//========================================
// dehead(config/function/lib) Include
//========================================
include $_SERVER['DOCUMENT_ROOT']."/front/include/dehead.php";
//========================================
// Class Connect
//========================================
$Db = new Db(); // 데이터 베이스 클래스
$upload_path = "./upload";
$valid_mime_types = array(
"image/gif",
"image/png",
"image/jpeg",
"image/pjpeg"
);
$err = array(1,1,1);
define('KB', 1024);
define('MB', 1048576);
define('GB', 1073741824);
define('TB', 1099511627776);
if(!$b_name){
break;
exit;
}
if(!$b_address){
break;
exit;
}
if(!preg_match('#ssdream.co.kr#',$_SERVER['HTTP_REFERER'])){
break;
exit;
}
for($i=1;$i<=7;$i++){
if($_FILES['b_p'.$i]['tmp_name']){
if(in_array($_FILES['b_p'.$i]['type'], $valid_mime_types)){
$err[0] = '0';
}
if( $_FILES['b_p'.$i]['size'] < ( 10 * MB ) ){
$err[1] = '0';
}
if($err[0] == 0 && $err[1] == 0){
$fexp = explode(".",$_FILES['b_p'.$i]['name']);
$fexp_cnt = count($fexp) - 1;
$ftype = $fexp[$fexp_cnt];
$ftype = strtolower($ftype);
if( $ftype != 'jpg' and
$ftype != 'gif' and
$ftype != 'jpeg' and
$ftype != 'png'){
$ftype = 'png';
}
$filename = sha1(md5($_FILES['b_p'.$i]['name'].date("YmdHis",time()).rand(0,99)));
$new_file = $filename.".".$ftype;
$new_file_path = $upload_path."/".$new_file;
move_uploaded_file($_FILES['b_p'.$i]['tmp_name'],$new_file_path);
${'bb_p'.$i} = $new_file;
}
}else{
${'bb_p'.$i} = htmlspecialchars(addslashes(${'bb_p'.$i}));
}
}
$b_name = htmlspecialchars(addslashes($b_name));
$b_birth = htmlspecialchars(addslashes($b_birth));
$b_tel = htmlspecialchars(addslashes($b_tel));
$b_sex = htmlspecialchars(addslashes($b_sex));
$b_job = htmlspecialchars(addslashes($b_job));
$b_content = htmlspecialchars(addslashes($b_content));
$b_zip = htmlspecialchars(addslashes($b_zip));
$b_address = htmlspecialchars(addslashes($b_address));
$b_address2 = htmlspecialchars(addslashes($b_address2));
$b_etc1 = htmlspecialchars(addslashes($b_etc1));
$b_etc2 = htmlspecialchars(addslashes($b_etc2));
if( !$b_name ||
!$b_birth ||
!$b_tel ||
!$b_sex ||
!$b_content ||
!$b_zip ||
!$b_address ||
!$b_etc1 ||
!$b_etc2 ||
!$bb_p1 ||
!$bb_p2 ||
!$bb_p3 ||
!$bb_p4 ||
!$bb_p5
)
{
$err[2] = 1;
}else{
$err[2] = 0;
}
//.str_replace("\n","
",$b_content).
$sql = "INSERT INTO b_model SET
rdate = now(),
ip = '".$_SERVER['REMOTE_ADDR']."',
name = '".$b_name."',
birth = '".$b_birth."',
tel = '".$b_tel."',
sex = '".$b_sex."',
job = '".$b_job."',
content = '".str_replace("\n","
",$b_content)."',
zip = '".$b_zip."',
address = '".$b_address."',
address2 = '".$b_address2."',
etc1 = '".$b_etc1."',
etc2 = '".$b_etc2."',
p1 = '".$bb_p1."',
p2 = '".$bb_p2."',
p3 = '".$bb_p3."',
p4 = '".$bb_p4."',
p5 = '".$bb_p5."',
p6 = '".$bb_p6."',
p7 = '".$bb_p7."'
";
$Db->query($sql);
?>