\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "Hôtel Restaurant Aquitaine - Espace Client\n"; echo ""; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "\n"; echo "
\n"; echo " \"
\n"; echo " \n"; echo " \"Hôtel
\n"; echo " \"
\n"; echo " \n"; echo " \"Hôtel
\n"; echo "
\n"; echo " \n"; echo " ESPACE CLIENT\n"; echo " \n"; echo "
\n"; include("config.php"); $login_general = ""; function tronque($chaine, $nb){ if(strlen($chaine) > $nb){ $tronque = substr($chaine, 0, $nb); $tronque.= "..."; return $tronque; }else{ return $chaine; } } if(isset($cle) && $cle != ""){ if(ereg($clevalid,$cle)){ $link = mysql_connect($mysql_host, $mysql_user, $mysql_pass) or die("Impossible de se connecter au serveur"); $requete = mysql_db_query($mysql_base,"select * from " . $mysql_clie . " where clef=\"" . $cle . "\"",$link) or die("Erreur !"); if(mysql_num_rows($requete)==0){ $login_general = "Err"; $cle = ""; }else{ $login_general = "Ok"; } mysql_close($link); }else{ $login_general = "Err"; } } if(isset($pass) && $pass != ""){ if(ereg($idevalid,$login) && ereg($idevalid,$pass)){ $link = mysql_connect($mysql_host, $mysql_user, $mysql_pass) or die("Impossible de se connecter au serveur"); $requete = mysql_db_query($mysql_base,"select * from " . $mysql_clie . " where user=\"" . $login . "\" and pass=\"" . $pass . "\"",$link) or die("Erreur !"); if(mysql_num_rows($requete)==0){ echo "[MAUVAIS PASS] Le mot de passe que vous avez rentré est incorect !"; }else{ $taille = 20; $lettres = "abcdefghijklmnopqrstuvwxyz0123456789"; srand(time()); for ($i=0;$i<$taille;$i++){ $cle.=substr($lettres,(rand()%(strlen($lettres))),1); } $requete = mysql_db_query($mysql_base,"update " . $mysql_clie . " set clef=\"" . $cle . "\" where user=\"" . $login . "\" and pass=\"" . $pass . "\"",$link) or die("Erreur !"); $login_general = "Ok"; } mysql_close($link); } } if($login_general != "Ok"){ echo "


\n"; echo "Veuillez vous identifier :


\n"; echo "

\n"; echo "\tUtilisateur :

\n"; echo "\tMot de Passe :


\n"; echo "\t\n"; echo "
\n"; echo "
\n"; echo "

\n"; echo "NONAME " . date("Y") . "
Gestion Hotel " . $version . "
\n"; echo "\n"; echo ""; //echo "(Vous étes identifiés grace à un code aléatoire à 20 caractères, le système est donc inviolable. Toutes les actions effectués sont loggées avec votre IP)

"; exit(); } if($act == "logout"){ if($cle != "" && ereg($clevalid,$cle)){ $link = mysql_connect($mysql_host, $mysql_user, $mysql_pass) or die("Impossible de se connecter au serveur"); mysql_select_db($mysql_base) or die("Impossible de sélectionner la base"); $requet = "UPDATE " . $mysql_clie . " SET clef=\"\" WHERE clef=\"" . $cle . "\""; $total = mysql_query($requet) or die("Echec lors de l'envoi de la requête"); $ext_tablo = "

Vous étes maintenant déconnecté !

"; mysql_close($link); }else{ $ext_tablo = "

Impossible de se deconnecter sans la clef !

"; } } if($act == "promo" && ereg($clevalid,$cle)){ if(isset($showpromo) && $showpromo != "" && ereg($refvalid,$showpromo)){ $link = mysql_connect($mysql_host, $mysql_user, $mysql_pass) or die("Impossible de se connecter au serveur"); mysql_select_db($mysql_base) or die("Impossible de sélectionner la base"); $requet = "SELECT * FROM " . $mysql_prom . " WHERE id=\"" . $showpromo . "\" AND active=\"oui\" LIMIT 1"; $total = mysql_query($requet) or die("Echec lors de l'envoi de la requête"); if(mysql_num_rows($total) != 0){ while($row = mysql_fetch_array($total)){ $show_paru = $row["dateparu"]; $show_prom = $row["datepromo"]; $show_pers = $row["nbpersonnes"]; $show_prix = $row["prix"]; $show_rist = $row["ristourne"]; $show_desc = nl2br($row["description"]); $show_phot = $phpsc_aper . $row["photo"]; if($show_pers == 1){ $show_plur = "personne"; }else{ $show_plur = "personnes"; } $show_fina = $show_prix - $show_rist; $ext_tablo = ""; $ext_tablo .= "

->> Réserver <<-

"; $ext_tablo .= "\n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= " \n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Date de parution :

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

" . $show_paru . "

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Date de la promotion :

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

" . $show_prom . "

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Chambre de :

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

" . $show_pers . " " . $show_plur . "

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Prix de base :

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

" . $show_prix . " €

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Réduction :

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

" . $show_rist . " €

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Prix final :

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

" . $show_fina . " €

\n"; $ext_tablo .= "
\n"; $ext_tablo .= "

Description :
" . $show_desc . "

\n"; $ext_tablo .= "
\n"; if($row["photo"] != "photo.jpg"){ $ext_tablo .= "

\n"; }else{ $ext_tablo .= "

Pas d'Aperçu

\n"; } $ext_tablo .= "
\n"; $ext_tablo .= "


<<-- Retour"; } }else{ $ext_tablo = "

Référence non trouvée !


