Exemplo n.º 1
0
    protected void Page_Load(object sender, EventArgs e)
    {
        string            uid = Session["uid"].ToString();
        string            sql = "select *from [user] where uid = " + uid;
        SqlServerDataBase obj = new SqlServerDataBase();
        DataSet           ds  = obj.Select(sql, null);

        if (ds != null || ds.Tables.Count != 0 || ds.Tables[0].Rows.Count != 0)
        {
            string username2      = ds.Tables[0].Rows[0][1].ToString();
            string email2         = ds.Tables[0].Rows[0][2].ToString();
            string role2          = ds.Tables[0].Rows[0][4].ToString();
            string register_time2 = ds.Tables[0].Rows[0][5].ToString();
            string avatar         = ds.Tables[0].Rows[0][6].ToString();
            username.Text      = username2;
            email.Text         = email2;
            role.Text          = role2;
            register_time.Text = register_time2;
            if (avatar == null || avatar == "")
            {
                avatarImg.ImageUrl = "../../img/avatar.png";
            }
            else
            {
                avatarImg.ImageUrl = avatar;
            }
        }
    }
Exemplo n.º 2
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        SqlServerDataBase obj        = new SqlServerDataBase();
        string            username   = TBusername.Text;
        string            email      = TBemail.Text;
        string            password   = TBpassword.Text;
        string            repassword = TBrepassword.Text;
        string            sql        = "select *from [user] where email='" + email + "'";
        DataSet           ds         = obj.Select(sql, null);

        if (ds == null || ds.Tables.Count == 0 || ds.Tables[0].Rows.Count == 0)
        {
            byte[] result = Encoding.Default.GetBytes(password);
            MD5    md5    = new MD5CryptoServiceProvider();
            byte[] output = md5.ComputeHash(result);
            sql = "insert into [user] (username,email,password,role) values('" + username + "','" + email + "','" + BitConverter.ToString(output).Replace("-", "") + "','normal')";
            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('注册成功');window.location.href=\"login.aspx\";</script>");
                //Response.Redirect("login.aspx");
            }
            else
            {
                Response.Write("<script>alert('失败')</script>");
            }
        }
        else
        {
            Response.Write("<script>alert('该用户已存在')</script>");
        }
    }
Exemplo n.º 3
0
        protected void DataList1_UpdateCommand(object source, DataListCommandEventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            Id  = DataList1.DataKeys[e.Item.ItemIndex].ToString();
            string            xm  = ((TextBox)e.Item.FindControl("TextBox1")).Text;
            string            xb  = ((TextBox)e.Item.FindControl("TextBox2")).Text;
            string            sfz = ((TextBox)e.Item.FindControl("TextBox3")).Text;
            string            lx  = ((TextBox)e.Item.FindControl("TextBox4")).Text;
            string            zz  = ((TextBox)e.Item.FindControl("TextBox5")).Text;
            string            qy  = ((TextBox)e.Item.FindControl("TextBox6")).Text;
            string            pk  = ((TextBox)e.Item.FindControl("TextBox7")).Text;
            string            nl  = ((TextBox)e.Item.FindControl("TextBox8")).Text;
            string            sql = "update [jumin] set [姓名]='" + xm + "',[性别]='" + xb + "',[身份证号码]='" + sfz + "',[联系方式]='" + lx + "',[家庭住址]='" + zz + "' ,[是否签约]='" + qy + "',[是否贫困]='" + pk + "' ,[年龄]='" + nl + "' where [序号]=" + Id;

            if (obj.Update(sql, null))
            {
                Response.Write("<script>alert('修改成功');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('修改失败');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
            DataList1.EditItemIndex = -1;
            dataBindToDataList();
        }
Exemplo n.º 4
0
        protected void DataList1_UpdateCommand(object source, DataListCommandEventArgs e)
        {
            SqlServerDataBase obj  = new SqlServerDataBase();
            string            Id   = DataList1.DataKeys[e.Item.ItemIndex].ToString();
            string            xm   = ((TextBox)e.Item.FindControl("TextBox1")).Text;
            string            xb   = ((TextBox)e.Item.FindControl("TextBox2")).Text;
            string            cs   = ((TextBox)e.Item.FindControl("TextBox3")).Text;
            string            jg   = ((TextBox)e.Item.FindControl("TextBox4")).Text;
            string            xl   = ((TextBox)e.Item.FindControl("TextBox5")).Text;
            string            bzj  = ((TextBox)e.Item.FindControl("TextBox6")).Text;
            string            pxjl = ((TextBox)e.Item.FindControl("TextBox7")).Text;
            string            hy   = ((TextBox)e.Item.FindControl("TextBox8")).Text;
            string            zz   = ((TextBox)e.Item.FindControl("TextBox9")).Text;
            string            jk   = ((TextBox)e.Item.FindControl("TextBox10")).Text;
            string            dh   = ((TextBox)e.Item.FindControl("TextBox11")).Text;
            string            yx   = ((TextBox)e.Item.FindControl("TextBox12")).Text;
            string            sql2 = "update [peixun] set [培训记录]='" + pxjl + "' where [姓名]=" + xm;
            string            sql  = "update [xiagang] set [姓名]='" + xm + "',[性别]='" + xb + "',[出生年月]='" + cs + "',[籍贯]='" + jg + "',[保障金]='" + bzj + "',[学历]='" + xl + "' ,[婚姻状况]='" + hy + "',[政治面貌]='" + zz + "',[健康状况]='" + jk + "',[联系电话]='" + dh + "',[邮箱]='" + yx + "' where [序号]=" + Id;

            if (obj.Update(sql, null))
            {
                obj.Update(sql2, null);
                Response.Write("<script>alert('修改成功');window.location.href=\"/manager/xiagang.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('修改失败');window.location.href=\"/manager/xiagang.aspx\";</script>");
            }
            DataList1.EditItemIndex = -1;
            dataBindToDataList();
        }
Exemplo n.º 5
0
        /// <summary>
        /// 增加一条数据
        /// </summary>
        public int Add(MyPlatform.Model.Sys_Users model)
        {
            StringBuilder strSql = new StringBuilder();

            strSql.Append("insert into Sys_Users(");
            strSql.Append("CreatedBy,CreatedDate,UpdatedBy,UpdatedDate,Deleted,Account,Password,UserName");
            strSql.Append(") values (");
            strSql.Append("@CreatedBy,@CreatedDate,@UpdatedBy,@UpdatedDate,@Deleted,@Account,@Password,@UserName");
            strSql.Append(") ");
            strSql.Append(";select @@IDENTITY");
            SqlParameter[] parameters =
            {
                new SqlParameter("@CreatedBy",   SqlDbType.NVarChar,  20),
                new SqlParameter("@CreatedDate", SqlDbType.DateTime),
                new SqlParameter("@UpdatedBy",   SqlDbType.NVarChar,  20),
                new SqlParameter("@UpdatedDate", SqlDbType.DateTime),
                new SqlParameter("@Deleted",     SqlDbType.Int,        4),
                new SqlParameter("@Account",     SqlDbType.VarChar,   18),
                new SqlParameter("@Password",    SqlDbType.VarChar,   20),
                new SqlParameter("@UserName",    SqlDbType.NVarChar, 20)
            };

            parameters[0].Value = model.CreatedBy;
            parameters[1].Value = model.CreatedDate;
            parameters[2].Value = model.UpdatedBy;
            parameters[3].Value = model.UpdatedDate;
            parameters[4].Value = model.Deleted;
            parameters[5].Value = model.Account;
            parameters[6].Value = model.Password;
            parameters[7].Value = model.UserName;

