Fixed access control issues on finish page of Direct Sales and Purchase Invoice
[fa-stable.git] / sales / sales_order_entry.php
1 <?php
2 /**********************************************************************
3     Copyright (C) FrontAccounting, LLC.
4         Released under the terms of the GNU General Public License, GPL, 
5         as published by the Free Software Foundation, either version 3 
6         of the License, or (at your option) any later version.
7     This program is distributed in the hope that it will be useful,
8     but WITHOUT ANY WARRANTY; without even the implied warranty of
9     MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  
10     See the License here <http://www.gnu.org/licenses/gpl-3.0.html>.
11 ***********************************************************************/
12 //-----------------------------------------------------------------------------
13 //
14 //      Entry/Modify Sales Quotations
15 //      Entry/Modify Sales Order
16 //      Entry Direct Delivery
17 //      Entry Direct Invoice
18 //
19
20 $path_to_root = "..";
21 $page_security = 'SA_SALESORDER';
22
23 include_once($path_to_root . "/sales/includes/cart_class.inc");
24 include_once($path_to_root . "/includes/session.inc");
25 include_once($path_to_root . "/sales/includes/sales_ui.inc");
26 include_once($path_to_root . "/sales/includes/ui/sales_order_ui.inc");
27 include_once($path_to_root . "/sales/includes/sales_db.inc");
28 include_once($path_to_root . "/sales/includes/db/sales_types_db.inc");
29 include_once($path_to_root . "/reporting/includes/reporting.inc");
30
31 set_page_security( @$_SESSION['Items']->trans_type,
32         array(  ST_SALESORDER=>'SA_SALESORDER',
33                         ST_SALESQUOTE => 'SA_SALESQUOTE',
34                         ST_CUSTDELIVERY => 'SA_SALESDELIVERY',
35                         ST_SALESINVOICE => 'SA_SALESINVOICE'),
36         array(  'NewOrder' => 'SA_SALESORDER',
37                         'ModifyOrderNumber' => 'SA_SALESORDER',
38                         'AddedID' => 'SA_SALESORDER',
39                         'UpdatedID' => 'SA_SALESORDER',
40                         'NewQuotation' => 'SA_SALESQUOTE',
41                         'ModifyQuotationNumber' => 'SA_SALESQUOTE',
42                         'NewQuoteToSalesOrder' => 'SA_SALESQUOTE',
43                         'AddedQU' => 'SA_SALESQUOTE',
44                         'UpdatedQU' => 'SA_SALESQUOTE',
45                         'NewDelivery' => 'SA_SALESDELIVERY',
46                         'AddedDN' => 'SA_SALESDELIVERY', 
47                         'NewInvoice' => 'SA_SALESINVOICE',
48                         'AddedDI' => 'SA_SALESINVOICE'
49                         )
50 );
51
52 $js = '';
53
54 if ($use_popup_windows) {
55         $js .= get_js_open_window(900, 500);
56 }
57
58 if ($use_date_picker) {
59         $js .= get_js_date_picker();
60 }
61
62 if (isset($_GET['NewDelivery']) && is_numeric($_GET['NewDelivery'])) {
63
64         $_SESSION['page_title'] = _($help_context = "Direct Sales Delivery");
65         create_cart(ST_CUSTDELIVERY, 0);
66
67 } elseif (isset($_GET['NewInvoice']) && is_numeric($_GET['NewInvoice'])) {
68
69         $_SESSION['page_title'] = _($help_context = "Direct Sales Invoice");
70         create_cart(ST_SALESINVOICE, 0);
71
72 } elseif (isset($_GET['ModifyOrderNumber']) && is_numeric($_GET['ModifyOrderNumber'])) {
73
74         $help_context = 'Modifying Sales Order';
75         $_SESSION['page_title'] = sprintf( _("Modifying Sales Order # %d"), $_GET['ModifyOrderNumber']);
76         create_cart(ST_SALESORDER, $_GET['ModifyOrderNumber']);
77
78 } elseif (isset($_GET['ModifyQuotationNumber']) && is_numeric($_GET['ModifyQuotationNumber'])) {
79
80         $help_context = 'Modifying Sales Quotation';
81         $_SESSION['page_title'] = sprintf( _("Modifying Sales Quotation # %d"), $_GET['ModifyQuotationNumber']);
82         create_cart(ST_SALESQUOTE, $_GET['ModifyQuotationNumber']);
83
84 } elseif (isset($_GET['NewOrder'])) {
