Register Login
FIAT Auto Specialist Team
Reply
 
Thread Tools Search this Thread
Old 29-11-2005   #1
arc
this is where i stand
Join Date: Oct 2003
Location: Manchester
Posts: 13,581
Thanks: 289
Trader Rating: 0
arc has donated!
United Kingdom 
asp, oracle and server side validation

anyone help me out here. i don't really understand what im being asked to do

Quote Quote:
Ability to input new dvd titles and associated data. (server side validation)
I've made an ASP page that connects to the database, simple web form on it to collect data and then when u hit submit it sends it to the oracle database.

That all works nicely. But what kind of server side validation can i do on it? The only kinda thing i can see as being possible would be client side validation - making the client check that the field lengths etc on the forms are correct.

The only bit of server side i can see going on is the initial DB connection where it verifys user / name password.

HELP!!!
__________________
.:: 1368cc 16v Cinquecento ::.
arc is offline Reply With Quote Quote 
Old 29-11-2005   #2
Join Date: Apr 2003
Location: Nottm
Posts: 6,427
Thanks: 0
Trader Rating: 0
The Negotiator has donated!
United Kingdom 
Re: asp, oracle and server side validation

hmm, ignore my use of "validation" and "verfication" because I can't remember the difference between them...

But, can't your server side also do the same validation to ensure that the probablity of data being received incorrect is low, also use of check digits or whatever?
__________________
Now drives: BMW 635d (wow!)
Past:
Renault Laguna Coupe GT 180. Laguna Initiale dci. 52 Megane 1.9dCi, Y-reg Fiat Brava JTD (Pale Blue) (2006), '51 Fiat Brava 80 SX (black) (2006), M-reg UNO (2003-2004)
The Negotiator is offline Reply With Quote Quote 
Old 29-11-2005   #3
arc
this is where i stand
Join Date: Oct 2003
Location: Manchester
Posts: 13,581
Thanks: 289
Trader Rating: 0
arc has donated!
United Kingdom 
Re: asp, oracle and server side validation

the thing is though the server is an ASP webserver, and an oracle database server.

I can't see how i could possibly run scripts on them to validate anything
__________________
.:: 1368cc 16v Cinquecento ::.
arc is offline Reply With Quote Quote 
Old 29-11-2005   #4
Join Date: Aug 2004
Location: Holmfirth
Posts: 256
Thanks: 1
Trader Rating: 0
moogs has donated!
Police Bike Champion
United Kingdom 
Re: asp, oracle and server side validation

and remember quite often the people issuing briefs mightn't know the difference between server and client side. But they will have heard the term and sometimes throw it in to look special.

Anything you could do in this instance server side you might as well do client side.
__________________
FIAT Forum Useful Links:
Donate to FF | Buy FF Merchandise | Classifieds | FF Insurance | How-to Guides

moogs is offline Reply With Quote Quote 
Old 29-11-2005   #5
arc
this is where i stand
Join Date: Oct 2003
Location: Manchester
Posts: 13,581
Thanks: 289
Trader Rating: 0
arc has donated!
United Kingdom 
Re: asp, oracle and server side validation

its for an assignment, and it does specifiy i have to do server side on one of the forms and client side on the other.

but what i'm saying is i just can't see how i can get it to even do any server side validation, ingoring wether its worth doing or not.
__________________
.:: 1368cc 16v Cinquecento ::.
arc is offline Reply With Quote Quote 
Old 29-11-2005   #6
arc
this is where i stand
Join Date: Oct 2003
Location: Manchester
Posts: 13,581
Thanks: 289
Trader Rating: 0
arc has donated!
United Kingdom 
Re: asp, oracle and server side validation

ok, i know what i'm doing now

Basically trapping errors that oracle bounces back, then making the script take the appropiate action
__________________
.:: 1368cc 16v Cinquecento ::.
arc is offline Reply With Quote Quote 
Old 29-11-2005   #7
Mr Pedantic
 
hmallett's Avatar
Join Date: Mar 2005
Location: Wales
Posts: 2,396
Thanks: 19
Trader Rating: 1
hmallett has donated!
United Kingdom 
Re: asp, oracle and server side validation

