-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathupdate_status.php
51 lines (46 loc) · 1.72 KB
/
update_status.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
<?php
include("session_check.php");
$orderID = $_POST['orderID'];
$orderStatus = $_POST['status'];
if ($_SESSION['role'] == 2) {
include("conn.php");
$RUserID = $_SESSION['userid'];
$sql = "SELECT OrderID FROM COrderDetails WHERE OrderID = '$orderID' AND OStatus = $orderStatus AND RUserID = '$RUserID'";
$sql = $con->query($sql);
$exist = mysqli_fetch_array($sql);
if ($exist['OrderID'] != "") {
if ($orderStatus == 0) {
$orderStatus++;
$sql = $con->prepare("UPDATE COrderDetails SET OStatus = ? WHERE OrderID = ?");
$sql->bind_param("is", $orderStatus, $orderID);
$sql->execute();
echo "Updated status. Assigning delivery person.";
} elseif ($orderStatus == 1) {
echo "Status of order already updated.";
}
} else {
echo "Order doesn't exist.";
}
} elseif ($_SESSION['role'] == 3) {
include("conn.php");
$DUserID = $_SESSION['userid'];
$sql = "SELECT OrderID FROM COrderDetails WHERE OrderID = '$orderID' AND OStatus = $orderStatus AND DUserID = '$DUserID'";
$sql = $con->query($sql);
$exist = mysqli_fetch_array($sql);
if ($exist['OrderID'] != "") {
if ($orderStatus == 3) {
$orderStatus++;
$sql = $con->prepare("UPDATE COrderDetails SET OStatus = ? WHERE OrderID = ?");
$sql->bind_param("is", $orderStatus, $orderID);
$sql->execute();
echo "Order delivery complete.";
} elseif ($orderStatus == 4) {
echo "Order already completed.";
}
} else {
echo "Order doesn't exist.";
}
} else {
echo "Illegal action.";
}
mysqli_close($con);