<?php
  //檢查 cookie 中的 passed 變數是否等於 TRUE 
  $passed = $_COOKIE{"passed"};
  
  //如果 cookie 中的 passed 變數不等於 TRUE
  //表示尚未登入網站，將使用者導向首頁 index.html
  if ($passed != "TRUE")
  {
    header("location:register.html");
    exit();
  }
  
  //如果 cookie 中的 passed 變數等於 TRUE
  //表示已經登入網站，取得使用者資料  
  else
  {
    require_once("dbtools.inc.php");
    
    $id = $_COOKIE{"id"};
    
    //建立資料連接
    $link = create_connection();
        
    //執行 SELECT 陳述式取得使用者資料
    $sql = "SELECT * FROM register Where id = $id";
    $result = execute_sql($link, "book4105", $sql);

    $row = mysqli_fetch_assoc($result);
  } 
?>
<?php
      
      $pdo=new PDO('mysql:mysql8.db4free.net;dbname=book4105;charset=utf8', 
        'sennheiser', 'sennheiserie800');
      $sql=$pdo->prepare('select * from books where book_id=?');
      $sql->execute([$_REQUEST['book_id']]);
?>

<!doctype html>
<html>
  <head>
    <title>商品清單</title>
    <meta charset="utf-8">

    <meta http-equiv="Content-Type" content="text/html; charset=utf-8" />
    <title>二手交易網站</title>
    <meta name="keywords" content="" />
    <meta name="description" content="" />

    <link href="default.css" rel="stylesheet" type="text/css" media="all" />
    <link href="fonts.css" rel="stylesheet" type="text/css" media="all" />
  </head>
  <body>
    <div id="header-wrapper">
    <div id="logo">
    <h1><a href="#">二手交易網站</a></h1>
    </div>
    <div id="triangle-up"></div>
    </div>
    </div>
    <div id="menu-wrapper">
    <div id="menu">
    <ul>
    <li class="current_page_item"><a href="index2.html" accesskey="1" title="">首頁</a></li>
    <li><a href="Categories2.php" accesskey="2" title="" >商品分類</a></li>
    <li><a href="main.php" accesskey="3" title="">會員中心</a></li>
    <li><a href="book.html" accesskey="5" title="">刊登商品</a></li>
    <li><a href="mailto:apple121519@gmail.com" accesskey="6" title="">聯絡我們</a></li>
    </ul>
    </div>
    </div>

    <p align="right">
      <!--<a href="board-input.php"><font color="#666666" size="3">問與答</font></a>-->
      <a href="eva.php"><font color="#666666" size="3">賣家評價</font></a>
       <?php 
       foreach ($sql->fetchAll() as $row)
       echo '<a href="board-input.php?book_id='.$row["book_id"].'">問與答</a>'; 
       echo '<input type="hidden" name="book_id" value="', $row['book_id'], '">';
     ?>
      <a href="自己的商品.php"><font color="#666666" size="3">查看上架商品</font></a>
      <a href="login2.html"><font color="#666666" size="3">註冊</font></a>
      <a href="logout.php"><font color="#666666" size="3">登出</font></a>
    </p>

    <div id="wrapper">
    <div id="featured-wrapper">

<?php    
      $pdo=new PDO('mysql:host=mysql8.db4free.net;dbname=book4105;charset=utf8', 
        'sennheiser', 'sennheiserie800');
      $sql=$pdo->prepare('select * from books where book_id=?');
      $sql->execute([$_REQUEST['book_id']]); 
      foreach ($sql->fetchAll() as $row) {
        echo '<p><img src="upload/', $row['book_id'], '.jpg"></p>';
        echo '<form action="update_1.php"  method="get">';
        echo '<p>書名：', $row['name'], '</p>';
        echo '<p>作者：', $row['author'], '</p>';
        echo '<p>介紹：', $row['present'], '</p>';
        echo '<p>價格：', $row['price'], '</p>';
        echo '<p>數量：<select name="amount">';
        for ($i=1; $i<=$row['amount']; $i++) {
          if($row['amount'] < 1){
            echo '<option value="', $i, '">', $i, '</option>'; 
          }else{
            echo '<option value="', $i, '">', $i, '</option>';
          }
        }
        echo '</select>';
        echo '<input type="hidden" name="book_id" value="', $row['book_id'], '">';
        echo '<input type="hidden" name="name" value="', $row['name'], '">';
        echo '<input type="hidden" name="author" value="', $row['author'], '">';
        echo '<input type="hidden" name="present" value="', $row['present'], '">';
        echo '<input type="hidden" name="price" value="', $row['price'], '">';
        if($row['amount'] > 0){
          echo '<p><input type="submit" value="購買"></p>';
        }else{
          echo '<p><input type="button" value="商品已完售"></p>';
        }
        echo '</form>';
        
      }
    ?>

    <!--<textarea name="present" cols="50" rows="7" id="a3" placeholder="請輸入您想問的問題"></textarea>
    <p></p>-->
      
  </body>
</html>