="right" valign="top"><font face="verdana,arial" size="1"><b>SHOP FOR MORE</b>.</font></td><td valign="top"> <font face="verdana,arial" size="1">Click to go back to the products list.<br><br></font></td></tr>
<tr><td align="right" valign="top"><font face="verdana,arial" size="1"><b>SUBMIT ORDER</b>.</font></td><td valign="top"> <font face="verdana,arial" size="1">Press this button when you're finished choosing the product(s) you like to order.</font></td></tr>
</table>
</center></body>
</html>










