Re: interbase
| From: | Simon Edwards | Date: | Tue, 15 Aug 2000 05:22:13 +0000 |
| Subject: | Re: interbase | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-11739@lists.php.net to get a copy of this message | ||
phptr@gmx.com.tr wrote:
>
> The following statement works right in mysql:
>
> $SQL = "SELECT * FROM users WHERE login='$user_name1'";
>
> How can write it in order to execute at interbase?
Just use a database independant interface class to do your database
work, then you should just be able switch databases no problem. SQL like
your line above should run on interbase no problem.
BTW, I hope you are not using that line of code for security related
purposes. Make sure you escape all user supplied data before using it to
build a query. Consider this:
$user_name1 = "x' OR login LIKE '%' OR login='x";
should always match the first user to come out of the database
regardless of whether the Bad Guy knows a valid username or not.
Getting slightly or topic. Do you know if the Open Source version of
Interbase comes with docs or not? are the rumors true?
--
Simon Edwards
Animated Design, Melbourne
http://www.animated.net.au/ Ph: (03) 98850990