RE: Request parameters for SQL arguments

2002-12-09 Thread Maxime.Gheysen
Christian Haul [mailto:[EMAIL PROTECTED]] Sent: Friday, December 06, 2002 4:28 PM To: [EMAIL PROTECTED] Subject: Re: Request parameters for SQL arguments On 06.Dec.2002 -- 04:13 PM, [EMAIL PROTECTED] wrote: > I use ESQL, the beginning of my page is like this : type="xsp"?> > &g

Re: Request parameters for SQL arguments

2002-12-06 Thread Christian Haul
On 06.Dec.2002 -- 04:13 PM, [EMAIL PROTECTED] wrote: > I use ESQL, the beginning of my page is like this : > > > > http://apache.org/xsp"; >xmlns:esql="http://apache.org/cocoon/SQL/v2";> > > > > personnel > >

AW: Request parameters for SQL arguments

2002-12-06 Thread Scherler, Thorsten
please send mor code! I will have a look at home -Ursprüngliche Nachricht- Von: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Gesendet: Freitag, 6. Dezember 2002 16:14 An: [EMAIL PROTECTED] Betreff: RE: Request parameters for SQL arguments I use ESQL, the beginning of my page is like

RE: Request parameters for SQL arguments

2002-12-06 Thread Maxime.Gheysen
IL PROTECTED]] Sent: Friday, December 06, 2002 4:12 PM To: [EMAIL PROTECTED] Subject: AW: Request parameters for SQL arguments Is there a reason u don't use esql? Or do you use esql? http://enpdata.csit.fsu.edu/cocoon/documents/esql -Ursprüngliche Nachricht- Von: [EMAIL PR

AW: Request parameters for SQL arguments

2002-12-06 Thread Scherler, Thorsten
thing in my pipeline? thanks -Original Message- From: Scherler, Thorsten [mailto:[EMAIL PROTECTED]] Sent: Friday, December 06, 2002 3:47 PM To: [EMAIL PROTECTED] Subject: AW: Request parameters for SQL arguments Sorry, that

RE: Request parameters for SQL arguments

2002-12-06 Thread Maxime.Gheysen
in my pipeline? thanks -Original Message- From: Scherler, Thorsten [mailto:[EMAIL PROTECTED]] Sent: Friday, December 06, 2002 3:47 PM To: [EMAIL PROTECTED] Subject: AW: Request parameters for SQL arguments Sorry, that is much better

Re: Request parameters for SQL arguments

2002-12-06 Thread Christian Haul
On 06.Dec.2002 -- 03:47 PM, Scherler, Thorsten wrote: > Sorry, that is much better (use ): > > select * From AllTask Where wfID=name="myID"/> Please imagine what happens if myID evaluates to "; update AllTasks set done = 1; --" IOW you should use around it to have esql use a PreparedStatement.

AW: Request parameters for SQL arguments

2002-12-06 Thread Scherler, Thorsten
Sorry, that is much better (use ): select * From AllTask Where wfID= -Ursprüngliche Nachricht- Von: Scherler, Thorsten Gesendet: Freitag, 6. Dezember 2002 15:44 An: [EMAIL PROTECTED] Betreff: AW: Request parameters for SQL arguments select * From AllTask Where wfID= call it like

AW: Request parameters for SQL arguments

2002-12-06 Thread Scherler, Thorsten
select * From AllTask Where wfID= call it like: ../view-workflow?myID=2 -Ursprüngliche Nachricht- Von: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Gesendet: Freitag, 6. Dezember 2002 15:41 An: [EMAIL PROTECTED] Betreff: XSP: Request parameters for SQL arguments I try to have a

XSP: Request parameters for SQL arguments

2002-12-06 Thread Maxime.Gheysen
I try to have a variable for my sql query : select * From AllTask Where wfID= That variable (wfID=*) is in my url, that means the page is loaded with the adress: .../view-workflow?myID=2 or .../view-workflow?myID=5 How can I get the variable 2 or 5 and put it in my SQL query? I use a xsp page.