Re: interbase

From: Date: Tue, 15 Aug 2000 05:22:13 +0000
Subject: Re: interbase
References: 1  Groups: php.general 
Request: Send a blank email to php-general+get-11739@lists.php.net to get a copy of this message
phptr@gmx.com.tr wrote: > > The following statement works right in mysql: > > $SQL = "SELECT * FROM users WHERE login='$user_name1'"; > > How can write it in order to execute at interbase? Just use a database independant interface class to do your database work, then you should just be able switch databases no problem. SQL like your line above should run on interbase no problem. BTW, I hope you are not using that line of code for security related purposes. Make sure you escape all user supplied data before using it to build a query. Consider this: $user_name1 = "x' OR login LIKE '%' OR login='x"; should always match the first user to come out of the database regardless of whether the Bad Guy knows a valid username or not. Getting slightly or topic. Do you know if the Open Source version of Interbase comes with docs or not? are the rumors true? -- Simon Edwards Animated Design, Melbourne http://www.animated.net.au/ Ph: (03) 98850990

« previous php.general (#11739) next »