2014-05-13 05:14:09 +00:00
|
|
|
<?php
|
|
|
|
/**
|
2014-06-18 09:40:31 +00:00
|
|
|
* Handles the database connections. It uses PDO to connect to the different databases. It will use the argument of the constructor to setup a connection to the database
|
|
|
|
* with the matching entry in the $cfg global variable.
|
|
|
|
*
|
|
|
|
* @author Daan Janssens, mentored by Matthew Lagoe
|
|
|
|
*/
|
|
|
|
class DBLayer {
|
2014-05-13 05:14:09 +00:00
|
|
|
|
2014-06-18 09:40:31 +00:00
|
|
|
private $PDO;
|
|
|
|
/**
|
|
|
|
* *< The PDO object, instantiated by the constructor
|
|
|
|
*/
|
2014-05-13 05:14:09 +00:00
|
|
|
|
|
|
|
/**
|
2014-06-18 09:40:31 +00:00
|
|
|
* The constructor.
|
|
|
|
* Instantiates the PDO object attribute by connecting to the arguments matching database(the db info is stored in the $cfg global var)
|
|
|
|
*
|
|
|
|
* @param $db String, the name of the databases entry in the $cfg global var.
|
|
|
|
*/
|
|
|
|
function __construct( $db, $dbn = null )
|
|
|
|
{
|
|
|
|
if ( $db != "install" ) {
|
|
|
|
|
2014-05-13 05:14:09 +00:00
|
|
|
global $cfg;
|
2014-06-18 09:40:31 +00:00
|
|
|
$dsn = "mysql:";
|
|
|
|
$dsn .= "host=" . $cfg['db'][$db]['host'] . ";";
|
|
|
|
$dsn .= "dbname=" . $cfg['db'][$db]['name'] . ";";
|
|
|
|
$dsn .= "port=" . $cfg['db'][$db]['port'] . ";";
|
|
|
|
|
|
|
|
$opt = array(
|
|
|
|
PDO :: ATTR_ERRMODE => PDO :: ERRMODE_EXCEPTION,
|
|
|
|
PDO :: ATTR_DEFAULT_FETCH_MODE => PDO :: FETCH_ASSOC
|
|
|
|
);
|
|
|
|
$this -> PDO = new PDO( $dsn, $cfg['db'][$db]['user'], $cfg['db'][$db]['pass'], $opt );
|
|
|
|
} else {
|
2014-05-13 05:14:09 +00:00
|
|
|
global $cfg;
|
2014-06-18 09:40:31 +00:00
|
|
|
$dsn = "mysql:";
|
|
|
|
$dsn .= "host=" . $cfg['db'][$dbn]['host'] . ";";
|
|
|
|
$dsn .= "port=" . $cfg['db'][$dbn]['port'] . ";";
|
|
|
|
|
|
|
|
$opt = array(
|
|
|
|
PDO :: ATTR_ERRMODE => PDO :: ERRMODE_EXCEPTION,
|
|
|
|
PDO :: ATTR_DEFAULT_FETCH_MODE => PDO :: FETCH_ASSOC
|
|
|
|
);
|
|
|
|
$this -> PDO = new PDO( $dsn, $_POST['Username'], $_POST['Password'], $opt );
|
|
|
|
}
|
2014-05-13 05:14:09 +00:00
|
|
|
|
2014-06-18 09:40:31 +00:00
|
|
|
}
|
2014-05-13 05:14:09 +00:00
|
|
|
|
|
|
|
/**
|
2014-06-18 09:40:31 +00:00
|
|
|
* execute a query that doesn't have any parameters
|
|
|
|
*
|
|
|
|
* @param $query the mysql query
|
|
|
|
* @return returns a PDOStatement object
|
|
|
|
*/
|
|
|
|
public function executeWithoutParams( $query ) {
|
|
|
|
$statement = $this -> PDO -> prepare( $query );
|
|
|
|
$statement -> execute();
|
|
|
|
return $statement;
|
|
|
|
}
|
2014-05-13 05:14:09 +00:00
|
|
|
|
|
|
|
/**
|
2014-06-18 09:40:31 +00:00
|
|
|
* execute a query that has parameters
|
|
|
|
*
|
|
|
|
* @param $query the mysql query
|
|
|
|
* @param $params the parameters that are being used by the query
|
|
|
|
* @return returns a PDOStatement object
|
|
|
|
*/
|
|
|
|
public function execute( $query, $params ) {
|
|
|
|
$statement = $this -> PDO -> prepare( $query );
|
|
|
|
$statement -> execute( $params );
|
|
|
|
return $statement;
|
|
|
|
}
|
2014-05-13 05:14:09 +00:00
|
|
|
|
2014-05-27 08:49:37 +00:00
|
|
|
/**
|
2014-06-18 09:40:31 +00:00
|
|
|
* execute a query (an insertion query) that has parameters and return the id of it's insertion
|
2014-05-25 09:33:20 +00:00
|
|
|
*
|
2014-06-18 09:40:31 +00:00
|
|
|
* @param $query the mysql query
|
|
|
|
* @param $params the parameters that are being used by the query
|
|
|
|
* @return returns the id of the last inserted element.
