2 /**********************************************************************
3 Copyright (C) FrontAccounting, LLC.
4 Released under the terms of the GNU General Public License, GPL,
5 as published by the Free Software Foundation, either version 3
6 of the License, or (at your option) any later version.
7 This program is distributed in the hope that it will be useful,
8 but WITHOUT ANY WARRANTY; without even the implied warranty of
9 MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.
10 See the License here <http://www.gnu.org/licenses/gpl-3.0.html>.
11 ***********************************************************************/
12 define('SQL_MODE', 'STRICT_ALL_TABLES,NO_ZERO_IN_DATE');
14 function set_global_connection($company=-1)
16 global $db, $transaction_level, $path_to_root, $db_connections;
18 include ($path_to_root . "/config_db.php");
20 $company = $_SESSION["wa_current_user"]->company;
22 cancel_transaction(); // cancel all aborted transactions if any
23 $transaction_level = 0;
25 $_SESSION["wa_current_user"]->cur_con = $company;
27 $connection = $db_connections[$company];
29 $db = mysqli_connect($connection["host"], $connection["dbuser"], $connection["dbpassword"]);
30 mysqli_select_db($db, $connection["dbname"]);
31 ///// From mysqli release 5.6.6 the sql_mode is no longer empty as it was prior to
32 ///// this release. Just for safety we make it empty for all 5.6 release and higher.
33 ///// This non empty sql_mode values can interphere with FA, so all is set empty during
35 ///// We are, however, investigating the existing code to be compatible in the future.
36 // if (strncmp(db_get_version(), "5.6", 3) >= 0)
37 db_query("SET sql_mode = '".SQL_MODE."'");
42 $db_duplicate_error_code = 1062;
44 //DB wrapper functions to change only once for whole application
46 function db_query($sql, $err_msg=null)
48 global $db, $show_sql, $sql_trail, $select_trail, $go_debug, $sql_queries, $Ajax,
49 $db_connections, $db_last_inserted_id;
51 // set current db prefix
52 $comp = isset($_SESSION["wa_current_user"]->cur_con) ? $_SESSION["wa_current_user"]->cur_con : 0;
53 $cur_prefix = $db_connections[$comp]['tbpref'];
54 $sql = str_replace(TB_PREF, $cur_prefix, $sql);
58 $Ajax->activate('footer_debug');
59 $sql_queries .= "<pre>$sql</pre>\n<hr>";
62 db_profile(); // mysql profiling
64 $result = mysqli_query($db, $sql);
69 $db_last_inserted_id = mysqli_insert_id($db); // preserve in case trail insert is done
70 if ($select_trail || (strstr($sql, 'SELECT') === false)) {
71 mysqli_query($db, "INSERT INTO ".$cur_prefix."sql_trail
72 (`sql`, `result`, `msg`)
73 VALUES(".db_escape($sql).",".($result ? 1 : 0).",
74 ".db_escape($err_msg).")");
78 if ($err_msg != null || $go_debug) {
79 $exit = $err_msg != null;
80 if (function_exists('xdebug_call_file'))
81 check_db_error('<br>At file '.xdebug_call_file().':'.xdebug_call_line().':<br>'.$err_msg, $sql, $exit);
83 check_db_error($err_msg, $sql, $exit);
88 function db_fetch_row ($result)
90 $ret = mysqli_fetch_row($result);
91 return ($ret === null ? false : $ret);
94 function db_fetch_assoc ($result)
96 $ret = mysqli_fetch_assoc($result);
97 return ($ret === null ? false : $ret);
100 function db_fetch ($result)
102 $ret = mysqli_fetch_array($result);
103 return ($ret === null ? false : $ret);
106 function db_seek (&$result,$record)
108 return mysqli_data_seek($result, $record);
111 function db_free_result ($result)
114 mysqli_free_result($result);
117 function db_num_rows ($result)
119 return mysqli_num_rows($result);
122 function db_num_fields ($result)
124 return mysqli_num_fields($result);
127 function db_escape($value = "", $nullify = false)
131 $value = @html_entity_decode($value, ENT_QUOTES, $_SESSION['language']->encoding);
132 $value = @htmlspecialchars($value, ENT_QUOTES, $_SESSION['language']->encoding);
134 //reset default if second parameter is skipped
135 $nullify = ($nullify === null) ? (false) : ($nullify);
137 //check for null/unset/empty strings
138 if ((!isset($value)) || (is_null($value)) || ($value === "")) {
139 $value = ($nullify) ? ("NULL") : ("''");
141 if (is_string($value)) {
142 $value = "'" . mysqli_real_escape_string($db, $value) . "'";
143 //value is a string and should be quoted;
144 } else if (!is_numeric($value)) {
145 //value is not a string nor numeric
146 display_error("ERROR: incorrect data type send to sql query");
154 function db_error_no ()
157 return mysqli_errno($db);
160 function db_error_msg($conn)
162 return mysqli_error($conn);
165 function db_insert_id()
167 global $db_last_inserted_id, $sql_trail, $db;
169 return $sql_trail ? $db_last_inserted_id : mysqli_insert_id($db);
172 function db_num_affected_rows()
175 return mysqli_affected_rows($db);
178 function db_field_name($result, $n)
180 $fieldinfo = mysqli_fetch_field_direct($result, $n);
181 return $fieldinfo->name;
184 function db_create_db($connection)
186 $db = mysqli_connect($connection["host"], $connection["dbuser"], $connection["dbpassword"]);
187 if (strncmp(db_get_version(), "5.6", 3) >= 0)
188 db_query("SET sql_mode = ''");
189 if (!mysqli_select_db($db, $connection["dbname"]))
191 $sql = "CREATE DATABASE IF NOT EXISTS " . $connection["dbname"] . "";
192 if (!mysqli_query($db, $sql) || !mysqli_select_db($db, $connection["dbname"]))
198 function db_drop_db($connection)
201 if ($connection["tbpref"] == "")
204 $sql = "DROP DATABASE IF EXISTS " . $connection["dbname"] . "";
205 return mysqli_query($db, $sql);
209 $res = db_query("show table status");
210 $all_tables = array();
211 while($row = db_fetch($res))
212 $all_tables[] = $row;
213 // get table structures
214 foreach ($all_tables as $table)
216 if (strpos($table['Name'], $connection["tbpref"]) === 0)
217 db_query("DROP TABLE `".$table['Name'] . "`");
219 //deleting the tables, how??
224 function db_close($dbase = null)
230 return mysqli_close($dbase);
233 function db_extension_exists()
235 return function_exists('mysqli_connect');
238 function db_escape_function($string)
242 return (mysqli_real_escape_string($db, $string));
246 Set mysql client encoding.
247 Default is is encoding used by default language.
249 function db_set_encoding($ui_encoding=null)
251 global $db, $dflt_lang, $installed_languages;
253 if (!isset($ui_encoding))
255 $lang = array_search_value($dflt_lang, $installed_languages, 'code');
256 $ui_encoding = strtoupper($lang['encoding']);
259 if ($mysql_enc = get_mysql_encoding_name($ui_encoding))
260 mysqli_set_charset($db, $mysql_enc);
263 function db_get_charset($db)
265 return mysqli_character_set_name($db);
268 function db_set_charset($db, $charset)
272 return mysqli_set_charset($db, $charset);