85
86         $_SESSION['page_title'] = _($help_context = "New Sales Order Entry");
87         create_cart(ST_SALESORDER, 0);
88 } elseif (isset($_GET['NewQuotation'])) {
89
90         $_SESSION['page_title'] = _($help_context = "New Sales Quotation Entry");
91         create_cart(ST_SALESQUOTE, 0);
92 } elseif (isset($_GET['NewQuoteToSalesOrder'])) {
93         $_SESSION['page_title'] = _($help_context = "Sales Order Entry");
94         create_cart(ST_SALESQUOTE, $_GET['NewQuoteToSalesOrder']);
95 }
96
97 page($_SESSION['page_title'], false, false, "", $js);
98 //-----------------------------------------------------------------------------
99
100 if (list_updated('branch_id')) {
101         // when branch is selected via external editor also customer can change
102         $br = get_branch(get_post('branch_id'));
103         $_POST['customer_id'] = $br['debtor_no'];
104         $Ajax->activate('customer_id');
105 }
106
107 if (isset($_GET['AddedID'])) {
108         $order_no = $_GET['AddedID'];
109         display_notification_centered(sprintf( _("Order # %d has been entered."),$order_no));
110
111         submenu_view(_("&View This Order"), ST_SALESORDER, $order_no);
112
113         submenu_print(_("&Print This Order"), ST_SALESORDER, $order_no, 'prtopt');
114         submenu_print(_("&Email This Order"), ST_SALESORDER, $order_no, null, 1);
115         set_focus('prtopt');
116         
117         submenu_option(_("Make &Delivery Against This Order"),
118                 "/sales/customer_delivery.php?OrderNumber=$order_no");
119
120         submenu_option(_("Work &Order Entry"),  "/manufacturing/work_order_entry.php?");
121
122         submenu_option(_("Enter a &New Order"), "/sales/sales_order_entry.php?NewOrder=0");
123
124         display_footer_exit();
125
126 } elseif (isset($_GET['UpdatedID'])) {
127         $order_no = $_GET['UpdatedID'];
128
129         display_notification_centered(sprintf( _("Order # %d has been updated."),$order_no));
130
131         submenu_view(_("&View This Order"), ST_SALESORDER, $order_no);
132
133         submenu_print(_("&Print This Order"), ST_SALESORDER, $order_no, 'prtopt');
134         submenu_print(_("&Email This Order"), ST_SALESORDER, $order_no, null, 1);
135         set_focus('prtopt');
136
137         submenu_option(_("Confirm Order Quantities and Make &Delivery"),
138                 "/sales/customer_delivery.php?OrderNumber=$order_no");
139
140         submenu_option(_("Select A Different &Order"),
141                 "/sales/inquiry/sales_orders_view.php?OutstandingOnly=1");
142
143         display_footer_exit();
144
145 } elseif (isset($_GET['AddedQU'])) {
146         $order_no = $_GET['AddedQU'];
147         display_notification_centered(sprintf( _("Quotation # %d has been entered."),$order_no));
148
149         submenu_view(_("&View This Quotation"), ST_SALESQUOTE, $order_no);
150
151         submenu_print(_("&Print This Quotation"), ST_SALESQUOTE, $order_no, 'prtopt');
152         submenu_print(_("&Email This Quotation"), ST_SALESQUOTE, $order_no, null, 1);
153         set_focus('prtopt');
154         
155         submenu_option(_("Make &Sales Order Against This Quotation"),
156                 "/sales/sales_order_entry.php?NewQuoteToSalesOrder=$order_no");
157
158         submenu_option(_("Enter a New &Quotation"),     "/sales/sales_order_entry.php?NewQuotation=0");
159
160         display_footer_exit();
161
162 } elseif (isset($_GET['UpdatedQU'])) {
163         $order_no = $_GET['UpdatedQU'];
164
165         display_notification_centered(sprintf( _("Quotation # %d has been updated."),$order_no));
166
167         submenu_view(_("&View This Quotation"), ST_SALESQUOTE, $order_no);
168
169         submenu_print(_("&Print This Quotation"), ST_SALESQUOTE, $order_no, 'prtopt');
170         submenu_print(_("&Email This Quotation"), ST_SALESQUOTE, $order_no, null, 1);
171         set_focus('prtopt');
172
173         submenu_option(_("Make &Sales Order Against This Quotation"),
