employee.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346
  1. <?php
  2. include "conn.php";
  3. checkLogin("信息管理");
  4. $act = $_GET['act'] ?? '';
  5. // Handle all actions that might need header redirects first
  6. if($act == "save") {
  7. $isEdit = false;
  8. $id = $_POST['id'] ?? '';
  9. if($id != '' && is_numeric($id)) {
  10. $isEdit = true;
  11. }
  12. $em_user = textEncode($_POST['em_user']);
  13. $em_password = textEncode($_POST['em_password']);
  14. $re_password = textEncode($_POST['re_password']);
  15. $em_role = $_POST['em_role'];
  16. $em_code = textEncode($_POST['em_code']);
  17. $em_email = textEncode($_POST['em_email']);
  18. $em_tel = textEncode($_POST['em_tel']);
  19. $em_permission_role_id = $_POST['em_permission_role_id'];
  20. $login_forbidden = isset($_POST['login_forbidden']) ? 1 : 0;
  21. $nullPwd = false;
  22. if(empty($em_password)) {
  23. $nullPwd = true;
  24. }
  25. if($em_password != $re_password) {
  26. echo "<script>alert('两次密码输入不一致');history.back();</script>";
  27. exit;
  28. }
  29. if($isEdit) {
  30. $query = "SELECT * FROM employee WHERE id=$id";
  31. $result = $conn->query($query);
  32. if($result->num_rows > 0) {
  33. $password_sql = $nullPwd ? "" : ",em_password='".md5($em_password)."'";
  34. $sql = "UPDATE employee SET em_user='$em_user'$password_sql,em_role=$em_role,
  35. em_code='$em_code',em_email='$em_email',em_tel='$em_tel',em_permission_role_id=$em_permission_role_id,
  36. login_forbidden=$login_forbidden WHERE id=$id";
  37. $conn->query($sql);
  38. }
  39. $page = $_GET['Page'] ?? '';
  40. $keys = urlencode($_GET['Keys'] ?? '');
  41. $ord = urlencode($_GET['Ord'] ?? '');
  42. header("Location: ?keys=$keys&Ord=$ord&Page=$page");
  43. exit;
  44. } else {
  45. if($nullPwd) {
  46. $em_password = "MTB".$em_code;
  47. }
  48. $sql = "INSERT INTO employee(em_user,em_password,em_role,em_code,em_email,em_tel,em_permission_role_id,login_forbidden)
  49. VALUES('$em_user','".md5($em_password)."',$em_role,'$em_code','$em_email','$em_tel',$em_permission_role_id,$login_forbidden)";
  50. $conn->query($sql);
  51. header("Location: ?");
  52. exit;
  53. }
  54. }
  55. if($act == "postchk") {
  56. $keys = urlencode($_GET['Keys'] ?? '');
  57. $ord = urlencode($_GET['Ord'] ?? '');
  58. $page = $_GET['Page'] ?? '';
  59. $chkact = $_POST['chkact'] ?? '';
  60. if(isset($_POST['chkbox']) && is_array($_POST['chkbox'])) {
  61. $sqlStr = "DELETE FROM employee WHERE id IN (" . implode(',', $_POST['chkbox']) . ")";
  62. $conn->query($sqlStr);
  63. }
  64. header("Location: ?Keys=$keys&Ord=$ord&Page=$page");
  65. exit;
  66. }
  67. // Now start HTML output
  68. ?>
  69. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
  70. <html xmlns="http://www.w3.org/1999/xhtml">
  71. <head>
  72. <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
  73. <title>管理区域</title>
  74. <link rel="stylesheet" href="css/common.css" type="text/css" />
  75. <script language="javascript" src="js/jquery-1.7.2.min.js"></script>
  76. <script type="text/javascript" src="js/js.js"></script>
  77. <script type="text/javascript" src="xheditor-1.1.9/xheditor-1.1.9-zh-cn.min.js"></script>
  78. </head>
  79. <body>
  80. <div id="man_zone">
  81. <?php
