Re: How does one make the following psql statement sql-injection resilient?

Поиск
Список
Период
Сортировка
От Alvaro Herrera
Тема Re: How does one make the following psql statement sql-injection resilient?
Дата
Msg-id 20150317035931.GJ3636@alvh.no-ip.org
обсуждение исходный текст
Ответ на Re: How does one make the following psql statement sql-injection resilient?  ("David G. Johnston" <david.g.johnston@gmail.com>)
Ответы Re: How does one make the following psql statement sql-injection resilient?  ("David G. Johnston" <david.g.johnston@gmail.com>)
Список pgsql-general
David G. Johnston wrote:

> Thanks!  I got the gist even with the typo.  I actually pondered about
> prepare/execute after hitting send.  Am I correct in remembering that
> "CREATE TEMP TABLE" cannot be prepared?  I was using the actual query with
> CREATE TEMP TABLE and then issuing "\copy" to dump the result out to the
> file.  The limitation of copy to having to be written on a single line
> makes the intermediary temporary table seem almost a necessity.

CREATE TEMP TABLE AS EXECUTE

--
Álvaro Herrera                http://www.2ndQuadrant.com/
PostgreSQL Development, 24x7 Support, Remote DBA, Training & Services


В списке pgsql-general по дате отправления:

Предыдущее
От: Craig Ringer
Дата:
Сообщение: Re: bdr replication latency monitoring
Следующее
От: Craig Ringer
Дата:
Сообщение: Re: Postgresql BDR(Bi-Directional Replication) Latency Monitoring