employee.php 15 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345
  1. <?php
  2. include "conn.php";
  3. checkLogin("信息管理");
  4. $act = $_GET['act'] ?? '';
  5. // Handle all actions that might need header redirects first
  6. if($act == "save") {
  7. $isEdit = false;
  8. $id = $_POST['id'] ?? '';
  9. if($id != '' && is_numeric($id)) {
  10. $isEdit = true;
  11. }
  12. $em_user = textEncode($_POST['em_user']);
  13. $em_password = textEncode($_POST['em_password']);
  14. $re_password = textEncode($_POST['re_password']);
  15. $em_role = $_POST['em_role'];
  16. $em_code = textEncode($_POST['em_code']);
  17. $em_email = textEncode($_POST['em_email']);
  18. $em_tel = textEncode($_POST['em_tel']);
  19. $em_permission_role_id = $_POST['em_permission_role_id'];
  20. $login_forbidden = isset($_POST['login_forbidden']) ? 1 : 0;
  21. $nullPwd = false;
  22. if(empty($em_password)) {
  23. $nullPwd = true;
  24. }
  25. if($em_password != $re_password) {
  26. echo "<script>alert('两次密码输入不一致');history.back();</script>";
  27. exit;
  28. }
  29. if($isEdit) {
  30. $query = "SELECT * FROM employee WHERE id=$id";
  31. $result = $conn->query($query);
  32. if($result->num_rows > 0) {
  33. $password_sql = $nullPwd ? "" : ",em_password='".md5($em_password)."'";
  34. $sql = "UPDATE employee SET em_user='$em_user'$password_sql,em_role=$em_role,
  35. em_code='$em_code',em_email='$em_email',em_tel='$em_tel',em_permission_role_id=$em_permission_role_id,
  36. login_forbidden=$login_forbidden WHERE id=$id";
  37. $conn->query($sql);
  38. }
  39. $page = $_GET['Page'] ?? '';
  40. $keys = urlencode($_GET['Keys'] ?? '');
  41. $ord = urlencode($_GET['Ord'] ?? '');
  42. header("Location: ?keys=$keys&Ord=$ord&Page=$page");
  43. exit;
  44. } else {
  45. if($nullPwd) {
  46. $em_password = "MTB".$em_code;
  47. }
  48. $sql = "INSERT INTO employee(em_user,em_password,em_role,em_code,em_email,em_tel,em_permission_role_id,login_forbidden)
  49. VALUES('$em_user','".md5($em_password)."',$em_role,'$em_code','$em_email','$em_tel',$em_permission_role_id,$login_forbidden)";
  50. $conn->query($sql);
  51. header("Location: ?");
  52. exit;
  53. }
  54. }
  55. if($act == "postchk") {
  56. $keys = urlencode($_GET['Keys'] ?? '');
  57. $ord = urlencode($_GET['Ord'] ?? '');
  58. $page = $_GET['Page'] ?? '';
  59. $chkact = $_POST['chkact'] ?? '';
  60. if(isset($_POST['chkbox']) && is_array($_POST['chkbox'])) {
  61. $sqlStr = "DELETE FROM employee WHERE id IN (" . implode(',', $_POST['chkbox']) . ")";
  62. $conn->query($sqlStr);
  63. }
  64. header("Location: ?Keys=$keys&Ord=$ord&Page=$page");
  65. exit;
  66. }
  67. // Now start HTML output
  68. ?>
  69. <!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.0 Transitional//EN" "http://www.w3.org/TR/xhtml1/DTD/xhtml1-transitional.dtd">
  70. <html xmlns="http://www.w3.org/1999/xhtml">
  71. <head>
  72. <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
  73. <title>管理区域</title>
  74. <link rel="stylesheet" href="css/common.css" type="text/css" />
  75. <script language="javascript" src="js/jquery-1.7.2.min.js"></script>
  76. <script type="text/javascript" src="js/js.js"></script>
  77. <script type="text/javascript" src="xheditor-1.1.9/xheditor-1.1.9-zh-cn.min.js"></script>
  78. </head>
  79. <body>
  80. <div id="man_zone">
  81. <?php
  82. if($act == "add" || $act == "edit") {
  83. $id = $_GET['id'] ?? '';
  84. $isEdit = false;
  85. if($id != '' && is_numeric($id)) {
  86. $isEdit = true;
  87. }
  88. if($isEdit) {
  89. $query = "SELECT * FROM employee WHERE id=$id";
  90. $result = $conn->query($query);
  91. if($result->num_rows > 0) {
  92. $row = $result->fetch_assoc();
  93. $em_user = textUncode($row['em_user']);
  94. $em_role = $row['em_role'];
  95. $em_code = textUncode($row['em_code']);
  96. $em_email = textUncode($row['em_email']);
  97. $em_tel = textUncode($row['em_tel']);
  98. $em_permission_role_id = $row['em_permission_role_id'];
  99. $login_forbidden = $row['login_forbidden'] ?? 0;
  100. } else {
  101. $isEdit = false;
  102. }
  103. }
  104. $page = $_GET['Page'] ?? '';
  105. $keys = urlencode($_GET['Keys'] ?? '');
  106. $ord = urlencode($_GET['Ord'] ?? '');
  107. $hrefstr = "?keys=$keys&Ord=$ord&Page=$page";
  108. ?>
  109. <form name="form1" method="post" action="<?php echo $hrefstr; ?>&act=save" onSubmit="return subform2();">
  110. <table width="100%" border="0" cellpadding="3" cellspacing="1" class="table1">
  111. <tbody>
  112. <tr>
  113. <th width="8%">用户名</th>
  114. <td><input type="text" id="em_user" name="em_user" value="<?php echo $em_user ?? ''; ?>" required class="txt-short" />
  115. <input type="hidden" name="id" value="<?php echo $id; ?>" /></td>
  116. </tr>
  117. <tr>
  118. <th width="8%">密码</th>
  119. <td><input type="password" id="em_password" name="em_password" value="" class="txt-short"/></td>
  120. </tr>
  121. <tr>
  122. <th width="8%">重复密码</th>
  123. <td><input type="password" id="re_password" name="re_password" value="" class="txt-short"/></td>
  124. </tr>
  125. <tr>
  126. <th width="8%">工号</th>
  127. <td><input type="text" id="em_code" name="em_code" value="<?php echo $em_code ?? ''; ?>" class="txt1" /></td>
  128. </tr>
  129. <tr>
  130. <th width="8%">该用户上级</th>
  131. <td><select name="em_role">
  132. <option value="0">无</option>
  133. <?php
  134. $query = "SELECT id,em_user FROM employee WHERE em_role=0";
  135. $result = $conn->query($query);
  136. while($row = $result->fetch_assoc()) {
  137. $selected = ($row['id'] == ($em_role ?? '')) ? ' selected="selected"' : '';
  138. echo "<option value=\"{$row['id']}\"$selected>{$row['em_user']}</option>";
  139. }
  140. ?>
  141. </select>
  142. </td>
  143. </tr>
  144. <tr>
  145. <th width="8%">权限角色</th>
  146. <td>
  147. <select name="em_permission_role_id">
  148. <option value="0" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 0) ? 'selected' : ''; ?>>0 * 普通</option>
  149. <option value="2" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 2) ? 'selected' : ''; ?>>2 * 组长</option>
  150. <option value="3" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 3) ? 'selected' : ''; ?>>3 * 组员</option>
  151. <option value="4" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 4) ? 'selected' : ''; ?>>4 * 分公司</option>
  152. <option value="1" <?php echo (isset($em_permission_role_id) && $em_permission_role_id == 1) ? 'selected' : ''; ?>>1 * 管理员</option>
  153. </select>
  154. </td>
  155. </tr>
  156. <tr>
  157. <th width="8%">邮箱</th>
