Re: Forms : Validating user input is integer

From: Date: Fri, 06 Apr 2001 01:52:39 +0000
Subject: Re: Forms : Validating user input is integer
References: 1 2  Groups: php.db 
Request: Send a blank email to php-db+get-8296@lists.php.net to get a copy of this message
Ben Udall <ben_udall@navigators.org> wrote in message news:3ACC9A31.887E81ED@navigators.org... | boclair wrote: | > I have a problem with a user input in a form required to be an | > integer, creating a variable for a mysql query. | > | > I have instances where integer, 0, is being typed as letter,o. | > Does anybody know if such validation can be done server side or | > definitely must be done client side? | | A basic client-server rule is to never trust the client. You should be | doing all validation on the server side. Client side validation is a | nice feature, but should be in addition to the sever side checking and | never required. | | Here's the quickest way I know to validate an integer in php: | | if (ereg("^[0-9]+$", $input)) | { | // $input is a valid non-negative integer | } | | or, if negative numbers are valid, use could use this one: | | if (ereg("^-?[0-9]+$", $input)) | { | // $input is a valid integer | } Once again, thanks. This validates for an all digit variable. In this case the tested script reads <? if ((@!$submit) || empty($num) ) { echo "<div align='center'><span class='note'>No entry was made</span></div>"; include "get_id.php"; } if (ereg("^[0-9]+$", $input)) { include "do_form.php"; } else { echo "<div align='center'><span class='note'>The ID should have been a number.</span></div>"; include "get_id.php"; } ?> Will I ever get on the ball and stay there Tim Morris

« previous php.db (#8296) next »