forked from science-ation/science-ation
373 lines
15 KiB
PHP
373 lines
15 KiB
PHP
<?
|
|
/*
|
|
This file is part of the 'Science Fair In A Box' project
|
|
SFIAB Website: http://www.sfiab.ca
|
|
|
|
Copyright (C) 2005-2006 Sci-Tech Ontario Inc <info@scitechontario.org>
|
|
Copyright (C) 2005-2006 James Grant <james@lightbox.org>
|
|
|
|
This program is free software; you can redistribute it and/or
|
|
modify it under the terms of the GNU General Public
|
|
License as published by the Free Software Foundation, version 2.
|
|
|
|
This program is distributed in the hope that it will be useful,
|
|
but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the GNU
|
|
General Public License for more details.
|
|
|
|
You should have received a copy of the GNU General Public License
|
|
along with this program; see the file COPYING. If not, write to
|
|
the Free Software Foundation, Inc., 59 Temple Place - Suite 330,
|
|
Boston, MA 02111-1307, USA.
|
|
*/
|
|
?>
|
|
<?
|
|
require("../common.inc.php");
|
|
auth_required("admin");
|
|
|
|
send_header("Student Editor");
|
|
echo "<a href=\"registration_list.php\"><< ".i18n("Back to Registration List")."</a><br />";
|
|
echo "<br />";
|
|
|
|
if($_POST['registration_id']) $registration_id=$_POST['registration_id'];
|
|
else if($_GET['registration_id']) $registration_id=$_GET['registration_id'];
|
|
|
|
|
|
//now do any data saves
|
|
|
|
if($_POST['action']=="save")
|
|
{
|
|
// {
|
|
$x=1;
|
|
while($_POST["num"][$x])
|
|
{
|
|
if($_POST['id'][$x]==0)
|
|
{
|
|
//if they use schoolpassword or singlepassword, then we need to set the school based on the school stored in the registration record. for anything else they can school the school on their own.
|
|
if($config['participant_registration_type']=="schoolpassword" || $config['participant_registration_type']=="invite")
|
|
{
|
|
$q=mysql_query("SELECT schools_id FROM registrations WHERE id='".$registration_id."' AND YEAR='".$config['FAIRYEAR']."'");
|
|
$r=mysql_fetch_object($q);
|
|
$schools_id=$r->schools_id;
|
|
|
|
$schoolvalue="'$schools_id', ";
|
|
}
|
|
else
|
|
{
|
|
$schoolvalue="'".mysql_escape_string(stripslashes($_POST['schools_id'][$x]))."', ";
|
|
}
|
|
//INSERT new record
|
|
$dob=$_POST['year'][$x]."-".$_POST['month'][$x]."-".$_POST['day'][$x];
|
|
mysql_query("INSERT INTO students (registrations_id,firstname,lastname,sex,email,address,city,province,postalcode,phone,dateofbirth,grade,schools_id,tshirt,medicalalert,foodreq,teachername,teacheremail,year) VALUES (".
|
|
"'".$registration_id."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['firstname'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['lastname'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['sex'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['email'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['address'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['city'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['province'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['postalcode'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['phone'][$x]))."', ".
|
|
"'$dob', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['grade'][$x]))."', ".
|
|
$schoolvalue.
|
|
"'".mysql_escape_string(stripslashes($_POST['tshirt'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['medicalalert'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['foodreq'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['teachername'][$x]))."', ".
|
|
"'".mysql_escape_string(stripslashes($_POST['teacheremail'][$x]))."', ".
|
|
"'".$config['FAIRYEAR']."')");
|
|
|
|
echo notice(i18n("%1 %2 successfully added",array($_POST['firstname'][$x],$_POST['lastname'][$x])));
|
|
|
|
}
|
|
else
|
|
{
|
|
|
|
//if they use schoolpassword or singlepassword, then we dont need to save teh schools_id because its already set when they inserted the record, and we dont allow them to change their school.
|
|
if(( $config['participant_registration_type']=="schoolpassword" || $config['participant_registration_type']=="invite") && !$_POST['schools_id'][$x])
|
|
{
|
|
$schoolquery="";
|
|
}
|
|
else
|
|
{
|
|
$schoolquery="schools_id='".mysql_escape_string(stripslashes($_POST['schools_id'][$x]))."', ";
|
|
}
|
|
|
|
|
|
//UPDATE existing record
|
|
$dob=$_POST['year'][$x]."-".$_POST['month'][$x]."-".$_POST['day'][$x];
|
|
mysql_query("UPDATE students SET ".
|
|
"firstname='".mysql_escape_string(stripslashes($_POST['firstname'][$x]))."', ".
|
|
"lastname='".mysql_escape_string(stripslashes($_POST['lastname'][$x]))."', ".
|
|
"sex='".mysql_escape_string(stripslashes($_POST['sex'][$x]))."', ".
|
|
"email='".mysql_escape_string(stripslashes($_POST['email'][$x]))."', ".
|
|
"address='".mysql_escape_string(stripslashes($_POST['address'][$x]))."', ".
|
|
"city='".mysql_escape_string(stripslashes($_POST['city'][$x]))."', ".
|
|
"province='".mysql_escape_string(stripslashes($_POST['province'][$x]))."', ".
|
|
"postalcode='".mysql_escape_string(stripslashes($_POST['postalcode'][$x]))."', ".
|
|
"phone='".mysql_escape_string(stripslashes($_POST['phone'][$x]))."', ".
|
|
"dateofbirth='$dob', ".
|
|
"grade='".mysql_escape_string(stripslashes($_POST['grade'][$x]))."', ".
|
|
$schoolquery.
|
|
"medicalalert='".mysql_escape_string(stripslashes($_POST['medicalalert'][$x]))."', ".
|
|
"foodreq='".mysql_escape_string(stripslashes($_POST['foodreq'][$x]))."', ".
|
|
"teachername='".mysql_escape_string(stripslashes($_POST['teachername'][$x]))."', ".
|
|
"teacheremail='".mysql_escape_string(stripslashes($_POST['teacheremail'][$x]))."', ".
|
|
"tshirt='".mysql_escape_string(stripslashes($_POST['tshirt'][$x]))."' ".
|
|
"WHERE id='".$_POST['id'][$x]."'");
|
|
echo notice(i18n("%1 %2 successfully updated",array($_POST['firstname'][$x],$_POST['lastname'][$x])));
|
|
|
|
}
|
|
$x++;
|
|
}
|
|
// }
|
|
}
|
|
|
|
if($_GET['action']=="removestudent")
|
|
{
|
|
// {
|
|
//first make sure this is one belonging to this registration id
|
|
$q=mysql_query("SELECT id FROM students WHERE id='".$_GET['removestudent']."' AND registrations_id='".$registration_id."'");
|
|
if(mysql_num_rows($q)==1)
|
|
{
|
|
mysql_query("DELETE FROM students WHERE id='".$_GET['removestudent']."' AND registrations_id='".$registration_id."'");
|
|
|
|
//now see if they have an emergency contact that also needs to be removed
|
|
|
|
$q=mysql_query("SELECT id FROM emergencycontact WHERE students_id='".$_GET['removestudent']."' AND registrations_id='".$registration_id."' AND year='".$config['FAIRYEAR']."'");
|
|
//no need to error message if this doesnt exist
|
|
if(mysql_num_rows($q)==1)
|
|
mysql_query("DELETE FROM emergencycontact WHERE students_id='".$_GET['removestudent']."' AND registrations_id='".$registration_id."' AND year='".$config['FAIRYEAR']."'");
|
|
|
|
echo notice(i18n("Student successfully removed"));
|
|
}
|
|
else
|
|
{
|
|
echo error(i18n("Invalid student to remove"));
|
|
}
|
|
// }
|
|
}
|
|
|
|
|
|
|
|
//now query and display
|
|
$q=mysql_query("SELECT * FROM students WHERE registrations_id='".$registration_id."' AND year='".$config['FAIRYEAR']."'");
|
|
|
|
$numfound=mysql_num_rows($q);
|
|
|
|
if($_GET['numstudents'])
|
|
$numtoshow=$_GET['numstudents'];
|
|
else
|
|
$numtoshow=$numfound;
|
|
|
|
|
|
echo "<form name=\"numstudentsform\" method=\"get\" action=\"student_editor.php\">";
|
|
echo "<input type=\"hidden\" name=\"registration_id\" value=\"$registration_id\">";
|
|
echo i18n("Number of students that worked on the project: ");
|
|
echo "<select name=\"numstudents\" onchange=\"document.forms.numstudentsform.submit()\">\n";
|
|
for($x=$config['minstudentsperproject'];$x<=$config['maxstudentsperproject'];$x++)
|
|
{
|
|
if($x<$numfound)
|
|
continue;
|
|
|
|
if($numtoshow==$x) $selected="selected=\"selected\""; else $selected="";
|
|
|
|
echo "<option $selected value=\"$x\">$x</option>\n";
|
|
}
|
|
echo "</select>";
|
|
echo "</form>";
|
|
|
|
echo "<form name=\"studentdata\" method=\"post\" action=\"student_editor.php\">";
|
|
echo "<input type=\"hidden\" name=\"action\" value=\"save\" />";
|
|
echo "<input type=\"hidden\" name=\"registration_id\" value=\"$registration_id\">";
|
|
for($x=1;$x<=$numtoshow;$x++)
|
|
{
|
|
$studentinfo=mysql_fetch_object($q);
|
|
echo "<h3>".i18n("Student %1 Details",array($x))."</h3>";
|
|
//if we have a valid student, set their ID, so we can UPDATE when we submit
|
|
//if there is no record for this student, then set the ID to 0, so we will INSERT when we submit
|
|
if($studentinfo->id) $id=$studentinfo->id; else $id=0;
|
|
|
|
//true should work here, it just has to be set to _something_ for it to work.
|
|
echo "<input type=\"hidden\" name=\"num[$x]\" value=\"true\" />";
|
|
|
|
//save the ID, or 0 if it doesnt exist
|
|
echo "<input type=\"hidden\" name=\"id[$x]\" value=\"$id\" />";
|
|
echo "<table>";
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("First Name")."</td><td><input type=\"text\" name=\"firstname[$x]\" value=\"$studentinfo->firstname\" />".REQUIREDFIELD."</td>\n";
|
|
echo " <td>".i18n("Last Name")."</td><td><input type=\"text\" name=\"lastname[$x]\" value=\"$studentinfo->lastname\" />".REQUIREDFIELD."</td>\n";
|
|
echo "</tr>\n";
|
|
|
|
if($config['participant_student_personal']=="yes")
|
|
{
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("Gender")."</td><td>";
|
|
echo "<select name=\"sex[$x]\">";
|
|
echo "<option value=\"\">".i18n("Select")."</option>\n";
|
|
if($studentinfo->sex=="male") $sel="selected=\"selected\""; else $sel="";
|
|
echo "<option $sel value=\"male\">".i18n("Male")."</option>\n";
|
|
if($studentinfo->sex=="female") $sel="selected=\"selected\""; else $sel="";
|
|
echo "<option $sel value=\"female\">".i18n("Female")."</option>\n";
|
|
echo "</select>".REQUIREDFIELD;
|
|
}
|
|
echo "</td>\n";
|
|
echo " <td></td><td></td>\n";
|
|
echo "</tr>\n";
|
|
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("Email Address")."</td><td><input type=\"text\" name=\"email[$x]\" value=\"$studentinfo->email\" />".REQUIREDFIELD."</td>\n";
|
|
|
|
if($config['participant_student_personal']=="yes")
|
|
{
|
|
echo " <td>".i18n("City")."</td><td><input type=\"text\" name=\"city[$x]\" value=\"$studentinfo->city\" />".REQUIREDFIELD."</td>\n";
|
|
}
|
|
else
|
|
{
|
|
echo "<td></td>";
|
|
}
|
|
|
|
echo "</tr>\n";
|
|
|
|
if($config['participant_student_personal']=="yes")
|
|
{
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("Address")."</td><td><input type=\"text\" name=\"address[$x]\" value=\"$studentinfo->address\" />".REQUIREDFIELD."</td>\n";
|
|
echo " <td>".i18n("Province")."</td><td>";
|
|
emit_province_selector("province[$x]",$studentinfo->province);
|
|
echo REQUIREDFIELD."</td>\n";
|
|
echo "</tr>\n";
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("Postal Code")."</td><td><input type=\"text\" name=\"postalcode[$x]\" value=\"$studentinfo->postalcode\" />".REQUIREDFIELD."</td>\n";
|
|
echo " <td>".i18n("Phone")."</td><td><input type=\"text\" name=\"phone[$x]\" value=\"$studentinfo->phone\" />".REQUIREDFIELD."</td>\n";
|
|
echo "</tr>\n";
|
|
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("Date of Birth")."</td><td>\n";
|
|
list($year,$month,$day)=split("-",$studentinfo->dateofbirth);
|
|
echo "<table><tr><td>";
|
|
emit_day_selector("day[$x]",$day);
|
|
echo "</td><td>\n";
|
|
emit_month_selector("month[$x]",$month);
|
|
echo "</td><td>\n";
|
|
|
|
//the year selector should be based on the min/max grades possible
|
|
//assume min age of 3 for grade=0 (kindergarden)
|
|
//assume max age of 18 for grade=12
|
|
$minyearselect=$config['FAIRYEAR'] - 6 - $config['maxgrade'];
|
|
$maxyearselect=$config['FAIRYEAR'] - 3 - $config['mingrade'];
|
|
emit_year_selector("year[$x]",$year,$minyearselect,$maxyearselect);
|
|
echo "</td><td>".REQUIREDFIELD."</td></tr></table>\n";
|
|
echo "</td>\n";
|
|
}
|
|
else
|
|
echo "<tr>";
|
|
|
|
echo " <td>".i18n("Grade")."</td><td colspan=\"3\">\n";
|
|
|
|
echo "<select name=\"grade[$x]\">\n";
|
|
echo "<option value=\"\">".i18n("Grade")."</option>\n";
|
|
for($gr=$config['mingrade'];$gr<=$config['maxgrade'];$gr++)
|
|
{
|
|
if($studentinfo->grade==$gr) $sel="selected=\"selected\""; else $sel="";
|
|
|
|
echo "<option $sel value=\"$gr\">$gr</option>\n";
|
|
}
|
|
|
|
echo "</select>\n";
|
|
echo REQUIREDFIELD."</td>";
|
|
echo "</tr>";
|
|
|
|
if($config['participant_student_tshirt']=="yes")
|
|
{
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("T-Shirt Size")."</td><td>";
|
|
echo " <select name=\"tshirt[$x]\">\n";
|
|
if($studentinfo->tshirt=="none") $sel="selected=\"selected\""; else $sel="";
|
|
echo " <option $sel value=\"none\">".i18n("None")."</option>";
|
|
if($studentinfo->tshirt=="small") $sel="selected=\"selected\""; else $sel="";
|
|
echo " <option $sel value=\"small\">".i18n("Small")."</option>";
|
|
if($studentinfo->tshirt=="medium") $sel="selected=\"selected\""; else $sel="";
|
|
echo " <option $sel value=\"medium\">".i18n("Medium")."</option>";
|
|
if($studentinfo->tshirt=="large") $sel="selected=\"selected\""; else $sel="";
|
|
echo " <option $sel value=\"large\">".i18n("Large")."</option>";
|
|
if($studentinfo->tshirt=="xlarge") $sel="selected=\"selected\""; else $sel="";
|
|
echo " <option $sel value=\"xlarge\">".i18n("X-Large")."</option>";
|
|
echo " </select>";
|
|
echo "</td>\n";
|
|
echo "</tr>";
|
|
}
|
|
|
|
if($config['participant_student_personal']=="yes")
|
|
{
|
|
echo "<tr>\n";
|
|
echo "<td>".i18n("Medical Alert Info")."</td><td colspan=\"3\">";
|
|
echo "<input name=\"medicalalert[$x]\" type=\"text\" size=\"50\" value=\"$studentinfo->medicalalert\" />";
|
|
echo "</td>";
|
|
echo "</tr>\n";
|
|
}
|
|
|
|
if($config['participant_student_foodreq']=="yes")
|
|
{
|
|
echo "<tr>\n";
|
|
echo "<td>".i18n("Special Food Requirements")."</td><td colspan=\"3\">";
|
|
echo "<input name=\"foodreq[$x]\" type=\"text\" size=\"50\" value=\"$studentinfo->foodreq\" />";
|
|
echo "</td>";
|
|
echo "</tr>\n";
|
|
}
|
|
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("School")."</td><td colspan=\"3\">";
|
|
if( $config['participant_registration_type']=="open" || $config['participant_registration_type']=="singlepassword" || ($studentinfo && !$studentinfo->schools_id) )
|
|
{
|
|
$schoolq=mysql_query("SELECT id,school FROM schools WHERE year='".$config['FAIRYEAR']."' ORDER by school");
|
|
echo "<select name=\"schools_id[$x]\">\n";
|
|
echo "<option value=\"\">".i18n("Choose School")."</option>\n";
|
|
while($r=mysql_fetch_object($schoolq))
|
|
{
|
|
if($studentinfo->schools_id==$r->id) $sel="selected=\"selected\""; else $sel="";
|
|
echo "<option $sel value=\"$r->id\">".htmlspecialchars($r->school)."</option>\n";
|
|
|
|
}
|
|
echo "</select>".REQUIREDFIELD;
|
|
}
|
|
else
|
|
{
|
|
$schoolq=mysql_query("SELECT id,school FROM schools WHERE year='".$config['FAIRYEAR']."' AND id='$studentinfo->schools_id'");
|
|
$r=mysql_fetch_object($schoolq);
|
|
echo $r->school;
|
|
}
|
|
|
|
echo "</td>\n";
|
|
echo "</tr>\n";
|
|
|
|
echo "<tr>\n";
|
|
echo " <td>".i18n("Teacher Name")."</td><td><input type=\"text\" name=\"teachername[$x]\" value=\"$studentinfo->teachername\" /></td>\n";
|
|
echo " <td>".i18n("Teacher Email")."</td><td><input type=\"text\" name=\"teacheremail[$x]\" value=\"$studentinfo->teacheremail\" /></td>\n";
|
|
echo "</tr>\n";
|
|
|
|
|
|
|
|
|
|
echo "</table>";
|
|
|
|
if($numfound>$config['minstudentsperproject'] && $studentinfo->id)
|
|
{
|
|
echo "<div align=\"right\"><a onclick=\"return confirmClick('".i18n("Are you sure you want to remove this student from the project?")."');\" class=\"caution\" href=\"student_editor.php?registration_id=$registration_id&action=removestudent&removestudent=$studentinfo->id\">".i18n("Remove this student from project")."</a></div>";
|
|
}
|
|
|
|
echo "<br />";
|
|
echo "<br />";
|
|
}
|
|
echo "<br />";
|
|
echo i18n("WARNING! If you make a change to the grade that would affect the project number, you must update the project number manually, it will NOT be automatically updated");
|
|
echo "<br />";
|
|
echo "<input type=\"submit\" value=\"".i18n("Save Student Information")."\" />\n";
|
|
echo "</form>";
|
|
echo "<br />";
|
|
|
|
send_footer();
|
|
?>
|