|
|
|
|
*/
|
|
|
|
public function executeReturnId( $tb_name, $data ) {
|
|
|
|
$field_values = ':' . implode( ',:', array_keys( $data ) );
|
|
|
|
$field_options = implode( ',', array_keys( $data ) );
|
|
|
|
try {
|
|
|
|
$sth = $this -> PDO -> prepare( "INSERT INTO $tb_name ($field_options) VALUE ($field_values)" );
|
|
|
|
foreach ( $data as $key => $value )
|
|
|
|
{
|
|
|
|
$sth -> bindValue( ":$key", $value );
|
|
|
|
}
|
|
|
|
$this -> PDO -> beginTransaction();
|
|
|
|
$sth -> execute();
|
|
|
|
$lastId = $this -> PDO -> lastInsertId();
|
|
|
|
$this -> PDO -> commit();
|
|
|
|
}
|
|
|
|
catch ( Exception $e )
|
|
|
|
{
|
|
|
|
// for rolling back the changes during transaction
|
|
|
|
$this -> PDO -> rollBack();
|
|
|
|
throw new Exception( "error in inseting" );
|
|
|
|
}
|
|
|
|
return $lastId;
|
|
|
|
}
|
|
|
|
|
|
|
|
/**
|
2014-05-25 09:33:20 +00:00
|
|
|
* Select function using prepared statement
|
2014-06-18 09:40:31 +00:00
|
|
|
*
|
2014-05-25 09:33:20 +00:00
|
|
|
* @param string $tb_name Table Name to Select
|
|
|
|
* @param array $data Associative array
|
|
|
|
* @param string $where where to select
|
2014-05-27 08:49:37 +00:00
|
|
|
* @return statement object
|
2014-05-25 09:33:20 +00:00
|
|
|
*/
|
2014-06-18 09:40:31 +00:00
|
|
|
public function selectWithParameter( $param, $tb_name, $data, $where )
|
|
|
|
{
|
|
|
|
try {
|
|
|
|
$sth = $this -> PDO -> prepare( "SELECT $param FROM $tb_name WHERE $where" );
|
|
|
|
$this -> PDO -> beginTransaction();
|
|
|
|
$sth -> execute( $data );
|
|
|
|
$this -> PDO -> commit();
|
|
|
|
}
|
|
|
|
catch( Exception $e )
|
|
|
|
{
|
|
|
|
$this -> PDO -> rollBack();
|
|
|
|
throw new Exception( "error selection" );
|
|
|
|
return false;
|
|
|
|
}
|
2014-05-27 08:49:37 +00:00
|
|
|
return $sth;
|
2014-06-18 09:40:31 +00:00
|
|
|
}
|
|
|
|
|
2014-05-27 08:49:37 +00:00
|
|
|
/**
|
|
|
|
* Select function using prepared statement
|
2014-06-18 09:40:31 +00:00
|
|
|
*
|
2014-05-27 08:49:37 +00:00
|
|
|
* @param string $tb_name Table Name to Select
|
|
|
|
* @param array $data Associative array
|
|
|
|
* @param string $where where to select
|
|
|
|
* @return statement object
|
|
|
|
*/
|
2014-06-18 09:40:31 +00:00
|
|
|
public function select( $tb_name, $data , $where )
|
|
|
|
{
|
|
|
|
try {
|
|
|
|
$sth = $this -> PDO -> prepare( "SELECT * FROM $tb_name WHERE $where" );
|
|
|
|
$this -> PDO -> beginTransaction();
|
|
|
|
$sth -> execute( $data );
|
|
|
|
$this -> PDO -> commit();
|
|
|
|
}
|
|
|
|
catch( Exception $e )
|
|
|
|
{
|
|
|
|
$this -> PDO -> rollBack();
|
|
|
|
throw new Exception( "error selection" );
|
|
|
|
return false;
|
|
|
|
}
|
2014-05-25 09:33:20 +00:00
|
|
|
return $sth;
|
2014-06-18 09:40:31 +00:00
|
|
|
}
|
|
|
|
|
2014-05-25 09:33:20 +00:00
|
|
|
/**
|
|
|
|
* Update function with prepared statement
|
2014-06-18 09:40:31 +00:00
|
|
|
*
|
2014-05-25 09:33:20 +00:00
|
|
|
* @param string $tb_name name of the table
|
|
|
|