            IDataBase db = new SqlServerDataBase(dbCon);

            return(db.ExecuteNonQuery(strSql.ToString(), parameters));
        }
Exemplo n.º 6
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        string username2 = Request.Form["username"];
        string email2    = Request.Form["email"];
        string role2     = Request.Form["role"];
        string sql;

        if (Request.Form["password"] == "")
        {
            sql = "update [user] set username='******',email='" + email2 + "',role='" + role2 + "' where uid=" + uid;
        }
        else
        {
            string password2 = Request.Form["password"];
            byte[] result    = Encoding.Default.GetBytes(password2);
            MD5    md5       = new MD5CryptoServiceProvider();
            byte[] output    = md5.ComputeHash(result);
            sql = "update [user] set username='******',email='" + email2 + "',role='" + role2 + "',password='******'修改用户成功');window.location.href=\"index.aspx\";</script>");
        }
        else
        {
            Response.Write("<script>alert('修改用户失败')</script>");
        }
    }
Exemplo n.º 7
0
        protected void DataList1_UpdateCommand(object source, DataListCommandEventArgs e)
        {
            SqlServerDataBase obj  = new SqlServerDataBase();
            string            Id   = DataList1.DataKeys[e.Item.ItemIndex].ToString();
            string            xm   = ((TextBox)e.Item.FindControl("TextBox1")).Text;
            string            mz   = ((TextBox)e.Item.FindControl("TextBox2")).Text;
            string            xb   = ((TextBox)e.Item.FindControl("TextBox3")).Text;
            string            hf   = ((TextBox)e.Item.FindControl("TextBox4")).Text;
            string            sfz  = ((TextBox)e.Item.FindControl("TextBox5")).Text;
            string            cjz  = ((TextBox)e.Item.FindControl("TextBox6")).Text;
            string            cjlx = ((TextBox)e.Item.FindControl("TextBox7")).Text;
            string            cjdj = ((TextBox)e.Item.FindControl("TextBox8")).Text;
            string            da   = ((TextBox)e.Item.FindControl("TextBox9")).Text;
            string            lx   = ((TextBox)e.Item.FindControl("TextBox10")).Text;
            string            bz   = ((TextBox)e.Item.FindControl("TextBox11")).Text;
            string            sql  = "update [canji] set [姓名]='" + xm + "',[民族]='" + mz + "',[性别]='" + xb + "',[婚否]='" + hf + "' ,[身份证号]='" + sfz + "' ,[残疾证号]='" + cjz + "',[残疾类型]='" + cjlx + "',[残疾等级]='" + cjdj + "' ,[是否建立档案]='" + da + "' ,[联系方式]='" + lx + "' ,[备注]='" + bz + "' where [序号]=" + Id;

            if (obj.Update(sql, null))
            {
                Response.Write("<script>alert('修改成功');window.location.href=\"/manager/canji.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('修改失败');window.location.href=\"/manager/canji.aspx\";</script>");
            }
            DataList1.EditItemIndex = -1;
            dataBindToDataList();
        }
Exemplo n.º 8
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        string uid = Session["uid"].ToString();
        string pw  = Request.Form["password"];

        byte[] result1 = Encoding.Default.GetBytes(pw);
        MD5    md5     = new MD5CryptoServiceProvider();

        byte[] output1 = md5.ComputeHash(result1);

        string npw = Request.Form["newPassword"];

        byte[]            result2 = Encoding.Default.GetBytes(npw);
        byte[]            output2 = md5.ComputeHash(result2);
        string            sql     = "update [user] set password='******' where uid = '" + uid + "' and password='******'";
        SqlServerDataBase obj     = new SqlServerDataBase();

        if (obj.Update(sql, null))
        {
            Response.Write("<script>alert('修改密码成功');window.location.href=\"index.aspx\";</script>");
        }
        else
        {
            Response.Write("<script>alert('修改密码失败')</script>");
        }
    }
Exemplo n.º 9
0
 protected void Page_Load(object sender, EventArgs e)
 {
     if (Session["role"] == null)
     {
         Response.Write("<script>alert(\"请登陆\");window.location.href=\"../login.aspx\";</script>");
     }
     else
     {
         string            uid = Session["uid"].ToString();
         string            sql = "select * from [user] where uid = " + uid;
         SqlServerDataBase obj = new SqlServerDataBase();
         DataSet           ds  = obj.Select(sql, null);
         if (ds != null || ds.Tables.Count != 0 || ds.Tables[0].Rows.Count != 0)
         {
             string username2      = ds.Tables[0].Rows[0][1].ToString();
             string email2         = ds.Tables[0].Rows[0][3].ToString();
             string role2          = ds.Tables[0].Rows[0][5].ToString();
             string register_time2 = ds.Tables[0].Rows[0][6].ToString();
             string img            = ds.Tables[0].Rows[0][7].ToString();
             username.Text      = username2;
             email.Text         = email2;
             role.Text          = role2;
             register_time.Text = register_time2;
             if (img == null || img == "")
             {
                 avatarImg.ImageUrl = "images/1.png";
             }
             else
             {
                 avatarImg.ImageUrl = img;
             }
         }
     }
 }
Exemplo n.º 10
0
        /// <summary>
        /// 编辑表信息
        /// </summary>
        /// <param name="model"></param>
        /// <returns></returns>
        public bool Edit(MyPlatform.Model.Sys_Tables model)
        {
            //if (RecordCount(model.TableName,model.DBName)>0)
            //{
            //    return false;
            //}
            //当表中无数据时,允许修改表名、列名信息
            string sql = "";

            sql = "UPDATE dbo.Sys_Tables SET TableName_EN=@TableName_EN,TableName_CN=@TableName_CN,Remark=@Remark,UpdatedBy=@UpdatedBy,UpdatedDate=GETDATE() where ID=@ID";
            SqlParameter[] pars = { new SqlParameter("@TableName_EN", SqlDbType.VarChar,                                 50)
                                    ,                                 new SqlParameter("@TableName_EN", SqlDbType.VarChar, 50)
                                    ,                                 new SqlParameter("@TableName_CN", SqlDbType.VarChar, 100)
                                    ,                                 new SqlParameter("@Remark",       SqlDbType.VarChar, 100)
                                    ,                                 new SqlParameter("@UpdatedBy",    SqlDbType.VarChar, 400)
                                    ,                                 new SqlParameter("@ID",           SqlDbType.Int) };
            pars[0].Value = model.TableName_EN;
            pars[1].Value = model.TableName_CN;
            pars[2].Value = model.Remark;
            pars[3].Value = model.UpdatedBy;
            pars[4].Value = model.ID;
            IDataBase db = new SqlServerDataBase();

            return(db.ExecuteNonQuery(sql) > 0 ? true : false);
        }
Exemplo n.º 11
0
        protected void Page_Load(object sender, EventArgs e)
        {
            if (Request.QueryString["name"] != null)
            {
                Label1.Text = "你要修改的是:" + Request.QueryString["name"];
            }
            else
            {
                Response.Write("<Script>alert('未选择要编辑的记录!')</script>");
            }
            if (!IsPostBack)
            {
                SqlServerDataBase obj   = new SqlServerDataBase();
                string            sql   = "select * from health where id='" + Request.QueryString["id"].ToString() + "'";
                DataSet           ds    = obj.Select(sql, null);
                string            pname = ds.Tables[0].Rows[0][6].ToString();
                Image1.ImageUrl = "/images/" + pname;

                string  sql2 = "select * from photos";
                DataSet ds2  = obj.Select(sql2, null);
                int     i    = 0;
                for (i = 0; i < ds2.Tables[0].Rows.Count; i++)
                {
                    string   pname2 = ds2.Tables[0].Rows[i][1].ToString();
                    ListItem _li    = new ListItem
                    {
                        Value = pname2,
                        Text  = pname2
                    };
                    photo.Items.Add(_li);
                }
            }
        }
Exemplo n.º 12
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        Boolean fileOk = false;

        if (pic_upload.HasFile)//验证是否包含文件
        {
            //取得文件的扩展名,并转换成小写
            string fileExtension = Path.GetExtension(pic_upload.FileName).ToLower();
            //验证上传文件是否图片格式
            fileOk = IsImage(fileExtension);

            if (fileOk)
            {
                //对上传文件的大小进行检测,限定文件最大不超过4M
                if (pic_upload.PostedFile.ContentLength < 4096000)
                {
                    string filepath = "../../upload/";
                    if (Directory.Exists(Server.MapPath(filepath)) == false)//如果不存在就创建file文件夹
                    {
                        Directory.CreateDirectory(Server.MapPath(filepath));
                    }
                    string virpath = filepath + CreatePasswordHash(pic_upload.FileName, 4) + fileExtension; //这是存到服务器上的虚拟路径
                    string mappath = Server.MapPath(virpath);                                               //转换成服务器上的物理路径
                    pic_upload.PostedFile.SaveAs(mappath);                                                  //保存图片

                    string            uid = Session["uid"].ToString();
                    string            sql = "update [user] set avatar='" + virpath + "' where uid =" + uid;
                    SqlServerDataBase obj = new SqlServerDataBase();
                    if (obj.Update(sql, null))
                    {
                        Response.Write("<script>alert('修改头像成功');</script>");
                    }
                    else
                    {
                        Response.Write("<script>alert('修改头像失败')</script>");
                    }
                    //显示图片
                    pic.ImageUrl = virpath;
                    //清空提示
                    lbl_pic.Text = "";
                }
                else
                {
                    pic.ImageUrl = "";
                    lbl_pic.Text = "文件大小超出4M!请重新选择!";
                }
            }
            else
            {
                pic.ImageUrl = "";
                lbl_pic.Text = "要上传的文件类型不对!请重新选择!";
            }
        }
        else
        {
            pic.ImageUrl = "";
            lbl_pic.Text = "请选择要上传的图片!";
        }
    }
Exemplo n.º 13
0
    protected void Page_Load(object sender, EventArgs e)
    {
        rid = Request.QueryString["rid"];
        SqlServerDataBase obj    = new SqlServerDataBase();
        string            sql    = "select number from [room] where rid=" + rid;
        string            number = obj.Select(sql, null).Tables[0].Rows[0][0].ToString();

        room_number.Text = number;
    }
Exemplo n.º 14
0
        //TODO:分页
        public DataTable GetDetailListByTID(int tableID, Pagination page)
        {
            string sql = "select *from sys_columns a where a.tableID=@tableID";

            SqlParameter[] pars = { new SqlParameter("@tableID", SqlDbType.Int) };
            pars[0].Value = tableID;
            IDataBase db = new SqlServerDataBase();

            return(db.Query(sql, pars).Tables[0]);
        }
Exemplo n.º 15
0
        /// <summary>
        /// 登录验证账号密码
        /// </summary>
        /// <param name="model"></param>
        /// <returns></returns>
        public bool Exists(MyPlatform.Model.Sys_Users model)
        {
            StringBuilder strSql = new StringBuilder();

            strSql.Append("select count(1) from sys_users where deleted=0 and Account=@Account and password=@Password");
            SqlParameter[] parameters = { new SqlParameter("@Account", SqlDbType.VarChar, 30), new SqlParameter("@Password", SqlDbType.VarChar, 30) };
            parameters[0].Value = model.Account;
            parameters[1].Value = model.Password;
            IDataBase db = new SqlServerDataBase(dbCon);

            return(Convert.ToInt32(db.ExecuteScalar(strSql.ToString(), parameters)) == 0 ? false : true);
        }
Exemplo n.º 16
0
        /// <summary>
        /// 检测账号是否存在
        /// </summary>
        /// <param name="Account"></param>
        /// <returns></returns>
        public bool Exists(string Account)
        {
            StringBuilder strSql = new StringBuilder();

