//

        public TAIKHOAN LayTT(string tk)
        {
            using (SqlConnection connection = new SqlConnection(connectionString))
            {
                string     sql = @"SELECT * FROM dbo.QUANLY WHERE TAIKHOAN = @TK";
                SqlCommand cmd = new SqlCommand(sql, connection); cmd.Parameters.AddWithValue("@TK", tk);
                connection.Open(); SqlDataReader reader = cmd.ExecuteReader();

                if (reader.Read())
                {
                    TAIKHOAN QL = new TAIKHOAN
                    {
                        // Lấy giá trị theo tên cột trong CSDL
                        TENTAIKHOAN = (string)reader["TAIKHOAN"],
                        MATKHAU     = (string)reader["MATKHAU"],
                        DIACHI      = (string)reader["DIACHI"],
                        SODIENTHOAI = (string)reader["SDT"],
                        HOTEN       = (string)reader["HOTEN"],
                        EMAIL       = (string)reader["EMAIL"],
                    };
                    return(QL);
                }
            }
            return(null);
        }
        public bool InsertTAIKHOAN(TAIKHOAN TAIKHOAN)
        {
            SqlConnection connection = new SqlConnection(connectionString);
            string        sql        = @"INSERT INTO dbo.QUANLY(TAIKHOAN,MATKHAU,EMAIL,DIACHI,HOTEN, PHANQUYEN, SDT)
                           VALUES('" + TAIKHOAN.TENTAIKHOAN + "','" + TAIKHOAN.MATKHAU + "', '" + TAIKHOAN.EMAIL + "','" + TAIKHOAN.DIACHI + "','" + TAIKHOAN.HOTEN + "'," + TAIKHOAN.QUYEN + ",'" + TAIKHOAN.SODIENTHOAI + "')";
            SqlCommand    cmd        = new SqlCommand(sql, connection);

            connection.Open();
            int result = cmd.ExecuteNonQuery();

            connection.Close();
            if (result != 0)
            {
                return(true);
            }
            return(false);
        }
        //
        public bool UpDateTK(TAIKHOAN us)
        {
            SqlConnection connection = new SqlConnection(connectionString);
            string        sql        = @"UPDATE dbo.QUANLY SET  MATKHAU = @mk, EMAIL = @Email,DIACHI=@dc ,SDT = @SoDienThoai, HOTEN=@ht WHERE TAIKHOAN = @tk";
            SqlCommand    cmd        = new SqlCommand(sql, connection);

            cmd.Parameters.AddWithValue("@tk", us.TENTAIKHOAN);
            cmd.Parameters.AddWithValue("@mk", us.MATKHAU);
            cmd.Parameters.AddWithValue("@Email", us.EMAIL);
            cmd.Parameters.AddWithValue("@dc", us.DIACHI);
            cmd.Parameters.AddWithValue("@SoDienThoai", us.SODIENTHOAI);
            cmd.Parameters.AddWithValue("@ht", us.HOTEN);
            connection.Open();
            int result = cmd.ExecuteNonQuery();

            connection.Close();
            if (result != 0)
            {
                return(true);
            }
            return(false);
        }