"; $ext_tablo .= "


<<-- Retour"; } mysql_close($link); } if(isset($reserver) && $reserver != "" && ereg($refvalid,$reserver)){ $link = mysql_connect($mysql_host, $mysql_user, $mysql_pass) or die("Impossible de se connecter au serveur"); mysql_select_db($mysql_base) or die("Impossible de sélectionner la base"); $requet = "SELECT * FROM " . $mysql_prom . " WHERE id=\"" . $reserver . "\" AND active=\"oui\" LIMIT 1"; $total = mysql_query($requet) or die("Echec lors de l'envoi de la requête"); if(mysql_num_rows($total) != 0){ while($row = mysql_fetch_array($total)){ $show_paru = $row["dateparu"]; $show_prom = $row["datepromo"]; $show_pers = $row["nbpersonnes"]; $show_prix = $row["prix"]; $show_rist = $row["ristourne"]; $show_desc = nl2br($row["description"]); $show_phot = $phpsc_aper . $row["photo"]; if($show_pers == 1){ $show_plur = "personne"; }else{ $show_plur = "personnes"; } $show_fina = $show_prix - $show_rist; $ext_tablo = "

Etes-vous sûr(e) de valider votre réservation pour un montant total de " . $show_prix . " € TTC ?

\n"; $ext_tablo .= ">> OUI <<  >> NON <<\n"; $ext_tablo .= "

\n"; $ext_tablo .= "


<<-- Retour\n"; } }else{ $ext_tablo = "

Référence non trouvée !


"; $ext_tablo .= "


