Re: Sterilize user input function
| From: | B. van Ouwerkerk | Date: | Sun, 09 Sep 2001 07:34:44 +0000 |
| Subject: | Re: Sterilize user input function | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-66590@lists.php.net to get a copy of this message | ||
I think my question could be restated to: What characters are potentially lethal in user input. I can do the regex. But don't know what to parse out of the strings. would removing \ / . do the trick?Why whould you want to strip things? Check if the input meets a certain requirement.. like US phone numbers should be something like 123-456-7890 So, anything else is NOT valid. You could also check the length of the string send. Bye, B.