174                 "/sales/sales_order_entry.php?NewQuoteToSalesOrder=$order_no");
175
176         submenu_option(_("Select A Different &Quotation"),
177                 "/sales/inquiry/sales_orders_view.php?type=".ST_SALESQUOTE);
178
179         display_footer_exit();
180 } elseif (isset($_GET['AddedDN'])) {
181         $delivery = $_GET['AddedDN'];
182
183         display_notification_centered(sprintf(_("Delivery # %d has been entered."),$delivery));
184
185         submenu_view(_("&View This Delivery"), ST_CUSTDELIVERY, $delivery);
186
187         submenu_print(_("&Print Delivery Note"), ST_CUSTDELIVERY, $delivery, 'prtopt');
188         submenu_print(_("&Email Delivery Note"), ST_CUSTDELIVERY, $delivery, null, 1);
189         submenu_print(_("P&rint as Packing Slip"), ST_CUSTDELIVERY, $delivery, 'prtopt', null, 1);
190         submenu_print(_("E&mail as Packing Slip"), ST_CUSTDELIVERY, $delivery, null, 1, 1);
191         set_focus('prtopt');
192
193         display_note(get_gl_view_str(ST_CUSTDELIVERY, $delivery, _("View the GL Journal Entries for this Dispatch")),0, 1);
194
195         submenu_option(_("Make &Invoice Against This Delivery"),
196                 "/sales/customer_invoice.php?DeliveryNumber=$delivery");
197
198         if ((isset($_GET['Type']) && $_GET['Type'] == 1))
199                 submenu_option(_("Enter a New Template &Delivery"),
200                         "/sales/inquiry/sales_orders_view.php?DeliveryTemplates=Yes");
201         else
202                 submenu_option(_("Enter a &New Delivery"), 
203                         "/sales/sales_order_entry.php?NewDelivery=0");
204
205         display_footer_exit();
206
207 } elseif (isset($_GET['AddedDI'])) {
208         $invoice = $_GET['AddedDI'];
209
210         display_notification_centered(sprintf(_("Invoice # %d has been entered."), $invoice));
211
212         submenu_view(_("&View This Invoice"), ST_SALESINVOICE, $invoice);
213
214         submenu_print(_("&Print Sales Invoice"), ST_SALESINVOICE, $invoice."-".ST_SALESINVOICE, 'prtopt');
215         submenu_print(_("&Email Sales Invoice"), ST_SALESINVOICE, $invoice."-".ST_SALESINVOICE, null, 1);
216         set_focus('prtopt');
217         
218         $sql = "SELECT trans_type_from, trans_no_from FROM ".TB_PREF."cust_allocations
219                         WHERE trans_type_to=".ST_SALESINVOICE." AND trans_no_to=".db_escape($invoice);
220         $result = db_query($sql, "could not retrieve customer allocation");
221         $row = db_fetch($result);
222         if ($row !== false)
223                 submenu_print(_("Print &Receipt"), $row['trans_type_from'], $row['trans_no_from']."-".$row['trans_type_from'], 'prtopt');
224
225         display_note(get_gl_view_str(ST_SALESINVOICE, $invoice, _("View the GL &Journal Entries for this Invoice")),0, 1);
226
227         if ((isset($_GET['Type']) && $_GET['Type'] == 1))
228                 submenu_option(_("Enter a &New Template Invoice"), 
229                         "/sales/inquiry/sales_orders_view.php?InvoiceTemplates=Yes");
230         else
231                 submenu_option(_("Enter a &New Direct Invoice"),
232                         "/sales/sales_order_entry.php?NewInvoice=0");
233
234         submenu_option(_("Add an Attachment"), "/admin/attachments.php?filterType=".ST_SALESINVOICE."&trans_no=$invoice");
235
236         display_footer_exit();
237 } else
238         check_edit_conflicts();
239 //-----------------------------------------------------------------------------
240
241 function copy_to_cart()
242 {
243         $cart = &$_SESSION['Items'];
244
245         $cart->reference = $_POST['ref'];
246
247         $cart->Comments =  $_POST['Comments'];
248
249         $cart->document_date = $_POST['OrderDate'];
250
251         $newpayment = false;
252         if (isset($_POST['payment']) && ($cart->payment != $_POST['payment'])) {
253                 $cart->payment = $_POST['payment'];
254                 $cart->payment_terms = get_payment_terms($_POST['payment']);
255                 $newpayment = true;