  82. if($act == "add" || $act == "edit") {
  83. $id = $_GET['id'] ?? '';
  84. $isEdit = false;
  85. if($id != '' && is_numeric($id)) {
  86. $isEdit = true;
  87. }
  88. if($isEdit) {
  89. $query = "SELECT * FROM employee WHERE id=$id";
  90. $result = $conn->query($query);
  91. if($result->num_rows > 0) {
  92. $row = $result->fetch_assoc();
  93. $em_user = textUncode($row['em_user']);
  94. $em_role = $row['em_role'];
  95. $em_code = textUncode($row['em_code']);
  96. $em_email = textUncode($row['em_email']);
  97. $em_tel = textUncode($row['em_tel']);
  98. $em_permission_role_id = $row['em_permission_role_id'];
  99. $login_forbidden = $row['login_forbidden'] ?? 0;
  100. } else {
  101. $isEdit = false;
  102. }
  103. }
  104. $page = $_GET['Page'] ?? '';
  105. $keys = urlencode($_GET['Keys'] ?? '');
  106. $ord = urlencode($_GET['Ord'] ?? '');
  107. $hrefstr = "?keys=$keys&Ord=$ord&Page=$page";
  108. ?>
  109. <form name="form1" method="post" action="<?php echo $hrefstr; ?>&act=save" onSubmit="return subform2();">
  110. <table width="100%" border="0" cellpadding="3" cellspacing="1" class="table1">
  111. <tbody>
  112. <tr>
  113. <th width="8%">用户名</th>
  114. <td><input type="text" id="em_user" name="em_user" value="<?php echo $em_user ?? ''; ?>" required class="txt-short" />
  115. <input type="hidden" name="id" value="<?php echo $id; ?>" /></td>
  116. </tr>
  117. <tr>
  118. <th width="8%">密码</th>
  119. <td><input type="password" id="em_password" name="em_password" value="" class="txt-short"/></td>
  120. </tr>
  121. <tr>
  122. <th width="8%">重复密码</th>
  123. <td><input type="password" id="re_password" name="re_password" value="" class="txt-short"/></td>
  124. </tr>
  125. <tr>
  126. <th width="8%">工号</th>
  127. <td><input type="text" id="em_code" name="em_code" value="<?php echo $em_code ?? ''; ?>" class="txt1" /></td>
  128. </tr>
  129. <tr>
  130. <th width="8%">该用户上级</th>
  131. <td><select name="em_role">
  132. <option value="0">无</option>
  133. <?php
  134. $query = "SELECT id,em_user FROM employee WHERE em_role=0";
  135. $result = $conn->query($query);
  136. while($row = $result->fetch_assoc()) {
  137. $selected = ($row['id'] == ($em_role ?? '')) ? ' selected="selected"' : '';
  138. echo "<option value=\"{$row['id']}\"$selected>{$row['em_user']}</option>";
  139. }
  140. ?>
  141. </select>
  142. </td>
  143. </tr>
  144. <tr>
  145. <th width="8%">权限角色</th>
  146. <td>
  147. <select name="em_permission_role_id">
  148. <option value="0" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 0) ? 'selected' : ''; ?>>0 * 普通</option>
  149. <option value="2" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 2) ? 'selected' : ''; ?>>2 * 组长</option>
  150. <option value="3" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 3) ? 'selected' : ''; ?>>3 * 组员</option>
  151. <option value="4" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 4) ? 'selected' : ''; ?>>4 * 分公司</option>
  152. <option value="6" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 6) ? 'selected' : ''; ?>>6 * 财务</option>
  153. <option value="1" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 1) ? 'selected' : ''; ?>>1 * 管理员</option>
  154. </select>
  155. </td>
  156. </tr>
  157. <tr>