Quote Originally Posted by moogs
Anything you could do in this instance server side you might as well do client side.
Nooooooooooo! For web apps you can't trust the client side, only the server side (E.g. What if you validate in Javascript, and the user has javascript disabled?)
Also, the validation may be referring to things such as the characters you pass to your database insert - if you try to insert a " in the middle of a field, it may give an error unless you escape the character before the insert. (I don't know much about asp!)
H
__________________
Quote Originally Posted by 306maxi View Post
I love the Panda forum.... you guys are so much more chilled out than the 500 guys
hmallett is offline Reply With Quote Quote 
Old 29-11-2005   #8
Join Date: Aug 2004
Location: Holmfirth
Posts: 256
Thanks: 1
Trader Rating: 0
moogs has donated!
Police Bike Champion
United Kingdom 
Re: asp, oracle and server side validation

Yeah, by client side I was referring also to the code in the page, so I suppose I should be shot for my understanding of client side. I meant after the form has been submitted but before sending to DB ie. not javascript. My bad.
__________________
FIAT Forum Useful Links:
Donate to FF | Buy FF Merchandise | Classifieds | FF Insurance | How-to Guides

moogs is offline Reply With Quote Quote 
Old 29-11-2005   #9
faster! FASTER!!!
 
bulldog5046's Avatar
Join Date: May 2005
Posts: 4,753
Thanks: 74
Trader Rating: 2
bulldog5046 has donated!
United Kingdom 
Re: asp, oracle and server side validation

server side validation would be things like checking the cells contain correct data, eg.

price should be in a currency format

title should be text

length should be a time format

etc etc.

that help?
__________________

Ex Marea Turbo GTi-R owner & BMW Z4 3.0
bulldog5046 is offline Reply With Quote Quote 
Old 29-11-2005   #10
arc
this is where i stand
Join Date: Oct 2003
Location: Manchester
Posts: 13,581
Thanks: 289
Trader Rating: 0
arc has donated!
United Kingdom 
Re: asp, oracle and server side validation

yeah. thats what im tryin to do - but how do you do that in oracle / asp
__________________
.:: 1368cc 16v Cinquecento ::.
arc is offline Reply With Quote Quote 
Old 29-11-2005   #11
Join Date: Nov 2004
Location: tattershall
Posts: 320
Thanks: 0
Trader Rating: 0
philbo has donated!
United Kingdom 
Re: asp, oracle and server side validation

one day ill know what the hell you lot are talking about

maybe
philbo is offline Reply With Quote Quote 
Old 29-11-2005   #12
arc
this is where i stand
Join Date: Oct 2003
Location: Manchester
Posts: 13,581
Thanks: 289
Trader Rating: 0
arc has donated!
United Kingdom 
Re: asp, oracle and server side validation

anyone know much about ASP - got summit else i'm,trying to sort out now
__________________
.:: 1368cc 16v Cinquecento ::.
arc is offline Reply With Quote Quote 
Old 29-11-2005   #13
Now hacking in PHP
 
Alex's Avatar
Join Date: Mar 2002
Location: At Home
Posts: 1,497
Thanks: 0
Trader Rating: 0
Alex has donated!
Switzerland 
Re: asp, oracle and server side validation

you need to check the kind of data that the user has inputted is correct for the db fields you're updating or inserting into. Many people don't have java script enabled. Also hackers (and people like me) love sql injection, buffer overrun hacking and any other method to generally break stuff, so you need to filter out characters like ; ' and " (or escape them somehow check out oracle knowledge base on escaping special characters also do a search on the other things I mentioned)

if you want any more info PM me.
Alex is offline Reply With Quote Quote 
Old 30-11-2005   #14
faster! FASTER!!!
 
bulldog5046's Avatar
Join Date: May 2005
Posts: 4,753
Thanks: 74
Trader Rating: 2
bulldog5046 has donated!
United Kingdom 
Re: asp, oracle and server side validation

as alex said SQL injection is evil very easy to perform aswell, sorry i cant help you in too much detail as i dont know ASP atall or Oracal.
__________________

Ex Marea Turbo GTi-R owner & BMW Z4 3.0
bulldog5046 is offline Reply With Quote Quote 
Reply
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump