<?php
require_once "cmsAdmin/lib/viewer_functions.php";   
 if (!$CURRENT_USER) { websiteLogin_redirectToLogin(); }
 
  $tableName       = 'stories';
  $recordNum       = null; // you must set either $recordNum or $preSaveTempId to null
  $preSaveTempId   = @$_REQUEST['preSaveTempId'] ? $_REQUEST['preSaveTempId'] : uniqid('x');
  $errorsAndAlerts = '';

  ### insert record
  if (@$_REQUEST['submitForm']) {

    // error checking
   if (!@$_REQUEST['title'])    { $errorsAndAlerts .= "Please specify title!<br/>\n"; }
  if (!@$_REQUEST['content'])    { $errorsAndAlerts .= "Please add your story!<br/>\n"; }
  if (!@$_REQUEST['summary'])    { $errorsAndAlerts .= "Please specify summary!<br/>\n"; }

    // update record
    if (!@$errorsAndAlerts) {
      mysqlStrictMode(false); // disable Mysql strict errors for when a field isn't defined below (can be caused when fields are added later)
       $query = "INSERT INTO `{$TABLE_PREFIX}$tableName` SET
                     title            = '".mysql_escape( $_REQUEST['title'] )."',
                    content           = '".mysql_escape( $_REQUEST['content'] )."',
                     summary            = '".mysql_escape( $_REQUEST['summary'] )."',
                       createdDate      = NOW(),
                      updatedDate      = NOW(),
                       createdByUserNum = '".mysql_escape($CURRENT_USER['num'])."', 
                      updatedByUserNum = '".mysql_escape($CURRENT_USER['num'])."'";
      mysql_query($query) or die("MySQL Error:<br/>\n". htmlspecialchars(mysql_error()) . "\n");
      $newRecordNum = mysql_insert_id();

   
      // adopt temp uploads (IMPORTANT - DON'T FORGET THIS STEP!!!)
      adoptUploads($tableName, $preSaveTempId, $newRecordNum);
      removeExpiredUploads(); // erase old expired uploads

      // display thanks message and clear form
      $errorsAndAlerts = "Thanks, we've added your record! <br/><br/><a href='http://montereyscambusters.com/user-profile.php'>Click here to continue</a> ";
      $_REQUEST      = array();
    }
  }

?>


<?php include "header.php"; ?>

<blockquote>
	<h1><font color="#FF0000">Add Personal Story</font></h1>

<?php if (@$errorsAndAlerts): ?>
  	<div style="color: #C00; font-weight: bold; font-size: 14px;"><?php echo $errorsAndAlerts; ?></div>
<?php endif ?>
<hr/>
</blockquote>



<form method="post" action="<?php echo $_SERVER['SCRIPT_NAME']; ?>">
<input type="hidden" name="submitForm" value="1" />
<input type="hidden" name="num" value="<?php echo $recordNum ?>" />
<input type="hidden" name="preSaveTempId" value="<?php echo $preSaveTempId ?>" />
<div align="center">
			<div style="border: 1px solid #000; background-color: #E9E9D1; padding: 10px; width: 906px; height:1050px">
				<table border="0" cellpadding="2" width="93%" id="table2"> <tr>
  <td valign="top">
	<h4><b>Title:</b></h4>
	</td>
  <td>
	<h5>
	<input  type="text" name="title" value="<?php echo htmlspecialchars(@$_REQUEST['title']) ?>" size="66"/></h5>
	</td>
</tr>
 <tr>
  <td valign="top">
	<h4><b>Summary:&nbsp; <span style="font-weight: 400"><font color="#FF0000">
	<br>
	Be brief and to the point</font></span></b></h4>
	</td>
  <td>
	<h5><textarea name="summary" cols="66" rows="3"><?php echo htmlspecialchars(@$_REQUEST['summary']) ?></textarea></h5>
	</td>
</tr>
 <tr>
  <td valign="top">
	<h4><b>Content:<font color="#FF0000" size="2">
	<span style="font-weight: 400"><br>
	Write your whole story here</span></font></b></h4>
	</td>
  <td>

	<textarea name="content" cols="67" rows="11" ><?php echo htmlspecialchars(@$_REQUEST['content']) ?></textarea></td>
</tr>
 <tr>
  <td valign="top">
	Document Upload <br>
	<span style="font-weight: 400"><font color="#FF0000" size="2">(you may 
	upload up to </font></span><font size="2" color="#FF0000">3 <br>
	pdfs or docs)</font></td>
  <td>

     <iframe src='uploadForm3_iframe.php?table=<?php echo $tableName ?>&amp;field=pdf&amp;num=<?php echo $recordNum ?>&amp;preSaveTempId=<?php echo $preSaveTempId ?>'
            height='700' width='541' frameborder='0' scrolling='no'>
    </iframe></td>
</tr>
 <tr>
  <td valign="top">
	<h4><b>Photo Uploads<span style="font-weight: 400"><font size="2">:<br>
	</font>
	</span>
	</b><span style="font-weight: 400"><font color="#FF0000" size="2">(you may 
	upload up to 6 <br>
	jpgs, gifs, pngs&nbsp; )</font></span></h4>
	</td>
  <td>

    

    <?php /* TODO: Add security check in uploadForm2_iframe.php to limit access to only allowed uploads */ ?>
    <iframe src='uploadForm2_iframe.php?table=<?php echo $tableName ?>&amp;field=uploads&amp;num=<?php echo $recordNum ?>&amp;preSaveTempId=<?php echo $preSaveTempId ?>'
            height='700' width='541' frameborder='0' scrolling='no'>
    </iframe>
  	
  </td>
</tr>
 <tr>
  <td valign="top" rowspan="2" colspan="2">
	<p align="center">
<input class="button" type="submit" name="submitForm" value="Add Your Story &gt;&gt;" /></td>
  


 <tr>
</form>
<?php include "footer.php"; ?>