<?php
	require_once('lib/common.php');

	//checking login
	//front_login_authentication();
	require_once(DIR_WS_LANG.'auction_detail.php');


	$error=array();
	$success = '';

	$auction_id = $_GET['aid'];
	$action = $_GET['action'];
	$wid = $_GET['wid'];

	$err = $_GET['err'];
	if(isset($_POST['Submit'])){
		$bulter_bids = $_POST['bulter_bids'];
		//$sql_bal = "SELECT bid_balance FROM users WHERE id = '".$_SESSION['user_id']. "' ";
		$sql_bal = "SELECT bid_balance FROM users WHERE id = '".$_SESSION['user_id']. "' ";
		$run_bal= ww_db_query($sql_bal);
		$res_bal = ww_db_fetch_array($run_bal);
		$res_balx = $res_bal['bid_balance'];
		if($res_balx < $bulter_bids){
			$msgAutoBid = "<font color='red'>Puede ingresar un m&aacute;ximo de $res_balx bids.</font>";
		}elseif(!is_numeric($bulter_bids) || $bulter_bids < 0){
			$msgAutoBid ="<font color='red'>Debe ingresar numeros mayores a cero.</font>";
		}else{
			$bulter_start_price= (empty($_POST['bulter_start_price']))?  0:$_POST['bulter_start_price'];
			$bulter_end_price = (empty($_POST['bulter_end_price']))?  0:$_POST['bulter_end_price'];
			$bulter_bids = ww_db_input($bulter_bids);
			$bulter_id = ww_db_input($_POST['id']);
			$aid = ww_db_input($_POST['aid']);
			$sql = "SELECT * FROM `bidbutlers` where bids > 0 and user_id = '".SES_USER_ID."' and auction_id = '".$aid."'";
			$respuesta= ww_db_query($sql);
			$time = date('Y-m-d H:i:s');
		if(ww_db_num_rows($respuesta) == 0){
			$sql = "INSERT INTO bidbutlers set minimum_price = '$bulter_start_price' ,
									   maximum_price = '$bulter_end_price' ,
									   auction_id = '$aid' ,
									   user_id = '".SES_USER_ID."' ,
									   bids = '$bulter_bids' ,
									   modified = '$time' ,
									   created = '$time'";
			$msgAutoBid ="AutoBid added";
		}else{
			$sql="UPDATE bidbutlers SET minimum_price = '$bulter_start_price' ,
									   maximum_price = '$bulter_end_price' ,
									   bids = '$bulter_bids' ,
									   modified = '$time'
				WHERE auction_id = '$aid' AND user_id = '".SES_USER_ID."'";
				$msgAutoBid = "AutoBid updated";
			}
			ww_db_query($sql) or die($sql);
		}
}

//adding auction into watch list
if($action == 'add-watchlist'){
	$time = date('Y-m-d H:i:s');
	$sql_watchlist  = "INSERT INTO watchlists SET user_id = '".SES_USER_ID."', auction_id = '".ww_db_input($auction_id)."', created = '$time', modified = '$time' ";
	$result = ww_db_query($sql_watchlist);
	$_SESSION['msg']= 'Auction Added into your watchlist';
	header("Location: auction_detail.php?aid=$auction_id");
	exit;
}
//removing auction into watch list
if($action == 'remove-watchlist' && $wid != ''){
	$sql_watchlist  = "DELETE FROM watchlists WHERE id = '".ww_db_input($wid)."' ";
	$result = ww_db_query($sql_watchlist);
	$_SESSION['msg']= 'Auction Removed from your watchlist';
	header("Location: auction_detail.php?aid=$auction_id");
	exit;
}
$hits_sql = ww_db_query('UPDATE auctions set hits = hits+1 WHERE id = "'.$auction_id.'" ');

$queryAuctions = 'SELECT a.id as aid,a.is_ebay,a.is_unique, a.closed,a.real_bids,a.min_real_bids, p.id as pid, w.id as wid, p.title, p.description,p.delivery_cost,p.delivery_information, p.rrp,p.buy_now,a.price,a.end_time,
				a.start_time,a.leader_id,a.nail_bitter,a.beginner,a.price_inc,a.time_inc, p.start_price,i.image,u.username
				FROM auctions a

			LEFT JOIN users u on u.id = a.leader_id
			LEFT JOIN images i on i.product_id = a.product_id AND i.is_default = 1
			LEFT JOIN products p on p.id = a.product_id
			LEFT JOIN watchlists w on w.auction_id = a.id  AND w.user_id = "'.SES_USER_ID.'" AND w.auction_id = "'.ww_db_input($auction_id).'"

			WHERE 1=1 and a.id='.ww_db_input($auction_id);

$resultAuctions = ww_db_query($queryAuctions);
$Product = ww_db_fetch_array($resultAuctions);

if(!$Product['aid']){
	header("Location: auctions.php");
	exit;
}

$tmpClosed = $Product['closed'];


//$image = get_product_image($Product['pid']);


$queryImages = 'SELECT a.id as auction_id, a.product_id, i.image as image, i.order  from
				auctions a
					LEFT JOIN products p on p.id = a.product_id
					LEFT JOIN images i on i.product_id = p.id
				where a.id = '.ww_db_input($auction_id);

$AuctionsImagesResult = ww_db_query($queryImages);

$bids_history_sql = 'SELECT b.id, b.created, b.bid_val,b.description, u.username  from
				bids b  LEFT JOIN users u
					on u.id = b.user_id
				 where b.auction_id = '.ww_db_input($auction_id). ' ORDER BY b.id DESC LIMIT 10';

$bids_historyRun = ww_db_query($bids_history_sql);


?>
<?php
if($Product['is_unique']){
	require_once(DIR_WS_TEMPLATE.'auction_detail_unique.tpl.php');
}else{
	require_once(DIR_WS_TEMPLATE.'auction_detail.tpl.php');
}

	?>
