var xmlHttp = createXMLHttpRequestObject();

function getCookie(c_name) {
  if (document.cookie.length>0) {
    c_start=document.cookie.indexOf(c_name + "=");
    if (c_start!=-1) {
      c_start=c_start + c_name.length+1;
      c_end=document.cookie.indexOf(";",c_start);
      if (c_end==-1) c_end=document.cookie.length;
        return unescape(document.cookie.substring(c_start,c_end));
    }
  }
  return "";
}

function createXMLHttpRequestObject()
{
  var xmlHttp;
  try 
  {
    xmlHttp = new XMLHttpRequest();
  }
  catch(e)
  {
    var XHRO = new Array ('MSXML2.XMLHTTP.6.0',
                          'MSXML2.XMLHTTP.5.0',
                          'MSXML2.XMLHTTP.4.0',
                          'MSXML2.XMLHTTP.3.0',
                          'MSXML2.XMLHTTP',
                          'Microsoft.XMLHTTP');
    for (var i=0; i < XHRO.length && !xmlHttp; i++)
    {
      try
      {
        xmlHttp = new ActiveXObject(XHRO[i]);
      }
      catch(e) {}
    }
  }
  
  if (!xmlHttp)
    alert("Error creating XMLHttpRequest object.");
  else
    return xmlHttp;
}

function post_request(vars) {
  document.getElementById("pos_gift").innerHTML = '<br/><img src="images/loading_icon.gif" border="0"/>';
  if (xmlHttp && xmlHttp.readyState == 4 || xmlHttp.readyState == 0)
  {
    xmlHttp.open("POST", "dealer_login_js.php", true);
    xmlHttp.setRequestHeader("Content-Type",  
                             "application/x-www-form-urlencoded");

    xmlHttp.onreadystatechange = function () { outPage() };
    xmlHttp.send(vars);
  }
  else {}
  //  setTimeout("newRequest('" + com + "', '" + vars + "', '" + pos + "', '" + method + "')", 2000);
}


function outPage()
{
  if (xmlHttp.readyState == 4)
  {
    if (xmlHttp.status == 200)
    {
      response = xmlHttp.responseText;
      if (response != "false") {
        if (getCookie("redirectLocation") != "")
          window.location.href = getCookie("redirectLocation");
        else
          window.location.href = "index.php";
      }
      else
        document.getElementById("pos_gift").innerHTML = "<br/><span style='color: #8B0000'>Sorry. The code you entered is not valid.</span>";
    }
  }
}