            strSql.Append("select count(1) from Sys_Users");
            strSql.Append(" where ");
            strSql.Append(" deleted=0 and Account=@Account ");
            SqlParameter[] parameters = { new SqlParameter("@Account", SqlDbType.VarChar, 30) };
            parameters[0].Value = Account;
            IDataBase db = new SqlServerDataBase(dbCon);

            return(Convert.ToInt32(db.ExecuteScalar(strSql.ToString(), parameters)) == 0 ? false : true);
        }
Exemplo n.º 17
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [jumin] ([姓名],[性别],[年龄],[身份证号码],[联系方式],[家庭住址],[是否签约],[是否贫困]) values('" + xm.Text + "','" + xb.Text + "','" + nl.Text + "','" + sf.Text + "','" + lx.Text + "','" + zz.Text + "','" + qy.Text + "','" + pk.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('增加成功');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('增加失败');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
        }
Exemplo n.º 18
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [wenti] ([主题],[活动时间],[活动地点],[面向对象],[活动内容],[备注]) values('" + zt.Text + "','" + sj.Text + "','" + dx.Text + "','" + nr.Text + "','" + dd.Text + "','" + bz.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('增加成功');window.location.href=\"/manager/wenti.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('增加失败');window.location.href=\"/manager/wenti.aspx\";</script>");
            }
        }
Exemplo n.º 19
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [zhian] ([地点],[负责人],[是否有监控]) values('" + dd.Text + "','" + fzr.Text + "','" + jk.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('增加成功');window.location.href=\"/manager/zhian.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('增加失败');window.location.href=\"/manager/zhian.aspx\";</script>");
            }
        }
Exemplo n.º 20
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [xiagang] ([姓名],[性别],[出生年月],[籍贯],[学历],[婚姻状况],[政治面貌],[健康状况],[联系电话],[邮箱]) values('" + xm.Text + "','" + sex.SelectedValue + "','" + cs.Text + "','" + jg.Text + "','" + xl.Text + "','" + hy.Text + "','" + zz.Text + "','" + jk.Text + "','" + dh.Text + "','" + yx.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('增加成功');window.location.href=\"/manager/xiagang.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('增加失败');window.location.href=\"/manager/xiagang.aspx\";</script>");
            }
        }
Exemplo n.º 21
0
        protected void Button1_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [baoming] ([dh],[who],[phone]) values('" + hd.Text + "','" + peo.Text + "','" + phone.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('报名成功');window.location.href=\"/index.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('报名失败');window.location.href=\"/index.aspx\";</script>");
            }
        }
Exemplo n.º 22
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [canji] ([姓名],[民族],[性别],[婚否],[身份证号码],[残疾证号码],[残疾类型],[残疾等级],[是否建立档案],[联系方式],[备注]) values('" + xm.Text + "','" + mz.Text + "','" + sex.SelectedValue + "','" + mar.SelectedValue + "','" + sfz.Text + "','" + zjz.Text + "','" + lx.Text + "','" + dj.Text + "','" + jd.Text + "','" + lxfs.Text + "','" + bz.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('增加成功');window.location.href=\"/manager/canji.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('增加失败');window.location.href=\"/manager/canji.aspx\";</script>");
            }
        }
Exemplo n.º 23
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "insert into [jiufen] ([时间],[地点],[纠纷经过],[调处情况],[调解人],[负责人]) values('" + sj.Text + "','" + dd.Text + "','" + jg.Text + "','" + dc.Text + "','" + tjr.Text + "','" + fzr.Text + "')";

            if (obj.Insert(sql, null))
            {
                Response.Write("<script>alert('增加成功');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('增加失败');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
        }
Exemplo n.º 24
0
        protected void Button3_Click(object sender, EventArgs e)
        {
            SqlServerDataBase obj = new SqlServerDataBase();
            string            uid = Request.QueryString["id"];
            string            sql = "delete from [health] where id=" + uid;

            if (obj.Delete(sql, null))
            {
                Response.Write("<script>alert('删除成功'');window.location.href=\"health.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('删除失败'');window.location.href=\"health.aspx\";</script>");
            }
        }
Exemplo n.º 25
0
        public bool Exists(int ID)
        {
            StringBuilder strSql = new StringBuilder();

            strSql.Append("select count(1) from Sys_Users");
            strSql.Append(" where ");
            strSql.Append(" ID = @ID  ");
            SqlParameter[] parameters =
            {
                new SqlParameter("@ID", SqlDbType.Int, 4)
            };
            parameters[0].Value = ID;
            IDataBase db = new SqlServerDataBase(dbCon);

            return(Convert.ToInt32(db.ExecuteScalar(strSql.ToString(), parameters)) == 0 ? false : true);
        }
Exemplo n.º 26
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        string            number = room_number.Text;
        string            tid    = Request.Form["type_id"];
        SqlServerDataBase obj    = new SqlServerDataBase();
        string            sql    = "insert into [room] (number,tid,status) values ('" + number + "','" + tid + "','empty')";

        if (obj.Insert(sql, null))
        {
            Response.Write("<script>alert('增加成功');window.location.href=\"index.aspx\";</script>");
        }
        else
        {
            Response.Write("<script>alert('增加失败');</script>");
        }
    }
Exemplo n.º 27
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        string            uid  = Session["uid"].ToString();
        string            name = Request.Form["username"];
        string            sql  = "update [user] set username='******' where uid = " + uid;
        SqlServerDataBase obj  = new SqlServerDataBase();

        if (obj.Update(sql, null))
        {
            Response.Write("<script>alert('修改昵称成功');window.location.href=\"index.aspx\";</script>");
        }
        else
        {
            Response.Write("<script>alert('修改昵称失败')</script>");
        }
    }
Exemplo n.º 28
0
    protected void Button1_Click(object sender, EventArgs e)
    {
        string            type_name        = typename.Text;
        string            type_price       = price.Text;
        string            type_description = description.Text;
        SqlServerDataBase obj = new SqlServerDataBase();
        string            sql = "insert into [type] (type_name,price,description) values ('" + type_name + "','" + type_price + "','" + type_description + "')";

        if (obj.Insert(sql, null))
        {
            Response.Write("<script>alert('增加成功');window.location.href=\"index.aspx\";</script>");
        }
        else
        {
            Response.Write("<script>alert('增加失败');</script>");
        }
    }
Exemplo n.º 29
0
        protected void DataList1_DeleteCommand(object source, DataListCommandEventArgs e)
        {
            string            ID  = DataList1.DataKeys[e.Item.ItemIndex].ToString();
            SqlServerDataBase obj = new SqlServerDataBase();
            string            sql = "delete from jumin where [序号]='" + ID + "'";

            if (obj.Update(sql, null))
            {
                Response.Write("<script>alert('删除成功');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
            else
            {
                Response.Write("<script>alert('删除失败');window.location.href=\"/manager/jumin.aspx\";</script>");
            }
            DataList1.EditItemIndex = -1;
            dataBindToDataList();
        }
Exemplo n.º 30
0
    protected void submit_Click(object sender, EventArgs e)
    {
        string            rid = Request.Form["room_number"];
        SqlServerDataBase obj = new SqlServerDataBase();
        string            sql = "insert into [orders] (uid,rid,status) values('" + uid + "','" + rid + "','progress')";

        if (obj.Insert(sql, null))
        {
            sql = "update [room] set status ='checked' where rid=" + rid;
            obj.Update(sql, null);
            Response.Write("<script>alert('预定成功');window.location.href=\"index.aspx\";</script>");
        }
        else
        {
            Response.Write("<script>alert('预定失败')</script>");
        }
    }