Rhydd Activity Tracking System Add an Activity Leader Permit |
<%=(user.Fields.Item("uFullname").Value)%>(<%=(user.Fields.Item("uPrefName").Value)%>)
%@LANGUAGE="VBSCRIPT" CODEPAGE="65001"%> <% ' *** Restrict Access To Page: Grant or deny access to this page MM_authorizedUsers="userEdit,webmaster" MM_authFailedURL="/Bookings/Secure/sorryAccess.asp" MM_grantAccess=false If Session("MM_Username") <> "" Then If (false Or CStr(Session("MM_UserAuthorization"))="") Or _ (InStr(1,MM_authorizedUsers,Session("MM_UserAuthorization"))>=1) Then MM_grantAccess = true End If End If If Not MM_grantAccess Then MM_qsChar = "?" If (InStr(1,MM_authFailedURL,"?") >= 1) Then MM_qsChar = "&" MM_referrer = Request.ServerVariables("URL") if (Len(Request.QueryString()) > 0) Then MM_referrer = MM_referrer & "?" & Request.QueryString() MM_authFailedURL = MM_authFailedURL & MM_qsChar & "accessdenied=" & Server.URLEncode(MM_referrer) Response.Redirect(MM_authFailedURL) End If %> <% Dim MM_editAction MM_editAction = CStr(Request.ServerVariables("SCRIPT_NAME")) If (Request.QueryString <> "") Then MM_editAction = MM_editAction & "?" & Server.HTMLEncode(Request.QueryString) End If ' boolean to abort record edit Dim MM_abortEdit MM_abortEdit = false %> <% ' IIf implementation Function MM_IIf(condition, ifTrue, ifFalse) If condition = "" Then MM_IIf = ifFalse Else MM_IIf = ifTrue End If End Function %> <% If (CStr(Request("MM_insert")) = "form1") Then If (Not MM_abortEdit) Then ' execute the insert Dim MM_editCmd Set MM_editCmd = Server.CreateObject ("ADODB.Command") MM_editCmd.ActiveConnection = MM_trevs_STRING MM_editCmd.CommandText = "INSERT INTO actLrdQual (IDunit, ldrAccess, qualDetail, qualRestrict, qualStart, IDusers, qualEnd) VALUES (?, ?, ?, ?, ?, ?, ?)" MM_editCmd.Prepared = true MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param1", 5, 1, -1, MM_IIF(Request.Form("select"), Request.Form("select"), null)) ' adDouble MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param2", 202, 1, 50, Request.Form("ldrAccess")) ' adVarWChar MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param3", 202, 1, 255, Request.Form("qualDetail")) ' adVarWChar MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param4", 202, 1, 255, Request.Form("qualRestrict")) ' adVarWChar MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param5", 135, 1, -1, MM_IIF(Request.Form("TB_Start"), Request.Form("TB_Start"), null)) ' adDBTimeStamp MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param6", 5, 1, -1, MM_IIF(Request.Form("IDusers"), Request.Form("IDusers"), null)) ' adDouble MM_editCmd.Parameters.Append MM_editCmd.CreateParameter("param7", 135, 1, -1, MM_IIF(Request.Form("TB_End"), Request.Form("TB_End"), null)) ' adDBTimeStamp MM_editCmd.Execute MM_editCmd.ActiveConnection.Close ' append the query string to the redirect URL Dim MM_editRedirectUrl MM_editRedirectUrl = "/Bookings/LdrManage/managePermits.asp" If (Request.QueryString <> "") Then If (InStr(1, MM_editRedirectUrl, "?", vbTextCompare) = 0) Then MM_editRedirectUrl = MM_editRedirectUrl & "?" & Request.QueryString Else MM_editRedirectUrl = MM_editRedirectUrl & "&" & Request.QueryString End If End If Response.Redirect(MM_editRedirectUrl) End If End If %> <% Dim units__MMColParam units__MMColParam = "Activity" If (Request("MM_EmptyValue") <> "") Then units__MMColParam = Request("MM_EmptyValue") End If %> <% Dim units Dim units_cmd Dim units_numRows Set units_cmd = Server.CreateObject ("ADODB.Command") units_cmd.ActiveConnection = MM_trevs_STRING units_cmd.CommandText = "SELECT * FROM Units WHERE UType = ?" units_cmd.Prepared = true units_cmd.Parameters.Append units_cmd.CreateParameter("param1", 200, 1, 63, units__MMColParam) ' adVarChar Set units = units_cmd.Execute units_numRows = 0 %> <% Dim user__MMColParam user__MMColParam = "0" If (Request.QueryString("IDusers") <> "") Then user__MMColParam = Request.QueryString("IDusers") End If %> <% Dim user Dim user_cmd Dim user_numRows Set user_cmd = Server.CreateObject ("ADODB.Command") user_cmd.ActiveConnection = MM_trevs_STRING user_cmd.CommandText = "SELECT * FROM users WHERE IDusers = ?" user_cmd.Prepared = true user_cmd.Parameters.Append user_cmd.CreateParameter("param1", 5, 1, -1, user__MMColParam) ' adDouble Set user = user_cmd.Execute user_numRows = 0 %>