256         }
257         if ($cart->payment_terms['cash_sale']) {
258                 if ($newpayment) {
259                         $cart->due_date = $cart->document_date;
260                         $cart->phone = $cart->cust_ref = $cart->delivery_address = '';
261                         $cart->ship_via = 1;
262                         $cart->deliver_to = '';
263                 }
264         } else {
265                 $cart->due_date = $_POST['delivery_date'];
266                 $cart->cust_ref = $_POST['cust_ref'];
267                 $cart->deliver_to = $_POST['deliver_to'];
268                 $cart->delivery_address = $_POST['delivery_address'];
269                 $cart->phone = $_POST['phone'];
270                 $cart->ship_via = $_POST['ship_via'];
271         }
272         $cart->Location = $_POST['Location'];
273         $cart->freight_cost = input_num('freight_cost');
274         if (isset($_POST['email']))
275                 $cart->email =$_POST['email'];
276         else
277                 $cart->email = '';
278         $cart->customer_id      = $_POST['customer_id'];
279         $cart->Branch = $_POST['branch_id'];
280         $cart->sales_type = $_POST['sales_type'];
281
282         if ($cart->trans_type!=ST_SALESORDER && $cart->trans_type!=ST_SALESQUOTE) { // 2008-11-12 Joe Hunt
283                 $cart->dimension_id = $_POST['dimension_id'];
284                 $cart->dimension2_id = $_POST['dimension2_id'];
285         }
286 }
287
288 //-----------------------------------------------------------------------------
289
290 function copy_from_cart()
291 {
292         $cart = &$_SESSION['Items'];
293         $_POST['ref'] = $cart->reference;
294         $_POST['Comments'] = $cart->Comments;
295
296         $_POST['OrderDate'] = $cart->document_date;
297         $_POST['delivery_date'] = $cart->due_date;
298         $_POST['cust_ref'] = $cart->cust_ref;
299         $_POST['freight_cost'] = price_format($cart->freight_cost);
300
301         $_POST['deliver_to'] = $cart->deliver_to;
302         $_POST['delivery_address'] = $cart->delivery_address;
303         $_POST['phone'] = $cart->phone;
304         $_POST['Location'] = $cart->Location;
305         $_POST['ship_via'] = $cart->ship_via;
306
307         $_POST['customer_id'] = $cart->customer_id;
308
309         $_POST['branch_id'] = $cart->Branch;
310         $_POST['sales_type'] = $cart->sales_type;
311         // POS 
312         $_POST['payment'] = $cart->payment;
313         if ($cart->trans_type!=ST_SALESORDER && $cart->trans_type!=ST_SALESQUOTE) { // 2008-11-12 Joe Hunt
314                 $_POST['dimension_id'] = $cart->dimension_id;
315                 $_POST['dimension2_id'] = $cart->dimension2_id;
316         }       
317         $_POST['cart_id'] = $cart->cart_id;
318                 
319 }
320 //--------------------------------------------------------------------------------
321
322 function line_start_focus() {
323   global        $Ajax;
324
325   $Ajax->activate('items_table');
326   set_focus('_stock_id_edit');
327 }
328
329 //--------------------------------------------------------------------------------
330 function can_process() {
331         global $Refs;
332
333         if (!get_post('customer_id')) 
334         {
335                 display_error(_("There is no customer selected."));
336                 set_focus('customer_id');
337                 return false;
338         } 
339         
340         if (!get_post('branch_id')) 
341         {
342                 display_error(_("This customer has no branch defined."));
343                 set_focus('branch_id');
344                 return false;
345         } 
346         
347         if (!is_date($_POST['OrderDate'])) {
348                 display_error(_("The entered date is invalid."));
349                 set_focus('OrderDate');
350                 return false;
351         }
352         if ($_SESSION['Items']->trans_type!=ST_SALESORDER && $_SESSION['Items']->trans_type!=ST_SALESQUOTE && !is_date_in_fiscalyear($_POST['OrderDate'])) {
353                 display_error(_("The entered date is not in fiscal year"));
354                 set_focus('OrderDate');
355                 return false;
356         }
357         if (count($_SESSION['Items']->line_items) == 0) {
358                 display_error(_("You must enter at least one non empty item line."));
359                 set_focus('AddItem');
360                 return false;
361         }
362         if ($_SESSION['Items']->payment_terms['cash_sale'] == 0) {
363         if (strlen($_POST['deliver_to']) <= 1) {
364                 display_error(_("You must enter the person or company to whom delivery should be made to."));
365                 set_focus('deliver_to');
366                 return false;
367         }
368
369
370                 if ($_SESSION['Items']->trans_type != ST_SALESQUOTE && strlen($_POST['delivery_address']) <= 1) {
371                         display_error( _("You should enter the street address in the box provided. Orders cannot be accepted without a valid street address."));
372                         set_focus('delivery_address');
373                         return false;
374                 }
375
376                 if ($_POST['freight_cost'] == "")
377                         $_POST['freight_cost'] = price_format(0);
378
379                 if (!check_num('freight_cost',0)) {
380                         display_error(_("The shipping cost entered is expected to be numeric."));
381                         set_focus('freight_cost');
382                         return false;
383                 }
384                 if (!is_date($_POST['delivery_date'])) {
385                         if ($_SESSION['Items']->trans_type==ST_SALESQUOTE)
386                                 display_error(_("The Valid date is invalid."));
387                         else    
388                                 display_error(_("The delivery date is invalid."));
389                         set_focus('delivery_date');
390                         return false;
391                 }
392                 //if (date1_greater_date2($_SESSION['Items']->document_date, $_POST['delivery_date'])) {
393                 if (date1_greater_date2($_POST['OrderDate'], $_POST['delivery_date'])) {
394                         if ($_SESSION['Items']->trans_type==ST_SALESQUOTE)
395                                 display_error(_("The requested valid date is before the date of the quotation."));
396                         else    
397                                 display_error(_("The requested delivery date is before the date of the order."));
398                         set_focus('delivery_date');
399                         return false;
400                 }
401         }
402         else
403         {
404                 if (!db_has_cash_accounts())
405                 {
406                         display_error(_("You need to define a cash account for your Sales Point."));
407                         return false;
408                 }       
409         }       
410         if (!$Refs->is_valid($_POST['ref'])) {
411                 display_error(_("You must enter a reference."));
412                 set_focus('ref');
413                 return false;
414         }
415         if (!db_has_currency_rates($_SESSION['Items']->customer_currency, $_POST['OrderDate']))
416                 return false;
417         
418         if ($_SESSION['Items']->get_items_total() < 0) {
419                 display_error("Invoice total amount cannot be less than zero.");
420                 return false;
421         }
422         return true;
423 }
424
425 //-----------------------------------------------------------------------------
426
427 if (isset($_POST['update'])) {
428         copy_to_cart();
429         $Ajax->activate('items_table');
430 }
431
432 if (isset($_POST['ProcessOrder']) && can_process()) {
433         copy_to_cart();
434         $modified = ($_SESSION['Items']->trans_no != 0);
435         $so_type = $_SESSION['Items']->so_type;
436
437         $ret = $_SESSION['Items']->write(1);
438         if ($ret == -1)
439         {
440                 display_error(_("The entered reference is already in use."));
441                 set_focus('ref');
442         }
443         else
444         {
445                 if (count($messages)) { // abort on failure or error messages are lost
446                         $Ajax->activate('_page_body');
447                         display_footer_exit();
448                 }
449                 $trans_no = key($_SESSION['Items']->trans_no);
450                 $trans_type = $_SESSION['Items']->trans_type;
451                 new_doc_date($_SESSION['Items']->document_date);
452                 processing_end();
453                 if ($modified) {
454                         if ($trans_type == ST_SALESQUOTE)
455                                 meta_forward($_SERVER['PHP_SELF'], "UpdatedQU=$trans_no");
456                         else    
457                                 meta_forward($_SERVER['PHP_SELF'], "UpdatedID=$trans_no");
458                 } elseif ($trans_type == ST_SALESORDER) {
459                         meta_forward($_SERVER['PHP_SELF'], "AddedID=$trans_no");
460                 } elseif ($trans_type == ST_SALESQUOTE) {
461                         meta_forward($_SERVER['PHP_SELF'], "AddedQU=$trans_no");
462                 } elseif ($trans_type == ST_SALESINVOICE) {
463                         meta_forward($_SERVER['PHP_SELF'], "AddedDI=$trans_no&Type=$so_type");
464                 } else {
465                         meta_forward($_SERVER['PHP_SELF'], "AddedDN=$trans_no&Type=$so_type");
466                 }
467         }       
468 }
469
470 //--------------------------------------------------------------------------------
471
472 function check_item_data()
473 {
474         global $SysPrefs, $allow_negative_prices;
475         
476         $is_inventory_item = is_inventory_item(get_post('stock_id'));
477         if(!get_post('stock_id_text', true)) {
478                 display_error( _("Item description cannot be empty."));
479                 set_focus('stock_id_edit');
480                 return false;
481         }
482         elseif (!check_num('qty', 0) || !check_num('Disc', 0, 100)) {
483                 display_error( _("The item could not be updated because you are attempting to set the quantity ordered to less than 0, or the discount percent to more than 100."));
484                 set_focus('qty');
485                 return false;
486         } elseif (!check_num('price', 0) && (!$allow_negative_prices || $is_inventory_item)) {
487                 display_error( _("Price for inventory item must be entered and can not be less than 0"));
488                 set_focus('price');
489                 return false;
490         } elseif (isset($_POST['LineNo']) && isset($_SESSION['Items']->line_items[$_POST['LineNo']])
491             && !check_num('qty', $_SESSION['Items']->line_items[$_POST['LineNo']]->qty_done)) {
492
493                 set_focus('qty');
494                 display_error(_("You attempting to make the quantity ordered a quantity less than has already been delivered. The quantity delivered cannot be modified retrospectively."));
495                 return false;
496         } // Joe Hunt added 2008-09-22 -------------------------
497         elseif ($is_inventory_item && $_SESSION['Items']->trans_type!=ST_SALESORDER && $_SESSION['Items']->trans_type!=ST_SALESQUOTE 
498                 && !$SysPrefs->allow_negative_stock())
499         {
500                 $qoh = get_qoh_on_date($_POST['stock_id'], $_POST['Location'], $_POST['OrderDate']);
501                 if (input_num('qty') > $qoh)
502                 {
503                         $stock = get_item($_POST['stock_id']);
504                         display_error(_("The delivery cannot be processed because there is an insufficient quantity for item:") .
505                                 " " . $stock['stock_id'] . " - " . $stock['description'] . " - " .
506                                 _("Quantity On Hand") . " = " . number_format2($qoh, get_qty_dec($_POST['stock_id'])));
507                         return false;
508                 }
509                 return true;
510         }
511         $cost_home = get_standard_cost(get_post('stock_id')); // Added 2011-03-27 Joe Hunt
512         $cost = $cost_home / get_exchange_rate_from_home_currency($_SESSION['Items']->customer_currency, $_SESSION['Items']->document_date);
513         if (input_num('price') < $cost)
514         {
515                 $dec = user_price_dec();
516                 $curr = $_SESSION['Items']->customer_currency;
517                 $price = number_format2(input_num('price'), $dec);
518                 if ($cost_home == $cost)
519                         $std_cost = number_format2($cost_home, $dec);
520                 else
521                 {
522                         $price = $curr . " " . $price;
523                         $std_cost = $curr . " " . number_format2($cost, $dec);
524                 }
525                 display_warning(sprintf(_("Price %s is below Standard Cost %s"), $price, $std_cost));
526         }       
527         return true;
528 }
529
530 //--------------------------------------------------------------------------------
531
532 function handle_update_item()
533 {
534         if ($_POST['UpdateItem'] != '' && check_item_data()) {
535                 $_SESSION['Items']->update_cart_item($_POST['LineNo'],
536                  input_num('qty'), input_num('price'),
537                  input_num('Disc') / 100, $_POST['item_description'] );
538         }
539         page_modified();
540   line_start_focus();
541 }
542
543 //--------------------------------------------------------------------------------
544
545 function handle_delete_item($line_no)
546 {
547     if ($_SESSION['Items']->some_already_delivered($line_no) == 0) {
548             $_SESSION['Items']->remove_from_cart($line_no);
549     } else {
550         display_error(_("This item cannot be deleted because some of it has already been delivered."));
551     }
552     line_start_focus();
553 }
554
555 //--------------------------------------------------------------------------------
556
557 function handle_new_item()
558 {
559
560         if (!check_item_data()) {
561                         return;
562         }
563         add_to_order($_SESSION['Items'], get_post('stock_id'), input_num('qty'),
564                 input_num('price'), input_num('Disc') / 100, get_post('stock_id_text'));
565
566         unset($_POST['_stock_id_edit'], $_POST['stock_id']);
567         page_modified();
568         line_start_focus();
569 }
570
571 //--------------------------------------------------------------------------------
572
573 function  handle_cancel_order()
574 {
575         global $path_to_root, $Ajax;
576
577
578         if ($_SESSION['Items']->trans_type == ST_CUSTDELIVERY) {
579                 display_notification(_("Direct delivery entry has been cancelled as requested."), 1);
580                 submenu_option(_("Enter a New Sales Delivery"), "/sales/sales_order_entry.php?NewDelivery=1");
581
582         } elseif ($_SESSION['Items']->trans_type == ST_SALESINVOICE) {
583                 display_notification(_("Direct invoice entry has been cancelled as requested."), 1);
584                 submenu_option(_("Enter a New Sales Invoice"),  "/sales/sales_order_entry.php?NewInvoice=1");
585         } else {
586                 if ($_SESSION['Items']->trans_no != 0) {
587                         if ($_SESSION['Items']->trans_type == ST_SALESORDER && 
588                                 sales_order_has_deliveries(key($_SESSION['Items']->trans_no)))
589                                 display_error(_("This order cannot be cancelled because some of it has already been invoiced or dispatched. However, the line item quantities may be modified."));
590                         else {
591                                 delete_sales_order(key($_SESSION['Items']->trans_no), $_SESSION['Items']->trans_type);
592                                 if ($_SESSION['Items']->trans_type == ST_SALESQUOTE)
593                                 {
594                                         display_notification(_("This sales quotation has been cancelled as requested."), 1);
595                                         submenu_option(_("Enter a New Sales Quotation"), "/sales/sales_order_entry.php?NewQuotation=Yes");
596                                 }
597                                 else
598                                 {
599                                         display_notification(_("This sales order has been cancelled as requested."), 1);
600                                         submenu_option(_("Enter a New Sales Order"), "/sales/sales_order_entry.php?NewOrder=Yes");
601                                 }
602                         }       
603                 } else {
604                         processing_end();
605                         meta_forward($path_to_root.'/index.php','application=orders');
606                 }
607         }
608         $Ajax->activate('_page_body');
609         processing_end();
610         display_footer_exit();
611 }
612
613 //--------------------------------------------------------------------------------
614
615 function create_cart($type, $trans_no)
616
617         global $Refs;
618
619         if (!$_SESSION['SysPrefs']->db_ok) // create_cart is called before page() where the check is done
620                 return;
621
622         processing_start();
623
624         if (isset($_GET['NewQuoteToSalesOrder']))
625         {
626                 $trans_no = $_GET['NewQuoteToSalesOrder'];
627                 $doc = new Cart(ST_SALESQUOTE, $trans_no, true);
628                 $doc->Comments = _("Sales Quotation") . " # " . $trans_no;
629                 $_SESSION['Items'] = $doc;
630         }       
631         elseif($type != ST_SALESORDER && $type != ST_SALESQUOTE && $trans_no != 0) { // this is template
632
633                 $doc = new Cart(ST_SALESORDER, array($trans_no));
634                 $doc->trans_type = $type;
635                 $doc->trans_no = 0;
636                 $doc->document_date = new_doc_date();
637                 if ($type == ST_SALESINVOICE) {
638                         $doc->due_date = get_invoice_duedate($doc->payment, $doc->document_date);
639                         $doc->pos = get_sales_point(user_pos());
640                 } else
641                         $doc->due_date = $doc->document_date;
642                 $doc->reference = $Refs->get_next($doc->trans_type);
643                 //$doc->Comments='';
644                 foreach($doc->line_items as $line_no => $line) {
645                         $doc->line_items[$line_no]->qty_done = 0;
646                 }
647                 $_SESSION['Items'] = $doc;
648         } else
649                 $_SESSION['Items'] = new Cart($type, array($trans_no));
650         copy_from_cart();
651 }
652
653 //--------------------------------------------------------------------------------
654
655 if (isset($_POST['CancelOrder']))
656         handle_cancel_order();
657
658 $id = find_submit('Delete');
659 if ($id!=-1)
660         handle_delete_item($id);
661
662 if (isset($_POST['UpdateItem']))
663         handle_update_item();
664
665 if (isset($_POST['AddItem']))
666         handle_new_item();
667
668 if (isset($_POST['CancelItemChanges'])) {
669         line_start_focus();
670 }
671
672 //--------------------------------------------------------------------------------
673 check_db_has_stock_items(_("There are no inventory items defined in the system."));
674
675 check_db_has_customer_branches(_("There are no customers, or there are no customers with branches. Please define customers and customer branches."));
676
677 if ($_SESSION['Items']->trans_type == ST_SALESINVOICE) {
678         $idate = _("Invoice Date:");
679         $orderitems = _("Sales Invoice Items");
680         $deliverydetails = _("Enter Delivery Details and Confirm Invoice");
681         $cancelorder = _("Cancel Invoice");
682         $porder = _("Place Invoice");
683 } elseif ($_SESSION['Items']->trans_type == ST_CUSTDELIVERY) {
684         $idate = _("Delivery Date:");
685         $orderitems = _("Delivery Note Items");
686         $deliverydetails = _("Enter Delivery Details and Confirm Dispatch");
687         $cancelorder = _("Cancel Delivery");
688         $porder = _("Place Delivery");
689 } elseif ($_SESSION['Items']->trans_type == ST_SALESQUOTE) {
690         $idate = _("Quotation Date:");
691         $orderitems = _("Sales Quotation Items");
692         $deliverydetails = _("Enter Delivery Details and Confirm Quotation");
693         $cancelorder = _("Cancel Quotation");
694         $porder = _("Place Quotation");
695         $corder = _("Commit Quotations Changes");
696 } else {
697         $idate = _("Order Date:");
698         $orderitems = _("Sales Order Items");
699         $deliverydetails = _("Enter Delivery Details and Confirm Order");
700         $cancelorder = _("Cancel Order");
701         $porder = _("Place Order");
702         $corder = _("Commit Order Changes");
703 }
704 start_form();
705
706 hidden('cart_id');
707 $customer_error = display_order_header($_SESSION['Items'],
708         ($_SESSION['Items']->any_already_delivered() == 0), $idate);
709
710 if ($customer_error == "") {
711         start_table(TABLESTYLE, "width=80%", 10);
712         echo "<tr><td>";
713         display_order_summary($orderitems, $_SESSION['Items'], true);
714         echo "</td></tr>";
715         echo "<tr><td>";
716         display_delivery_details($_SESSION['Items']);
717         echo "</td></tr>";
718         end_table(1);
719
720         if ($_SESSION['Items']->trans_no == 0) {
721
722                 submit_center_first('ProcessOrder', $porder,
723                     _('Check entered data and save document'), 'default');
724                 submit_js_confirm('CancelOrder', _('You are about to void this Document.\nDo you want to continue?'));
725         } else {
726                 submit_center_first('ProcessOrder', $corder,
727                     _('Validate changes and update document'), 'default');
728         }
729
730         submit_center_last('CancelOrder', $cancelorder,
731            _('Cancels document entry or removes sales order when editing an old document'));
732 } else {
733         display_error($customer_error);
734 }
735 end_form();
736 end_page();
737 ?>