<<-- Retour\n"; } mysql_close($link); } if(isset($reserverok) && $reserverok != "" && ereg($refvalid,$reserverok)){ $link = mysql_connect($mysql_host, $mysql_user, $mysql_pass) or die("Impossible de se connecter au serveur"); mysql_select_db($mysql_base) or die("Impossible de sélectionner la base"); $requet = "SELECT * FROM " . $mysql_prom . " WHERE id=\"" . $reserverok . "\" AND active=\"oui\" LIMIT 1"; $total = mysql_query($requet) or die("Echec lors de l'envoi de la requête"); $requet2 = "SELECT * FROM " . $mysql_clie . " WHERE clef=\"" . $cle . "\" LIMIT 1"; $total2 = mysql_query($requet2) or die("Echec lors de l'envoi de la requête"); if(mysql_num_rows($total) != 0 && mysql_num_rows($total2) != 0){ while($row = mysql_fetch_array($total)){ $promo_id = $row["id"]; $promo_ref = $row["ref"]; $promo_paru = $row["dateparu"]; $promo_date = $row["datepromo"]; $promo_nbpers = $row["nbpersonnes"]; $promo_prix = $row["prix"]; $promo_rist = $row["ristourne"]; $promo_desc = $row["description"]; $promo_photo = $phpsc_base . $phpsc_aper . $row["photo"]; } while($row2 = mysql_fetch_array($total2)){ $user_id = $row2["id"]; $user_user = $row2["user"]; $user_nom = $row2["nom"]; $user_prenom = $row2["prenom"]; $user_addr = $row2["adresse"]; $user_cp = $row2["cp"]; $user_ville = $row2["ville"]; $user_tel = $row2["tel"]; $user_mail = $row2["mail"]; } if($promo_nbpers == 1){ $promo_nbpers1 = $promo_nbpers . " personne"; }else{ $promo_nbpers1 = $promo_nbpers . " personnes"; } $promo_final = $promo_prix - $promo_rist; $msgadmin = ""; $msgclien = ""; $txtadmin = fopen ("admin.popo", "r"); while(!feof ($txtadmin)){ $msgadmin .= fgets($txtadmin, 1024); } fclose ($txtadmin); $txtclien = fopen ("client.popo", "r"); while(!feof ($txtclien)){ $msgclien .= fgets($txtclien, 1024); } fclose ($txtclien); // Mail Admin // * Infos Client $msgadmin = str_replace("",$user_id,$msgadmin); $msgadmin = str_replace("",$user_user,$msgadmin); $msgadmin = str_replace("",$user_nom,$msgadmin); $msgadmin = str_replace("",$user_prenom,$msgadmin); $msgadmin = str_replace("",$user_addr,$msgadmin); $msgadmin = str_replace("",$user_cp,$msgadmin); $msgadmin = str_replace("",$user_ville,$msgadmin); $msgadmin = str_replace("",$user_tel,$msgadmin); $msgadmin = str_replace("",$user_mail,$msgadmin); // * Infos Promo $msgadmin = str_replace("",$promo_id,$msgadmin); $msgadmin = str_replace("",$promo_ref,$msgadmin); $msgadmin = str_replace("",$promo_paru,$msgadmin); $msgadmin = str_replace("",$promo_date,$msgadmin); $msgadmin = str_replace("",$promo_nbpers1,$msgadmin); $msgadmin = str_replace("",$promo_desc,$msgadmin); $msgadmin = str_replace("",$promo_photo,$msgadmin); $msgadmin = str_replace("",$promo_prix,$msgadmin); $msgadmin = str_replace("",$promo_rist,$msgadmin); $msgadmin = str_replace("",$promo_final,$msgadmin); // Mail Client // * Infos Client $msgclien = str_replace("",$user_id,$msgclien); $msgclien = str_replace("",$user_user,$msgclien); $msgclien = str_replace("",$user_nom,$msgclien); $msgclien = str_replace("",$user_prenom,$msgclien); $msgclien = str_replace("",$user_addr,$msgclien); $msgclien = str_replace("",$user_cp,$msgclien); $msgclien = str_replace("",$user_ville,$msgclien); $msgclien = str_replace("",$user_tel,$msgclien); $msgclien = str_replace("",$user_mail,$msgclien); // * Infos Promo $msgclien = str_replace("",$promo_id,$msgclien); $msgclien = str_replace("",$promo_ref,$msgclien); $msgclien = str_replace("",$promo_paru,$msgclien); $msgclien = str_replace("",$promo_date,$msgclien); $msgclien = str_replace("",$promo_nbpers1,$msgclien); $msgclien = str_replace("",$promo_desc,$msgclien); $msgclien = str_replace("",$promo_photo,$msgclien); $msgclien = str_replace("",$promo_prix,$msgclien); $msgclien = str_replace("",$promo_rist,$msgclien); $msgclien = str_replace("",$promo_final,$msgclien); $mailtheadmin = @mail($mailadmini, "[HOTEL AQUITAINE] Reservation promo", $msgadmin, "From: " . $mailfromwb); $mailtheclien = @mail($user_mail, "[HOTEL AQUITAINE] Confirmation reservation promo", $msgclien, "From: " . $mailfromwb); $mailnonameco = @mail($notireserv, "[HOTEL AQUITAINE] Reservation promo", $msgadmin, "From: " . $mailfromwb); if($mailtheadmin && $mailtheclien){ $requet = "UPDATE " . $mysql_prom . " SET active=\"non\" WHERE id=\"" . $reserverok . "\" LIMIT 1"; $total = mysql_query($requet) or die("Echec lors de l'envoi de la requête"); $ext_tablo = "

Un mail de confirmation vient de vous être envoyé.

\n"; $ext_tablo .= "


<<-- Retour\n"; }else{ $ext_tablo = "

Une erreur c'est produite lors de l'envoi du mail de confirmation, nous vous prions de bien vouloir réitérer votre demande.

\n"; $ext_tablo .= "


<<-- Retour\n"; } }else{ $ext_tablo = "

Erreur Générale !


"; $ext_tablo .= "


<<-- Retour\n"; } mysql_close($link); } } //if($act == "usr"){ //if(isset($addusr) && $addusr == "ok"){ if($act == ""){ $act = "ask"; } ?>

 

Bienvenue " . $acc_nom . " " . $acc_pre . "

\n"; $requet = "SELECT * FROM " . $mysql_prom . " WHERE active='oui'"; $total = mysql_query($requet) or die("Echec lors de l'envoi de la requête"); if(mysql_num_rows($total)!=0){ echo "

Voici la liste des promotions disponibles :

\n"; }else{ echo "

Aucune promotion de disponible pour l'instant

\n"; } while($row = mysql_fetch_array($total)){ $prix = $row["prix"] - $row["ristourne"]; $renvoi = "\n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= " \n"; $renvoi .= "
\n"; $renvoi .= "

Date : " . $row["datepromo"] . "

\n"; $renvoi .= "
\n"; $renvoi .= "

Nombre de Personnes : " . $row["nbpersonnes"] . "

\n"; $renvoi .= "
\n"; $renvoi .= "

" . nl2br($row["description"]) . "

\n"; $renvoi .= "
\n"; $renvoi .= "

Prix : " . $prix . " €

\n"; $renvoi .= "
\n"; $renvoi .= "

En savoir plus


\n"; echo $renvoi; } mysql_close($link); } ?>


NONAME
Gestion Hotel

> Page générée en " . number_format($temps_generation, 4,',','') . " sec."; ?>

Ce site est une réalisation NONAME.