<?php

	session_start();

	// Hauptkonfigurationsdatei
	include_once("../conf/config.inc.php");
	include_once(DATEIPFAD . "conf/db.inc.php");

	// Bestellung einlesen
	$SQLString = "SELECT ";
	$SQLString .= TABLE_BESTELLEN . ".status, ";
	$SQLString .= TABLE_BESTELLEN . ".zahlungsart_id ";
	$SQLString .= "FROM ";
	$SQLString .= TABLE_BESTELLEN . " ";
	$SQLString .= "WHERE ";
	$SQLString .= "MD5(" . TABLE_BESTELLEN . ".session) = '" . $_POST["sessionid"] . "' ";
	
	$BestellObject = mysql_fetch_object(errorlogged_mysql_query($SQLString));
	
	if (!$BestellObject->status) {
		
		$AjaxXMLString = "<bestellstatus>\n";
		$AjaxXMLString .= "\t<session>" . $_POST["sessionid"] . "</session>\n";
		$AjaxXMLString .= "\t<return>0</return>\n";
		$AjaxXMLString .= "</bestellstatus>\n";
		
	} else {
		
		$SQLString = "SELECT ";
		$SQLString .= TABLE_ZAHLUNGSART . ".bestellen_status_id ";
		$SQLString .= "FROM ";
		$SQLString .= TABLE_ZAHLUNGSART . " ";
		$SQLString .= "WHERE ";
		$SQLString .= TABLE_ZAHLUNGSART . ".id = '" . $BestellObject->zahlungsart_id . "' ";
		
		$ZahlungsartObject = mysql_fetch_object(errorlogged_mysql_query($SQLString));
		
		if ($BestellObject->status == $ZahlungsartObject->bestellen_status_id) {
			
			$AjaxXMLString = "<bestellstatus>\n";
			$AjaxXMLString .= "\t<session>" . $_POST["sessionid"] . "</session>\n";
			$AjaxXMLString .= "\t<return>1</return>\n";
			$AjaxXMLString .= "</bestellstatus>\n";
		
		} else {
			
			$AjaxXMLString = "<bestellstatus>\n";
			$AjaxXMLString .= "\t<session>" . $_POST["sessionid"] . "</session>\n";
			$AjaxXMLString .= "\t<return>0</return>\n";
			$AjaxXMLString .= "</bestellstatus>\n";
		
		}
		
	}
	

	header("Content-type: text/xml; charset=UTF-8");
	echo $AjaxXMLString;
		

?>