  158. <th width="8%">邮箱</th>
  159. <td><input type="text" id="em_email" name="em_email" value="<?php echo $em_email ?? ''; ?>" class="txt1" /></td>
  160. </tr>
  161. <tr>
  162. <th width="8%">手机</th>
  163. <td><input type="text" id="em_tel" name="em_tel" value="<?php echo $em_tel ?? ''; ?>" class="txt1" /></td>
  164. </tr>
  165. <tr>
  166. <th width="8%">禁止登录</th>
  167. <td><input type="checkbox" id="login_forbidden" name="login_forbidden" value="1" <?php echo (isset($login_forbidden) && $login_forbidden == 1) ? 'checked' : ''; ?> /> 勾选表示禁止该用户登录</td>
  168. </tr>
  169. <tr>
  170. <th></th>
  171. <td>
  172. <input type="submit" name="save" id="save" value="确定" class="btn1" />
  173. <input type="reset" name="save" id="save" value="重置" class="btn1" />
  174. <input type="button" value="返回" class="btn1" onClick="location.href='<?php echo $hrefstr; ?>'" />
  175. </td>
  176. </tr>
  177. </tbody>
  178. </table>
  179. </form>
  180. </div>
  181. </body>
  182. </html>
  183. <?php
  184. exit;
  185. }
  186. $keys = $_GET['Keys'] ?? '';
  187. $keyscode = textEncode($keys);
  188. $ord = $_GET['Ord'] ?? '';
  189. $page = $_GET['Page'] ?? '';
  190. $query = "SELECT id,em_user,em_code,em_role,login_forbidden FROM employee
  191. WHERE em_user LIKE '%$keyscode%' OR em_code LIKE '%$keyscode%'
  192. ORDER BY Id DESC";
  193. $result = $conn->query($query);
  194. $keys = urlencode($keys);
  195. $ord = urlencode($ord);
  196. $hrefstr = "?keys=$keys";
  197. ?>
  198. <form id="form1" method="post" action="?act=postchk&Keys=<?php echo $keys; ?>&Ord=<?php echo $ord; ?>&Page=<?php echo $page; ?>" onSubmit="return false">
  199. <table width="100%" border="0" cellpadding="3" cellspacing="1" class="table1">
  200. <thead>
  201. <tr>
  202. <th width="4%"><input type="checkbox" name="chkall" id="chkall" onClick="chkboxall(this,'chkbox')" /></th>
  203. <th width="6%">序号</th>
  204. <th>姓名</th>
  205. <th>工号</th>
  206. <th>角色</th>
  207. <th>状态</th>
  208. <th>操作</th>
  209. </tr>
  210. </thead>
  211. <tbody>
  212. <?php
  213. if($result->num_rows > 0) {
  214. $pageSize = 13;
  215. $totalRows = $result->num_rows;
  216. $totalPages = ceil($totalRows / $pageSize);
  217. if($page == '') $page = 1;
  218. if($page == 'end') $page = $totalPages;
  219. if(!is_numeric($page) || $page < 1) $page = 1;
  220. $page = (int)$page;
  221. if($page > $totalPages) $page = $totalPages;
  222. $offset = ($page - 1) * $pageSize;
  223. $query .= " LIMIT $offset, $pageSize";
  224. $result = $conn->query($query);
  225. $tempNum = $offset;
  226. while($row = $result->fetch_assoc()) {
  227. $tempNum++;
  228. ?>
  229. <tr onMouseOver="this.style.background='#F7FCFF'" onMouseOut="this.style.background='#FFFFFF'">
  230. <td align="center"><input type="checkbox" name="chkbox[]" value="<?php echo $row['id']; ?>" /></td>
  231. <td align="center"><?php echo $tempNum; ?></td>
  232. <td align="center"><?php echo $row['em_user']; ?></td>
  233. <td align="center"><?php echo $row['em_code']; ?></td>
  234. <td align="center"><?php echo $row['em_role'] == 0 ? '组长' : '组员'; ?></td>
  235. <td align="center"><?php echo $row['login_forbidden'] == 1 ? '<span style="color:red">禁止登录</span>' : '<span style="color:green">允许登录</span>'; ?></td>
