0) { doFramework("user"); } else if ($user && $pass) { $sql = "SELECT * FROM employees WHERE username = '" . $user . "' AND password = '" . $pass . "' LIMIT 1"; #print $sql; #exit; $row = getDbRow($sql); if ($row['access'] == "admin" || $row['access'] == "super") { $empRow = getEmployeeRow($row['employee_id']); $_SESSION['login_eid'] = $row['employee_id']; $_SESSION['parentCompanyId'] = $empRow['company_parent_id']; if (!$_SESSION["companyId"]) $_SESSION["companyId"] = pGetFirstCompany($empRow['company_parent_id']); else if (!pIsCompanyPartOfParrent($_SESSION["companyId"], $empRow['company_parent_id'])) $_SESSION["companyId"] = pGetFirstCompany($empRow['company_parent_id']); //$_SESSION['menu'] = $row['menu']; //$_SESSION['startpage'] = $row['startpage']; doFramework($sysarea); } } function doFramework($sysarea) { print 'Zoomfood Intranet'; print ''; print ''; print ''; print ''; } function pIsCompanyPartOfParrent($companyId, $parentCompany) { $sql = "SELECT * FROM `companies_parent` WHERE `company_parent_id` = '" . $parentCompany . "' AND company_id = '" . $companyId . "';"; $row = getDbRow($sql); return $row['company_id']; } function pGetFirstCompany($parentCompany) { $sql = "SELECT * FROM `companies_parent` WHERE `company_parent_id` = '" . $parentCompany . "' ORDER BY `company_id` LIMIT 1;"; $row = getDbRow($sql); return $row['company_id']; } #print "QS:" . $_SERVER['QUERY_STRING']; ?> Zoomfood



Nutzer:
Kennwort:
Bereich: