function GetXmlHttpObject(handler)
{   var objXMLHttp=null
	 if (window.XMLHttpRequest)
	 {
		objXMLHttp=new XMLHttpRequest();
	 }
	 else if (window.ActiveXObject)
	 {
		objXMLHttp=new ActiveXObject("Microsoft.XMLHTTP");
	}
	 return objXMLHttp;
}


function stateChanged_test()
{
	if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
	{
		var str = xmlHttp.responseText;
		temp = str.split('#123#');		
		document.getElementById("security_code").value="";		
		document.getElementById('notposting').innerHTML=temp[0];		
		if(temp[1] != undefined)
		{
			document.getElementById("totalcomment").innerHTML=temp[1];
		}
		document.getElementById("pc").value="";
		var val = document.getElementById("comment_value").innerHTML;
		var vval = Number(val);
		document.getElementById("comment_value").innerHTML = ++vval ;
	}
}

function postcomment(path)
{
	if(document.getElementById("pc").value.length<=0)
	{
		alert("Comment not blank !");
		document.getElementById("pc").focus();
		return false;
	}
	if(document.getElementById("security_code").value.length<=0)
	{
		alert("Enter the security code!");
		document.getElementById("security_code").focus();
		return false;
	}
	
	xmlHttp=GetXmlHttpObject();
	
	if (xmlHttp == null)
	{
		alert ("Browser does not support HTTP Request");
		return;
	}

	var url=path+"photoalbum/insert_comment.php";
	
	var urls="comment="+document.getElementById("pc").value;
	urls=urls+"&pid="+document.getElementById("pid").value;
	urls=urls+"&id="+document.getElementById("id").value;
	urls=urls+"&rid="+document.getElementById("r_id").value;
	urls=urls+"&captcha="+document.getElementById("security_code").value;
	urls=urls+"&sid="+Math.random();

	xmlHttp.onreadystatechange=stateChanged_test; 

	xmlHttp.open("POST",url,true) ;
	xmlHttp.setRequestHeader("Content-type", "application/x-www-form-urlencoded");
	xmlHttp.setRequestHeader("Content-length", urls.length);
	xmlHttp.setRequestHeader("Connection", "close");
	xmlHttp.send(urls);
	
}
