<?
if (!isset($user) && !isset($_GET['id_user'])){header("Location: /foto/?".SID);exit;}
if (isset($user))$ank['id']=$user['id'];
if (isset($_GET['id_user']))$ank['id']=intval($_GET['id_user']);
$ank=get_user($ank['id']);
if (!$ank){header("Location: /foto/?".SID);exit;}
$gallery['id']=intval($_GET['id_gallery']);
//---------------------------создаем альбом с личными фото-----------------------------------------//
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `gallery` WHERE `id_user` = '$ank[id]' AND `name` = 'Личные фото'"),0)==0)
{
mysql_query("INSERT INTO `gallery` (`id_user`, `name`, `my`) values('$ank[id]', 'Личные фото', '1')");
}
//-------------------------------alex-borisi-------------------------------------------------------//
if (mysql_result(mysql_query("SELECT COUNT(*) FROM `gallery` WHERE `id` = '$gallery[id]' AND `id_user` = '$ank[id]' LIMIT 1"),0)==0){header("Location: /foto/$ank[id]/?".SID);exit;}
$gallery=mysql_fetch_assoc(mysql_query("SELECT * FROM `gallery` WHERE `id` = '$gallery[id]' AND `id_user` = '$ank[id]' LIMIT 1"));
//-------------------пароль и сессия------------//
if (($user['id']!=$ank['id']) && $ank['level']>$user['level']){
if (isset($_POST['pass']))$_SESSION['pass']=$_POST['pass'];
else
$_SESSION['pass']=NULL;
if (isset($_SESSION['pass']) && $_SESSION['pass']==$gallery['pass']){
mysql_query("UPDATE `user` SET `session_pass` = '$_SESSION[pass]' WHERE `id` = '$user[id]'");
header("Location: ?".SID);
}
if (isset($_SESSION['pass']) && $_SESSION['pass']!=$gallery['pass']){
mysql_query("UPDATE `user` SET `session_pass` = '0' WHERE `id` = '$user[id]'");
$err = 'Неверный пароль';
}
if (!$_SESSION['pass'])$_SESSION['pass']=$user['session_pass'];
}
//----------------------------------------------//
if (isset($_GET['err']))$err='Ошибка доступа';
$set['title']=$ank['nick'].' - '.$gallery['name'].' - Фотоальбом'; // заголовок страницы
include_once '../sys/inc/thead.php';
title();
include 'inc/gallery_show_act.php';
err();
aut();
if ($webbrowser=='web'){
$di='50';
$hight='50';
$width='50';
$set['p_str']='30';
}else{
$hight='50';
$width='50';
$di='50';
$set['p_str']='10';
}
$frend=mysql_result(mysql_query("SELECT COUNT(*) FROM `frends` WHERE (`user` = '$user[id]' AND `frend` = '$ank[id]') OR (`user` = '$ank[id]' AND `frend` = '$user[id]') LIMIT 1"),0);
if ($gallery['privat']==1 && $user['id']!=$ank['id'] && $frend!=2){
msg('Фотоальбом доступен только для друзей');
echo "<div class=\"foot\">\n";
echo "«<a href='/foto/$ank[id]/'>К фотоальбомам</a><br />\n";
echo "</div>\n";
include_once '../sys/inc/tfoot.php';
exit;
}
if ($gallery['privat']==2 && $user['id']!=$ank['id']){
msg('Пользователь запретил просмотр фотоальбома');
echo "<div class=\"foot\">\n";
echo "«<a href='/foto/$ank[id]/'>К фотоальбомам</a><br />\n";
echo "</div>\n";
include_once '../sys/inc/tfoot.php';
exit;
}
if ($user['id']!=$ank['id'] || $user['level']<$ank['level']){
if ($gallery['pass']!=0 && $user['session_pass']!=$gallery['pass'] && $user['level']<$ank['level'] || $gallery['pass']!=0 && $_SESSION['pass']!=$gallery['pass'] && $user['level']<$ank['level']){
echo "<form action='?' method=\"post\">";
echo "Пароль:<br />";
echo "<input name='pass' type='text' value='' /><br />";
echo "<input class='submit' type='submit' value='Войти' /> ";
echo "</form>";
include_once '../sys/inc/tfoot.php';
exit;
}
}
include 'inc/gallery_show_form.php';
$k_post=mysql_result(mysql_query("SELECT COUNT(*) FROM `gallery_foto` WHERE `id_gallery` = '$gallery[id]'"),0);
$k_page=k_page($k_post,$set['p_str']);
$page=page($k_page);
$start=$set['p_str']*$page-$set['p_str'];
echo "<div class='foot'><b>Фотографии $k_post</b></div>";
echo "<table class='post'>\n";
if ($k_post==0)
{
echo " <tr>\n";
echo " <td class='p_t'>\n";
echo "Нет фотографий\n";
echo " </td>\n";
echo " </tr>\n";
}
$q=mysql_query("SELECT * FROM `gallery_foto` WHERE `id_gallery` = '$gallery[id]' ORDER BY `id` DESC LIMIT $start, $set[p_str]");
echo " <tr>\n";
if ($set['set_show_icon']==1)echo " <td class='p_m' colspan='2'>\n"; else echo " <td class='p_m'>\n";
while ($post = mysql_fetch_assoc($q))
{
echo "<a href='/foto/$ank[id]/$gallery[id]/$post[id]/'><img style=' margin: 2px; height: ".$hight."px; width: ".$width."px;' src='/foto/foto$di/$post[id].$post[ras]' alt=''/></a>";
}
echo " </td>\n";
echo " </tr>\n";
echo "</table>\n";
if ($k_page>1)str('?',$k_page,$page); // Вывод страниц
echo "<div class=\"foot\">\n";
echo "«<a href='/foto/$ank[id]/'>К фотоальбомам</a><br />\n";
echo "</div>\n";
include_once '../sys/inc/tfoot.php';
exit;
?>