<?php session_start(); ?>
<?php echo(!isset($_SESSION['id']))?"<script> document.location = 'http://localhost/activity_1/login.php'; </script>":''; ?>
<?php
    if(isset($_GET['topic_id'])){
        if(isset($_POST['post_comment'])){
            $con = mysqli_connect('localhost','root','','account');
            if(!$con)
                die('ERROR: '. mysqli_error());

            $sql = "INSERT INTO comments (topic_id,comment,username,date_posted) VALUES ('".$_GET['topic_id']."','".$_POST['comment']."','".$_POST['username']."',now())";
            
            mysqli_query($con, $sql);
            mysqli_close($con);
        }
        $con = mysqli_connect('localhost','root','','account');
        if(!$con)
            die('ERROR: '. mysqli_error());
        
        $sql = "SELECT * FROM forum WHERE id = '".$_GET['topic_id']."' LIMIT 1";
        
        $result = mysqli_query($con, $sql);
        
        $sql2 = "SELECT * FROM comments WHERE topic_id = ".$_GET['topic_id']." ORDER BY date_posted DESC";
        
        $result2 = mysqli_query($con, $sql2);
        
    }
    else{
        echo "<script> document.location = 'http://localhost/activity_1/forum.php' </script>";
    }
?>
<html>
    <head>
        <title></title>
        <link rel="stylesheet" href="style.css"/>
        <script type="text/javascript" src="style.js"></script>
        <script type="text/javascript" src="jquery-1.5.2.js"></script>
        <style>
            #logout{
                border: none;
                padding: 0;
                background: none;
                margin: 0;
            }
            #logout:hover{
                
            }
        </style>
    </head>
<!--    onload="whatsYourName('Hi, What\'s Your Name?');"-->
    <body>
        <div class="containerAll">
            <div class="header">
                <div class="settingsContainer">
                    <div class="userName" id="name">
                        <input id="hidden_hint" type="hidden" value="hide"/>
                <?php if(isset($_SESSION['id'])){ ?>
                    Hi, <?php echo ucfirst($_SESSION['firstname']).' '.ucfirst($_SESSION['lastname']) ?>
                <?php }else{ ?>
                    You are not logged in.
                <?php } ?>
                        <div class="arrow_down" onclick="show_setting();"></div>
                    </div>
                    <div class="settings" id="settings_id">
                        <?php if(isset($_SESSION['id'])){ ?>
                            <a class="settings_item" href="http://localhost/activity_1/register.php"><div class="settings_item_div">Register</div></a>
                            <a class="settings_item" href="http://localhost/activity_1/logout.php"><div class="settings_item_div">Logout</div></a>
                        <?php }else{ ?>
                            <a class="settings_item" href="http://localhost/activity_1/login.php"><div class="settings_item_div">Log in</div></a>
                            <a class="settings_item" href="http://localhost/activity_1/register.php"><div class="settings_item_div">Register</div></a>
                        <?php } ?>
                    </div>
                </div>
            </div>
            <div class="menu">
                <a class="thisButtonMenu" href="#">Home</a>
                <a class="thisButtonMenu" href="#">Profile</a>
                <a class="thisButtonMenu" href="http://localhost/activity_1/forum.php">Forum</a>
                <a class="thisButtonMenu" href="#">About Us</a>
                <a class="thisButtonMenu" href="#">Contact Us</a>
            </div>
            <div class="body">
                <center><br/><br/><br/>
                    <div>
                    <?php while($row = mysqli_fetch_array($result)){ ?>
                        <div>
                            <div><?php echo ucwords($row['username']) ?></div>
                            <div>&#8220<?php echo $row['topic'] ?>&#8221</div>
                            <div><?php echo $row['date_posted'] ?></div>
                        </div>
                    <?php } ?>
                    </div>
                    <h2>Comments:</h2><hr/>
                    <div>
                        <form action="http://localhost/activity_1/view_forum.php?topic_id=<?php echo $_GET['topic_id'] ?>" method="POST">
                            <input type="text" name="username" value="<?php echo ucfirst($_SESSION['firstname']).' '.ucfirst($_SESSION['lastname']) ?>" placeholder="Username" readonly/>
                            <input type="text" name="comment"  placeholder="Comment"/>
                            <button type="submit" name="post_comment">Post</button>
                        </form>
                    </div>
                    <div>
                    <?php if(mysqli_num_rows($result2)){ ?>
                    <?php while($row = mysqli_fetch_array($result2)){ ?>
                        <div>
                            <div><?php echo ucwords($row['username']) ?></div>
                            <div><?php echo $row['comment'] ?></div>
                            <div><?php echo $row['date_posted'] ?></div>
                        </div>
                    <?php } ?>
                    <?php }else{ ?>
                        <div><i>No comments posted.</i></div>
                    <?php } ?>
                    </div>
                </center>
            </div>
            <div class="footer">
                <span class="copy">&COPY; Copyright 2013 CIT-U</span>
            </div>
        </div>
    </body>
</html>
<?php mysqli_close($con); ?>