  158. <td><input type="text" id="em_email" name="em_email" value="<?php echo $em_email ?? ''; ?>" class="txt1" /></td>
  159. </tr>
  160. <tr>
  161. <th width="8%">手机</th>
  162. <td><input type="text" id="em_tel" name="em_tel" value="<?php echo $em_tel ?? ''; ?>" class="txt1" /></td>
  163. </tr>
  164. <tr>
  165. <th width="8%">禁止登录</th>
  166. <td><input type="checkbox" id="login_forbidden" name="login_forbidden" value="1" <?php echo (isset($login_forbidden) && $login_forbidden == 1) ? 'checked' : ''; ?> /> 勾选表示禁止该用户登录</td>
  167. </tr>
  168. <tr>
  169. <th></th>
  170. <td>
  171. <input type="submit" name="save" id="save" value="确定" class="btn1" />
  172. <input type="reset" name="save" id="save" value="重置" class="btn1" />
  173. <input type="button" value="返回" class="btn1" onClick="location.href='<?php echo $hrefstr; ?>'" />
  174. </td>
  175. </tr>
  176. </tbody>
  177. </table>
  178. </form>
  179. </div>
  180. </body>
  181. </html>
  182. <?php
  183. exit;
  184. }
  185. $keys = $_GET['Keys'] ?? '';
  186. $keyscode = textEncode($keys);
  187. $ord = $_GET['Ord'] ?? '';
  188. $page = $_GET['Page'] ?? '';
  189. $query = "SELECT id,em_user,em_code,em_role,login_forbidden FROM employee
  190. WHERE em_user LIKE '%$keyscode%' OR em_code LIKE '%$keyscode%'
  191. ORDER BY Id DESC";
  192. $result = $conn->query($query);
  193. $keys = urlencode($keys);
  194. $ord = urlencode($ord);
  195. $hrefstr = "?keys=$keys";
  196. ?>
  197. <form id="form1" method="post" action="?act=postchk&Keys=<?php echo $keys; ?>&Ord=<?php echo $ord; ?>&Page=<?php echo $page; ?>" onSubmit="return false">
  198. <table width="100%" border="0" cellpadding="3" cellspacing="1" class="table1">
  199. <thead>
  200. <tr>
  201. <th width="4%"><input type="checkbox" name="chkall" id="chkall" onClick="chkboxall(this,'chkbox')" /></th>
  202. <th width="6%">序号</th>
  203. <th>姓名</th>
  204. <th>工号</th>
  205. <th>角色</th>
  206. <th>状态</th>
  207. <th>操作</th>
  208. </tr>
  209. </thead>
  210. <tbody>
  211. <?php
  212. if($result->num_rows > 0) {
  213. $pageSize = 13;
  214. $totalRows = $result->num_rows;
  215. $totalPages = ceil($totalRows / $pageSize);
  216. if($page == '') $page = 1;
  217. if($page == 'end') $page = $totalPages;
  218. if(!is_numeric($page) || $page < 1) $page = 1;
  219. $page = (int)$page;
  220. if($page > $totalPages) $page = $totalPages;
  221. $offset = ($page - 1) * $pageSize;
  222. $query .= " LIMIT $offset, $pageSize";
  223. $result = $conn->query($query);
  224. $tempNum = $offset;
  225. while($row = $result->fetch_assoc()) {
  226. $tempNum++;
  227. ?>
  228. <tr onMouseOver="this.style.background='#F7FCFF'" onMouseOut="this.style.background='#FFFFFF'">
  229. <td align="center"><input type="checkbox" name="chkbox[]" value="<?php echo $row['id']; ?>" /></td>
  230. <td align="center"><?php echo $tempNum; ?></td>
  231. <td align="center"><?php echo $row['em_user']; ?></td>
  232. <td align="center"><?php echo $row['em_code']; ?></td>
  233. <td align="center"><?php echo $row['em_role'] == 0 ? '组长' : '组员'; ?></td>
  234. <td align="center"><?php echo $row['login_forbidden'] == 1 ? '<span style="color:red">禁止登录</span>' : '<span style="color:green">允许登录</span>'; ?></td>
