public ActionResult Create(NewUser CreateUser) { if (ModelState.IsValid) { if (cek_data("*", "KMIINTRANET_USER", "username='******'") == false) { if (CreateUser.Autorized != null) { for (int i = 0; i < CreateUser.Autorized.Count(); i++) { if (i == 0) { sb += CreateUser.Autorized.GetValue(i).ToString(); } else { sb += "," + CreateUser.Autorized.GetValue(i).ToString(); } } } else { sb = ""; } string connectionString = "Data Source=HRMSDEV;user id=PERSON;password=PERSON;Unicode=True;"; using (OracleConnection connection = new OracleConnection(connectionString)) { OracleCommand cmd1 = new OracleCommand(); cmd1.CommandText = "INSERT INTO KMIINTRANET_USER (USERNAME,PASS,LEV,AUTORIZED) VALUES ('" + CreateUser.User + "','" + CreateUser.Pass + "','" + CreateUser.Level + "','" + sb + "')"; cmd1.CommandType = CommandType.Text; cmd1.Connection = connection; connection.Open(); cmd1.ExecuteNonQuery(); connection.Close(); return RedirectToAction("Index"); } } else { return Content("<script language='javascript' type='text/javascript'>alert('Username Already Exist!');location.href = 'Index'; ;</script>", "WARNING"); } } return View(CreateUser); }
public ActionResult Create() { NewUser model = new NewUser(); return View(model); }