function displaySurgeonProcList()
{
    var fdbkHospital = safeParameter( document.getElementById("fdbk_cboHospitals").value );
    var fdbkYear = document.getElementById("fdbk_cboYears").value;
    var fdbkMonth = document.getElementById("fdbk_cboMonths").value;
    var fdbkYear2 = document.getElementById("fdbk_cboYears2").value;
    var fdbkMonth2 = document.getElementById("fdbk_cboMonths2").value;
    var fdbkProcType = document.getElementById("fdbk_cboProcTypes").value;

    window.location="signin.jsp" 
        + "?section=procedures" 
        + "&fdbkHospital=" + fdbkHospital 
        + "&fdbkYear=" + fdbkYear 
        + "&fdbkMonth=" + fdbkMonth 
        + "&fdbkYear2=" + fdbkYear2 
        + "&fdbkMonth2=" + fdbkMonth2 
        + "&fdbkProcType=" + fdbkProcType 
        ;
}


function safeParameter(param) {
   var safeParam = param.replace(/%/g,"%25" );
   safeParam = safeParam.replace(/&/g,"%26" );
   safeParam = safeParam.replace(/ /g,"%20" );
   safeParam = safeParam.replace(/#/g,"%23" );
   safeParam = safeParam.replace(/\+/g,"%2B" );
   safeParam = safeParam.replace(/,/g,"%2C" );
   safeParam = safeParam.replace(/\//g,"%2F" );
   safeParam = safeParam.replace(/:/g,"%3A" );
   safeParam = safeParam.replace(/;/g,"%3B" );
   safeParam = safeParam.replace(/</g,"%3C" );
   safeParam = safeParam.replace(/=/g,"%3D" );
   safeParam = safeParam.replace(/>/g,"%3E" );
   safeParam = safeParam.replace(/\?/g,"%3F" );
   safeParam = safeParam.replace(/@/g,"%40" );
   safeParam = safeParam.replace(/\[/g,"%5B" );
   safeParam = safeParam.replace(/\\/g,"%5C" );
   safeParam = safeParam.replace(/\]/g,"%5D" );
   safeParam = safeParam.replace(/{/g,"%7B" );
   safeParam = safeParam.replace(/}/g,"%7D" );
   safeParam = safeParam.replace(/~/g,"%7E" );
   return safeParam;
}