  236. <th><a class="ico_edit" href="?act=edit&Keys=<?php echo $keys; ?>&Ord=<?php echo $ord; ?>&Page=<?php echo $page; ?>&id=<?php echo $row['id']; ?>">修改</a></th>
  237. </tr>
  238. <?php
  239. }
  240. } else {
  241. if($keys == '') {
  242. echo '<tr><td align="center" colspan="6">Sorry,当前暂无信息</td></tr>';
  243. } else {
  244. echo '<tr><td align="center" colspan="6"><a href="?">Sorry,没有找到"'.$keyscode.'"相关的信息,点击返回</a></td></tr>';
  245. }
  246. }
  247. ?>
  248. </tbody>
  249. <tfoot>
  250. <tr>
  251. <td colspan="6">
  252. <div class="showpagebox">
  253. <?php
  254. if($totalPages > 1) {
  255. $pageName = "?Keys=$keys&Ord=$ord&";
  256. $pageLen = 3;
  257. if($page > 1) {
  258. echo "<a href=\"{$pageName}Page=1\">首页</a>";
  259. echo "<a href=\"{$pageName}Page=".($page-1)."\">上一页</a>";
  260. }
  261. if($pageLen * 2 + 1 >= $totalPages) {
  262. $startPage = 1;
  263. $endPage = $totalPages;
  264. } else {
  265. if($page <= $pageLen + 1) {
  266. $startPage = 1;
  267. $endPage = $pageLen * 2 + 1;
  268. } else {
  269. $startPage = $page - $pageLen;
  270. $endPage = $page + $pageLen;
  271. }
  272. if($page + $pageLen > $totalPages) {
  273. $startPage = $totalPages - $pageLen * 2;
  274. $endPage = $totalPages;
  275. }
  276. }
  277. for($i = $startPage; $i <= $endPage; $i++) {
  278. if($i == $page) {
  279. echo "<a class=\"current\">$i</a>";
  280. } else {
  281. echo "<a href=\"{$pageName}Page=$i\">$i</a>";
  282. }
  283. }
  284. if($page < $totalPages) {
  285. if($totalPages - $page > $pageLen) {
  286. echo "<a href=\"{$pageName}Page=$totalPages\">...$totalPages</a>";
  287. }
  288. echo "<a href=\"{$pageName}Page=".($page+1)."\">下一页</a>";
  289. echo "<a href=\"{$pageName}Page=$totalPages\">尾页</a>";
  290. }
  291. echo "<input type=\"text\" id=\"Pagego\" value=\"$page\" onFocus=\"if(this.value == '$page'){this.value='';}\" onBlur=\"if(this.value == ''){this.value='$page';}\" onKeyUp=\"this.value=this.value.replace(/\D/g,'')\" onKeyDown=\"if(event.keyCode==13){location.href='{$pageName}Page='+document.getElementById('Pagego').value}\" />";
  292. }
  293. ?>
  294. </div>
  295. <div class="searchbox">
  296. <input type="text" id="keys" value="<?php echo $keyscode == '' ? '请输入搜索关键词' : $keyscode; ?>"
  297. onFocus="if(this.value == '<?php echo $keyscode == '' ? '请输入搜索关键词' : $keyscode; ?>'){this.value='';}"
  298. onBlur="if(this.value == ''){this.value='<?php echo $keyscode == '' ? '请输入搜索关键词' : $keyscode; ?>';}"
  299. onKeyDown="if(event.keyCode==13){location.href='?Keys='+encodeURIComponent(document.getElementById('keys').value)}" />
  300. <input type="button" id="searchgo" value="go" onClick="location.href='?Keys='+encodeURIComponent(document.getElementById('keys').value)" />
  301. </div>
  302. <div class="postchkbox">
  303. <select id="chkact" name="chkact">
  304. <option value="1">显示</option>
  305. <option value="0">隐藏</option>
  306. <option value="-1">删除</option>
  307. </select>
  308. <input type="button" value="执行" onClick="postchk_new(1)" class="btn1" />
  309. <input type="button" value="新增" onClick="location.href='?act=add'" class="btn1" />
  310. </div>
  311. </td>
  312. </tr>
  313. </tfoot>
  314. </table>
  315. </form>
  316. </div>
  317. </body>
  318. </html>