  235. <th><a class="ico_edit" href="?act=edit&Keys=<?php echo $keys; ?>&Ord=<?php echo $ord; ?>&Page=<?php echo $page; ?>&id=<?php echo $row['id']; ?>">修改</a></th>
  236. </tr>
  237. <?php
  238. }
  239. } else {
  240. if($keys == '') {
  241. echo '<tr><td align="center" colspan="6">Sorry,当前暂无信息</td></tr>';
  242. } else {
  243. echo '<tr><td align="center" colspan="6"><a href="?">Sorry,没有找到"'.$keyscode.'"相关的信息,点击返回</a></td></tr>';
  244. }
  245. }
  246. ?>
  247. </tbody>
  248. <tfoot>
  249. <tr>
  250. <td colspan="6">
  251. <div class="showpagebox">
  252. <?php
  253. if($totalPages > 1) {
  254. $pageName = "?Keys=$keys&Ord=$ord&";
  255. $pageLen = 3;
  256. if($page > 1) {
  257. echo "<a href=\"{$pageName}Page=1\">首页</a>";
  258. echo "<a href=\"{$pageName}Page=".($page-1)."\">上一页</a>";
  259. }
  260. if($pageLen * 2 + 1 >= $totalPages) {
  261. $startPage = 1;
  262. $endPage = $totalPages;
  263. } else {
  264. if($page <= $pageLen + 1) {
  265. $startPage = 1;
  266. $endPage = $pageLen * 2 + 1;
  267. } else {
  268. $startPage = $page - $pageLen;
  269. $endPage = $page + $pageLen;
  270. }
  271. if($page + $pageLen > $totalPages) {
  272. $startPage = $totalPages - $pageLen * 2;
  273. $endPage = $totalPages;
  274. }
  275. }
  276. for($i = $startPage; $i <= $endPage; $i++) {
  277. if($i == $page) {
  278. echo "<a class=\"current\">$i</a>";
  279. } else {
  280. echo "<a href=\"{$pageName}Page=$i\">$i</a>";
  281. }
  282. }
  283. if($page < $totalPages) {
  284. if($totalPages - $page > $pageLen) {
  285. echo "<a href=\"{$pageName}Page=$totalPages\">...$totalPages</a>";
  286. }
  287. echo "<a href=\"{$pageName}Page=".($page+1)."\">下一页</a>";
  288. echo "<a href=\"{$pageName}Page=$totalPages\">尾页</a>";
  289. }
  290. echo "<input type=\"text\" id=\"Pagego\" value=\"$page\" onFocus=\"if(this.value == '$page'){this.value='';}\" onBlur=\"if(this.value == ''){this.value='$page';}\" onKeyUp=\"this.value=this.value.replace(/\D/g,'')\" onKeyDown=\"if(event.keyCode==13){location.href='{$pageName}Page='+document.getElementById('Pagego').value}\" />";
  291. }
  292. ?>
  293. </div>
  294. <div class="searchbox">
  295. <input type="text" id="keys" value="<?php echo $keyscode == '' ? '请输入搜索关键词' : $keyscode; ?>"
  296. onFocus="if(this.value == '<?php echo $keyscode == '' ? '请输入搜索关键词' : $keyscode; ?>'){this.value='';}"
  297. onBlur="if(this.value == ''){this.value='<?php echo $keyscode == '' ? '请输入搜索关键词' : $keyscode; ?>';}"
  298. onKeyDown="if(event.keyCode==13){location.href='?Keys='+encodeURIComponent(document.getElementById('keys').value)}" />
  299. <input type="button" id="searchgo" value="go" onClick="location.href='?Keys='+encodeURIComponent(document.getElementById('keys').value)" />
  300. </div>
  301. <div class="postchkbox">
  302. <select id="chkact" name="chkact">
  303. <option value="1">显示</option>
  304. <option value="0">隐藏</option>
  305. <option value="-1">删除</option>
  306. </select>
  307. <input type="button" value="执行" onClick="postchk_new(1)" class="btn1" />
  308. <input type="button" value="新增" onClick="location.href='?act=add'" class="btn1" />
  309. </div>
  310. </td>
  311. </tr>
  312. </tfoot>
  313. </table>
  314. </form>
  315. </div>
  316. </body>
  317. </html>