include("admin_files.inc.php"); include("lpsg/admin_lpsg.inc.php"); include("help42/admin_help42.inc.php"); include("five/admin_five.inc.php"); $is_logged = 0; $aid = ""; $psrid = ""; session_start(); if(isset($_SESSION['session_admin_logged']) and isset($_SESSION['session_admin_aid']) and isset($_SESSION['session_admin_psrid']) and isset($_SESSION['session_admin_secret'])) { $is_logged = $_SESSION['session_admin_logged']; $aid = $_SESSION['session_admin_aid']; $psrid = $_SESSION['session_admin_psrid']; $secret = $_SESSION['session_admin_secret']; } if($aid == "") { if(isset($_COOKIE['cookie_admin_aid']) and isset($_COOKIE['cookie_admin_psrid']) and isset($_COOKIE['cookie_admin_secret'])) { $aid = $_COOKIE['cookie_admin_aid']; $psrid = $_COOKIE['cookie_admin_psrid']; $secret = $_COOKIE['cookie_admin_secret']; $_SESSION['session_admin_logged'] = 1; $_SESSION['session_admin_aid'] = $aid; $_SESSION['session_admin_psrid'] = $psrid; $_SESSION['session_admin_secret'] = $secret; } } if($aid=="" || $psrid=="") { Header("Location: ".$LOGOUT_PAGE); exit(); } $DBcon = DBconnect(); $sSQL = "select userid,username,office_name,priority, prrt_school,prrt_depinfo,prrt_search,prrt_transfer,prrt_help42,prrt_five,prrt_cap,prrt_lpsg,prrt_lpsg2 from account where aid=:aid and MCC=:secret and office_name=:psrid and priority>1"; $execSQL = $DBcon->prepare($sSQL); $execSQL->bindParam(":aid",$aid); $execSQL->bindParam(":secret",$secret); $execSQL->bindParam(":psrid",$psrid); $execSQL->execute(); if($execSQL->rowCount() == 0) { DBClose($DBcon); ?> exit(); } else { List($userid,$username,$office_name,$priority,$prrt_school,$prrt_depinfo,$prrt_search,$prrt_transfer,$prrt_help42,$prrt_five,$prrt_cap,$prrt_lpsg,$prrt_lpsg2) = $execSQL->fetch(PDO::FETCH_NUM); } $sSQL = "select school_name,techorhigh,univorcol from ".$WEB_DB.".schools where psrid=?"; $execSQL = $DBcon->prepare($sSQL); $execSQL->bindParam(1,$psrid); $execSQL->execute(); if($execSQL->rowCount() == 0) { DBClose($DBcon); ?> exit(); } else { List($school_name,$techorhigh,$univorcol) = $execSQL->fetch(PDO::FETCH_NUM); $office_name = $school_name; } $top_from_tid = 11; $pid = 1; $sSQL = "select groupid,menu_name from topics where tid=?"; $execSQL = $DBcon->prepare($sSQL); $execSQL->bindParam(1,$top_from_tid); $execSQL->execute(); if($execSQL->rowCount() == 0) { DBClose($DBcon); Header("Location: ".$DEBUT_PAGE); exit(); } List($menu_group,$menu_name) = $execSQL->fetch(PDO::FETCH_NUM); $sSQL = "select from_tid,page_name from pages where showup=1 and pid=?"; $execSQL = $DBcon->prepare($sSQL); $execSQL->bindParam(1,$pid); $execSQL->execute(); if($execSQL->rowCount() == 0) { DBClose($DBcon); Header("Location: ".$DEBUT_PAGE); exit(); } List($from_tid,$page_name) = $execSQL->fetch(PDO::FETCH_NUM); head($DBcon,$menu_group,$top_from_tid,$username,$office_name); show_menu($DBcon,$from_tid,$pid); ?>
開放時間: