public bool add(DoctorDTO d) { int s = 0; if (d.Available == true) { s = 1; } try { string query = "insert into doctor (Name, Salary, Available) values ('" + d.Name + "'," + d.Salary + "," + s + ")"; c.sqlComm = new SqlCommand(query, c.sqlConn); c.sqlConn.Open(); c.sqlComm.ExecuteNonQuery(); c.sqlConn.Close(); return(true); } catch (Exception e) { c.sqlConn.Close(); return(false); } }
public bool update(DoctorDTO d) { int s = 0; if (d.Available == true) { s = 1; } string query = "update doctor set Name='" + d.Name + "', Salary=" + d.Salary + ", Available =" + s + " where DocId=" + d.DocID; try { c.sqlComm = new SqlCommand(query, c.sqlConn); c.sqlConn.Open(); c.sqlComm.ExecuteNonQuery(); c.sqlConn.Close(); return(true); } catch (Exception e) { c.sqlConn.Close(); return(false); } }