* @param array $data associative array with values
|
|
|
|
* @param string $where where part
|
|
|
|
* @throws Exception error in updating
|
|
|
|
*/
|
2014-06-18 09:40:31 +00:00
|
|
|
public function update( $tb_name, $data, $where )
|
|
|
|
{
|
|
|
|
$field_option_values = null;
|
|
|
|
foreach ( $data as $key => $value )
|
|
|
|
{
|
|
|
|
$field_option_values .= ",$key" . '=:' . $key;
|
|
|
|
}
|
|
|
|
$field_option_values = ltrim( $field_option_values, ',' );
|
|
|
|
try {
|
|
|
|
$sth = $this -> PDO -> prepare( "UPDATE $tb_name SET $field_option_values WHERE $where " );
|
|
|
|
|
|
|
|
foreach ( $data as $key => $value )
|
|
|
|
{
|
|
|
|
$sth -> bindValue( ":$key", $value );
|
|
|
|
}
|
|
|
|
$this -> PDO -> beginTransaction();
|
|
|
|
$sth -> execute();
|
|
|
|
$this -> PDO -> commit();
|
|
|
|
}
|
|
|
|
catch ( Exception $e )
|
|
|
|
{
|
|
|
|
$this -> PDO -> rollBack();
|
|
|
|
throw new Exception( 'error in updating' );
|
|
|
|
return false;
|
|
|
|
}
|
|
|
|
return true;
|
|
|
|
}
|
|
|
|
|
2014-05-25 09:33:20 +00:00
|
|
|
/**
|
|
|
|
* insert function using prepared statements
|
2014-06-18 09:40:31 +00:00
|
|
|
*
|
2014-05-25 09:33:20 +00:00
|
|
|
* @param string $tb_name Name of the table to insert in
|
|
|
|
* @param array $data Associative array of data to insert
|
|
|
|
*/
|
2014-06-18 09:40:31 +00:00
|
|
|
public function insert( $tb_name, $data )
|
|
|
|
{
|
|
|
|
$field_values = ':' . implode( ',:', array_keys( $data ) );
|
|
|
|
$field_options = implode( ',', array_keys( $data ) );
|
|
|
|
try {
|
|
|
|
$sth = $this -> PDO -> prepare( "INSERT INTO $tb_name ($field_options) VALUE ($field_values)" );
|
|
|
|
foreach ( $data as $key => $value )
|
|
|
|
{
|
|
|
|
|
|
|
|
$sth -> bindValue( ":$key", $value );
|
|
|
|
}
|
|
|
|
$this -> PDO -> beginTransaction();
|
|
|
|
// execution
|
|
|
|
$sth -> execute();
|
|
|
|
$this -> PDO -> commit();
|
|
|
|
|
|
|
|
}
|
|
|
|
catch ( Exception $e )
|
|
|
|
{
|
|
|
|
// for rolling back the changes during transaction
|
|
|
|
$this -> PDO -> rollBack();
|
|
|
|
throw new Exception( "error in inseting" );
|
|
|
|
}
|
|
|
|
}
|
|
|
|
|
2014-05-25 09:33:20 +00:00
|
|
|
/**
|
|
|
|
* Delete database entery using prepared statement
|
2014-06-18 09:40:31 +00:00
|
|
|
*
|
|
|
|
* @param string $tb_name
|
|
|
|
* @param string $where
|
2014-05-25 09:33:20 +00:00
|
|
|
* @throws error in deleting
|
|
|
|
*/
|
2014-06-18 09:40:31 +00:00
|
|
|
public function delete( $tb_name, $data, $where )
|
|
|
|
{
|
2014-05-25 09:33:20 +00:00
|
|
|
try {
|
2014-06-18 09:40:31 +00:00
|
|
|
$sth = $this -> PDO -> prepare( "DELETE FROM $tb_name WHERE $where" );
|
|
|
|
$this -> PDO -> beginTransaction();
|
|
|
|
$sth -> execute( $data );
|
|
|
|
$this -> PDO -> commit();
|
|
|
|
}
|
|
|
|
catch ( Exception $e )
|
|
|
|
{
|
2014-07-03 11:14:37 +00:00
|
|
|
$this -> PDO -> rollBack();
|
2014-06-18 09:40:31 +00:00
|
|
|
throw new Exception( "error in deleting" );
|
|
|
|
}
|
|
|
|
|
|
|
|
}
|
|
|
|
}
|