Commit | Line | Data |
---|---|---|
a2f7a729 JB |
1 | <?php |
2 | $form_flight_id = filter_input(INPUT_POST, "flight_id", FILTER_SANITIZE_STRING); | |
3 | $form_class_name = filter_input(INPUT_POST, "class_name", FILTER_SANITIZE_STRING); | |
4 | $form_modify = filter_input(INPUT_POST, "modify", FILTER_SANITIZE_STRING); | |
5 | $form_cancel = filter_input(INPUT_POST, "cancel", FILTER_SANITIZE_STRING); | |
6 | ||
7 | if (isset($form_modify) && isset($form_flight_id) && isset($form_class_name)) { | |
8 | echo $form_modify; | |
9 | } elseif (isset($form_cancel) && isset($form_flight_id) && isset($form_class_name)) { | |
10 | //FIXME: Add a confirmation step | |
11 | $client_id = get_client_id($_SESSION['email']); | |
12 | global $connection; | |
13 | $sql_pquery = "delete from RESERVATIONS | |
14 | where NumCl = ? and NumVol = ? and Classe = ?"; | |
15 | $connection->prepare_query($sql_pquery); | |
16 | $connection->prepared_query_bind_param("iss", array($client_id, $form_flight_id, $form_class_name)); | |
17 | $connection->run_prepared_query(); | |
18 | $connection->close_prepared_query(); | |
19 | echo "Votre réservation a été annulée. <br>"; | |
20 | redirect("index.php?page=reservations", 3); | |
21 | } else { | |
22 | echo "Make an error message. <br>"; | |
23 | } | |
24 | ||
25 | ?> |