如何抛出验证错误

时间:2018-04-20 04:23:20

标签: php html mysql

registration_from.php

     <!DOCTYPE HTML>
        <html>
       <head>
        <title>Register</title>
       </head>
       <body>
        <form action="" method="POST">
        Name: 
        <input type="text" name="name">
        <br/> <br/>
        Username: 
        <input type="text" name="username">
        <br/> <br/>
        Password:
        <input type="password" name="password">
        <br/> <br/>

        Email: 
        <input type="text" name="email">
        <br/> <br/>
        <input type="submit" name="submit" value="Register">
    </form>
</body>
  </html>
   <?php
  require('connect.php');
  require('validation.php');
$name = $_POST['name'];
$username = $_POST['username'];
$password = $_POST['password'];

$email = $_POST['email'];

   if(isset($_POST["submit"])){
    if($query = mysqli_query($connect,"INSERT INTO users 
 (`id`,`name`,`username`, `password`, `email`) VALUES ('','".$name."', 
    '".$username."', '".$password."', '".$email."')")){
        echo "Success";
    }else{
        echo "Failure" . mysqli_error($connect);
      }
      }
 ?>

validation.php

     <?php
   // define variables and set to empty values
    $nameErr = $emailErr = $userErr = $passwordErr = "";
     $name =  $email = $username =$password = "";


     if (isset($_POST['submit'])) {
     if (empty($_POST["name"])) {
        $nameErr = "Name is required";
      } else {
       $name = test_input($_POST["name"]);
       // check if name only contains letters and whitespace
      if (!preg_match("/^[a-zA-Z ]*$/",$name)) {
       $nameErr = "Only letters and white space allowed"; 
       }
       }

      if (empty($_POST["email"])) {
        $emailErr = "Email is required";
       } else {
      $email = test_input($_POST["email"]);
        // check if e-mail address is well-formed
       if (!filter_var($email, FILTER_VALIDATE_EMAIL)) {
        $emailErr = "Invalid email format"; 
       }
       }

        if (empty($_POST["username"])) {
      $userErr = "Username is required";
     } else {
      $username = test_input($_POST["username"]);
     }

     if (empty($_POST["password"])) {
       $passwordErr = "Password is required";
     } else {
       $password= test_input($_POST["password"]);
      }

  }

   function test_input($data) {
     $data = trim($data);
   $data = stripslashes($data);
   $data = htmlspecialchars($data);
   return $data;
    }
   ?>

connect.php

  <?php
  $connect = mysqli_connect("localhost", "root", "","php_forum") 
  or die("Error " . mysqli_error($connect)); 
    ?>

我正在开发一个简单的注册,有四个输入,即名称,用户名,密码,电子邮件。当用户填写表单并单击提交按钮时,所有填充的数据应该保存在正在工作的数据库中在我的情况下很好,但是当用户不会填写任何数据并且用户只是单击提交按钮时,错误消息应该显示为“所有字段都是必需的”,但在我的情况下,即使我单击提交按钮而不输入任何值我得到了成功的消息,并且所有的空值都存储在数据库中,这不应该发生,我的输出应该是如果我填写表单n点击提交按钮然后所有数据应该存储在数据库中,如果我单击提交按钮而不填写任何值,然后错误应该抛出“所有要填充的字段”并且不应将空值存储在数据库中,请任何人指导我应该做什么更改以获得我想要的输出。

3 个答案:

答案 0 :(得分:1)

&#13;
&#13;
mc.get-property('query.param.arg1')
&#13;
&#13;
&#13;

答案 1 :(得分:0)

请在会话中添加错误并在表单文件中打印会话。

在validation.php中

$nameErr = $emailErr = $userErr = $passwordErr = "";
$name =  $email = $username =$password = "";
if (isset($_POST['submit'])) {

 $name = $_POST["name"];
 $email = $_POST["email"];
 $username = $_POST["username"];
 $password = $_POST["password"];

if($name == '' ||  $email == '' || $username == '' || $password == "") 
 {
  echo "ALL FIELDS ARE NECESSARY";
  exit();
 }

     if (empty($_POST["name"])) {
        $nameErr = "Name is required";
      } else {
       $name = test_input($_POST["name"]);
       // check if name only contains letters and whitespace
      if (!preg_match("/^[a-zA-Z ]*$/",$name)) {
       $nameErr = "Only letters and white space allowed"; 
       }
       }

      if (empty($_POST["email"])) {
        $emailErr = "Email is required";
       } else {
      $email = test_input($_POST["email"]);
        // check if e-mail address is well-formed
       if (!filter_var($email, FILTER_VALIDATE_EMAIL)) {
        $emailErr = "Invalid email format"; 
       }
       }

        if (empty($_POST["username"])) {
      $userErr = "Username is required";
     } else {
      $username = test_input($_POST["username"]);
     }

     if (empty($_POST["password"])) {
       $passwordErr = "Password is required";
     } else {
       $password= test_input($_POST["password"]);
      }

  }

registration_from.php

if(isset($_SESSION['error]) && !empty($_SESSION['error])){
   echo $_SESSION["error"]
 }

答案 2 :(得分:0)

如果您不介意添加更多代码,您的代码就像:

registration_form.php

<?php
require('validation.php'); // Require first to do validation before queries
require('connect.php');

// Remove the part where you set variables to $_POST params
// Variables are already set inside validation.php

/**
* Then, I recommend moving queries to **connect.php**
* to have all your sql functions inside one file.
* Also moving the inserting of data to a function for easy grouping/calling
*/

if (isset($_POST["submit"]) {
    // Check if validation does not fail
    if ($emailErr == "" || $nameErr == "" || $userErr == "" || $passwordErr == "") {
        // Call to insert function
        doInsert($name, $email, $username, $password);
    } else {
        echo $emailErr . " " . $nameErr . " " . $userErr . " " . $passwordErr;
    }
}

?>

connect.php

function doInsert($name, $email, $username, $password) {
    $connect = mysqli_connect("localhost", "root", "","php_forum")
        or die("Error " . mysqli_error($connect));

    $sql = "INSERT INTO users(`id`,`name`,`username`, `password`, `email`)
            VALUES ('','".$name."', '".$username."', '".$password."', '".$email."')";

    $query = mysqli_query($connect, $sql);

    if ($query) {
        echo "Success";
    } else {
        echo "Failure " . mysqli_error($connect);
    }
}