diff --git a/var/www/findFriend.php b/var/www/findFriend.php index a4e26f9..bc4ddd0 100644 --- a/var/www/findFriend.php +++ b/var/www/findFriend.php @@ -23,22 +23,24 @@ $sql_statement = $sql_select." ".$sql_from." ".$sql_where.""; if(($db_connection->query($sql_statement)) == 0) echo "username doesn't exist"; - - $sql_select = "SELECT count(username)"; - $sql_from = "FROM friendList"; - $sql_where = "WHERE username = input and friend = ".$_SESSION["loggedInUser"].""; - $sql_statement = $sql_select." ".$sql_from." ".$sql_where.""; - if(($db_connection->query($sql_statement)) == 0) - { - $sql_statement = "UPDATE friendList SET confirm = true WHERE username = input and friend = ".$_SESSION["loggedInUser"].""; - $db_connection->query($sql_statement); - $sql_statement = "INSERT INTO friendList VALUES (".$_SESSION["loggedInUser"].", input, true)"; - $db_connection->query($sql_statement); - } else { - $sql_statement = "INSERT INTO friendList VALUES (".$_SESSION["loggedInUser"].", input, false)"; - $db_connection->query($sql_statement); + $sql_select = "SELECT count(username)"; + $sql_from = "FROM friendList"; + $sql_where = "WHERE username = input and friend = ".$_SESSION["loggedInUser"].""; + $sql_statement = $sql_select." ".$sql_from." ".$sql_where.""; + if(($db_connection->query($sql_statement)) == 0) + { + $sql_statement = "UPDATE friendList SET confirm = true WHERE username = input and friend = ".$_SESSION["loggedInUser"].""; + $db_connection->query($sql_statement); + $sql_statement = "INSERT INTO friendList VALUES (".$_SESSION["loggedInUser"].", input, true)"; + $db_connection->query($sql_statement); + } + else + { + $sql_statement = "INSERT INTO friendList VALUES (".$_SESSION["loggedInUser"].", input, false)"; + $db_connection->query($sql_statement); + } } echo '';