%@ language=VBScript %>
<%
sql="select * from gbook order by id desc"
set Rs = Server.CreateObject("ADODB.Recordset")
Rs.open sql,conn,1,1
if Request("menu") = "addto" then
call addto()
else call index()
end if
sub index()
%>
南阳市人事局在线访谈
您的位置:<%=name%> 发表留言
<%
call htmlend()
Response.End
end sub
sub addto()
dim username, email, homeurl, qq, body, addtime, sql, Rs, ip, face, brow
username=htmlencode2(trim(Request.form("username")))
zt=htmlencode2(trim(Request.form("zt")))
email=htmlencode2(trim(Request.form("email")))
homeurl=htmlencode2(trim(Request.form("homeurl")))
qq=htmlencode2(trim(Request.form("qq")))
body=htmlencode2(Request.form("body"))
face=Request.form("face")
ip=Request.ServerVariables("REMOTE_ADDR")
brow=Request.form("brow")
if session("OldGuestSave") <> "" then
message1="请不要重复提交同一条信息嘛!\n"
end if
if username = "" then
message="请填写您的名字哦!\n"
end if
if username = "" then
message="请填写您的电话号码!\n"
end if
'if zt = "" then
'message="请填写留言主题!\n"
'end if
if email <> "" and IsValidEmail(email)=false then
message=message&"您的电子邮件是不是错了?\n"
end if
'if qq <> "" then 'and isInteger(qq) = false then
'message=message&"对不起,您所填写的 QQ 号码不是数字哦,这样是不行的!\n"
'end if
'if qq <> "" and len(qq) < 8 then
'message=message&"好像没有小于4位号码的QQ吧?\n"
'end if
'if qq <> "" and len(qq) > 11 then
'message=message&"好像还没有超过11位号码的QQ吧!\n"
'end if
'if qq = "" then
'qq="不告诉你"
'end if
if body = "" then
message=message&"留言内容不能为空!\n"
end if
if face = "" then
facerand=16
randomize
facerand=Int((facerand*rnd)+1)
face="images/face/"&facerand&".gif"
end if
if body <> "" and Len(body)> bodymax then
message=message&"对不起,留言字数不能超过 "&bodymax&" 字,谢谢!\n"
end if
if brow = "" then
browrand=16
randomize
browrand=Int((browrand*rnd)+1)
brow="images/brow/"&browrand&".gif"
end if
if message1<> "" then call error1(""&message1&"")
if message<> "" then
call error(""&message&"")
else
sql = "select * from gbook"
Set Rs = Server.CreateObject("ADODB.Recordset")
Rs.open sql,conn,3,2
Rs.addnew
Rs("username")=username
Rs("zt")=zt
Rs("email")=email
Rs("homeurl")=homeurl
Rs("qq")=qq
Rs("body")=body
Rs("face")=face
Rs("brow")=brow
Rs("ip")=ip
Rs("addtime")=now
Rs.update
Rs.close
session("OldGuestSave")="Saved"
sql="select * from admin"
Rs.open sql,conn,3,2
if date <> today_time then
Rs("today_count") = 1
else
Rs("today_count") = Rs("today_count")+1
end if
Rs("today_time") = date
Rs.update
Rs.close
set Rs = nothing
conn.close
set conn = nothing
Response.redirect "index.asp"
Response.End
end if
end sub
%>