$formValid = true;
if (isset($_POST["create"])) {
$salt = md5(APP_SECRET . date('Ymdhis'));
$password = md5( $salt . $_POST["password"] );
$active = (isset($_POST["active"])) ? true : false;
$locked = (isset($_POST["locked"])) ? true : false;
$sql = "INSERT INTO
auth_user
(username, email, password, salt, first_name, last_name, active, locked)
VALUES
(?, ?, ?, ?, ?, ?, ?, ?)";
$dbObj = new db();
$dbObj->dbPrepare( $sql );
$dbObj->dbExecute(array(
$_POST["username"],
$_POST["email"],
$password,
$salt,
$_POST["firstname"],
$_POST["lastname"],
$active,
$locked
));
}
else {
$formValid = false;
}
if ($formValid) {
$sql = "SELECT
*
FROM
auth_user
ORDER BY
username";
$dbObj = new db();
$dbObj->dbPrepare( $sql );
$dbObj->dbExecute();
include( APP_VIEW .'/user/userSubNav.php' );
include( APP_VIEW .'/user/listView.php' );
break;
}
else {
include( APP_VIEW .'/user/userSubNav.php' );
include( APP_VIEW .'/user/addView.php' );
break;
}
Stikked
