Re: Protection from SQL injection

Поиск
Список
Период
Сортировка
От Andrew Dunstan
Тема Re: Protection from SQL injection
Дата
Msg-id 4819F952.1020102@dunslane.net
обсуждение исходный текст
Ответ на Re: Protection from SQL injection  ("Thomas Mueller" <thomas.tom.mueller@gmail.com>)
Список pgsql-hackers

Thomas Mueller wrote:
> Disabling literals is still the only way to actually protect from SQL
> injection. Except Meredith's libdejector, which is even a bit better
> as far as I see, but requires more work from the developer. I don't
> count Microsoft LINQ (or Java Quaere) currently because that would
> require a complete re-write of the application.
>
>
>   

I honestly don't think there's any chance of this happening, for the 
many good reasons previously covered in this debate.

cheers

andrew


В списке pgsql-hackers по дате отправления:

Предыдущее
От: KaiGai Kohei
Дата:
Сообщение: Re: [0/4] Proposal of SE-PostgreSQL patches
Следующее
От: Tom Lane
Дата:
Сообщение: Re: Protection from SQL injection