<?php
header("Expires: Mon, 7 Apr 1967 09:00:00 GMT"); // expires in the past
header("Last-Modified: " . gmdate("D, d M Y H:i:s") . " GMT"); // Last modified, right now
header("Cache-Control: no-cache, must-revalidate"); // Prevent caching, HTTP/1.1
header("Pragma: no-cache"); // Prevent caching, HTTP/1.0
$host = "localhost";
$user = "user";
$pass = "password";
$db = "candle";
$error = 0;
mysql_connect($host, $user, $pass) OR die ("Could not connect to the server.");
mysql_select_db($db) OR die("Could not connect to the database.");
if ($_POST['submit'] && $_POST['name'] && $_POST['message']) {
$name = $_POST['name'];
$message = $_POST['message'];
if (strlen($message) > 100) {
echo "your message is longer than 100 chars<br /><a href=\"index.php\">Back to messages</a>";
$error = 1;
}
if (strlen($name) > 25) {
echo "your name is longer than 25 chars<br /><a href=\"index.php\">Back to messages</a>";
$error = 1;
}
$message = htmlspecialchars($message);
$message = nl2br($message);
$message = mysql_real_escape_string($message);
$name = htmlspecialchars($name);
$name = mysql_real_escape_string($name);
if ($error != 1) {
mysql_query("INSERT INTO candle (name, message) VALUES ('$name', '$message')");
}
}
?>
<html>
<head>
<title>Light a Memorial Candle</title>
</head>
<body bgcolor="#000000" text="#804040" link="#804040" alink="#bc8f8f" vlink="#804040">
<font face="Times New Roman"><EM>
<table cellspacing="0" cellpadding="3" width="100%" align="center" border="0">
<tbody>
<tr></tr>
<tr>
<td bgcolor="#804040"></td>
<td width="85%">
<center><h1>In Loving Memory of Daniel J. Sorum</h1></center>
<p> </p>
<center>
<table cellspacing="16"><tr align="center">
<?
$interval = 0;
if ($error != 1) {
$result = mysql_query("SELECT * FROM candle ORDER BY id DESC LIMIT 0,10");
while ($row = mysql_fetch_array($result)) {
?>
<td><table border="3" width="185" height="200"><td align="center">
<img src="images/candle.gif" width="70" height="79"><br><b><? echo $row['name'];?></b><br><br><? echo $row['message'];?>
</td></table></td></EM>
<?
$interval++;
if($interval == 3)
{
print("</tr><tr>");
$interval = 0;
}
}
}
?>
</td>
</tr>
</table>
<p> </p>
<p> </p>
<center>
<form method="post" action="index.php" >
In Memory of:<br /><input type="text" maxlength="25" name="name"><br /><br />
Message: (3 lines max)<br /><textarea name="message" cols="30" rows="3"></textarea><br /><br />
<input type="submit" name="submit" value="Submit"> <input type="reset">
</form>
</center>
<p> </p>
<p> </p>
</td>
<td bgcolor="#804040"></td>
</tr>
</tbody>
</table>
</body>
</html>