Phpcoursematerial1 240603092914 0c4a151c
Phpcoursematerial1 240603092914 0c4a151c
SYLLABUS
Unit I
Unit II
Creating Functions - Reading Data in Web Pages - PHP Browser - Handling Power.
Unit III
Unit IV
Unit V
Unit I
ROAD MAP
What is MySQL?
MySQL is a database server
MySQL is ideal for both small and large applications
MySQL supports standard SQL
MySQL compiles on a number of platforms
MySQL is free to download and use
PHP + MySQL
Why PHP?
Where to Start?
To get access to a web server with PHP support, you can:
Install Apache (or IIS) on your own server, install PHP, and MySQL
Or find a web hosting plan with PHP and MySQL support
PHP Syntax
PHP code is executed on the server, and the plain HTML result is sent to the
browser.
Basic PHP Syntax
A PHP scripting block always starts with <?php and ends with ?>. A PHP scripting
block can be placed anywhere in the document.
On servers with shorthand support enabled you can start a scripting block with <?
and end with ?>.
For maximum compatibility, we recommend that you use the standard form (<?php)
rather than the shorthand form.
<?php
?>
A PHP file normally contains HTML tags, just like an HTML file, and some PHP
scripting code.
Below, we have an example of a simple PHP script which sends the text "Hello
World" to the browser:
<html>
<body>
<?php
echo "Hello World";
?>
</body>
</html>
Each code line in PHP must end with a semicolon. The semicolon is a separator and
is used to distinguish one set of instructions from another.
There are two basic statements to output text with PHP: echo and print. In the
example above we have used the echo statement to output the text "Hello World".
Note: The file must have the .php extension. If the file has a .html extension, the
PHP code will not be executed.
Comments in PHP
In PHP, we use // to make a single-line comment or /* and */ to make a large
comment block.
<html>
<body>
<?php
//This is a comment
/*
This is
a comment
block
*/
?>
</body>
</html>
PHP Variables
Variables are used for storing values, such as numbers, strings or function results, so
that they can be used many times in a script.
Variables in PHP
Variables are used for storing a values, like text strings, numbers or arrays.
When a variable is set it can be used over and over again in your script
$var_name = value;
New PHP programmers often forget the $ sign at the beginning of the variable. In
that case it will not work.
Let's try creating a variable with a string, and a variable with a number:
<?php
$txt = "Hello World!";
$number = 16;
?>
PHP is a Loosely Typed Language
In PHP a variable does not need to be declared before being set.
In the example above, you see that you do not have to tell PHP which data type the
variable is.
PHP automatically converts the variable to the correct data type, depending on how
they are set.
In a strongly typed programming language, you have to declare (define) the type
and name of the variable before using it.
PHP String
A string variable is used to store and manipulate a piece of text.
Strings in PHP
String variables are used for values that contains character strings.
In this tutorial we are going to look at some of the most common functions and
operators used to manipulate strings in PHP.
After we create a string we can manipulate it. A string can be used directly in a
function or it can be stored in a variable.
Below, the PHP script assigns the string "Hello World" to a string variable called
$txt:
<?php
$txt="Hello World";
echo $txt;
?>
Now, lets try to use some different functions and operators to manipulate our string.
The Concatenation Operator
There is only one string operator in PHP.
The concatenation operator (.) is used to put two string values together.
If we look at the code above you see that we used the concatenation operator two
times. This is because we had to insert a third string.
Between the two string variables we added a string with a single character, an
empty space, to separate the two variables.
Using the strlen() function
The strlen() function is used to find the length of a string.
The length of a string is often used in loops or other functions, when it is important
to know when the string ends. (i.e. in a loop, we would want to stop the loop after
the last character in the string)
Using the strpos() function
The strpos() function is used to search for a string or character within a string.
If a match is found in the string, this function will return the position of the first
match. If no match is found, it will return FALSE.
As you see the position of the string "world" in our string is position 6. The reason
that it is 6, and not 7, is that the first position in the string is 0, and not 1.
PHP Operators
Arithmetic Operators
Assignment Operators
Comparison Operators
Operator Description Example
== is equal to 5==8 returns false
!= is not equal 5!=8 returns true
> is greater than 5>8 returns false
< is less than 5<8 returns true
>= is greater than or equal to 5>=8 returns false
<= is less than or equal to 5<=8 returns true
Logical Operators
Syntax
if (condition)
code to be executed if condition is true;
else
code to be executed if condition is false;
Example
The following example will output "Have a nice weekend!" if the current day is
Friday, otherwise it will output "Have a nice day!":
<html>
<body>
<?php
$d=date("D");
if ($d=="Fri")
echo "Have a nice weekend!";
else
echo "Have a nice day!";
?>
</body>
</html>
If more than one line should be executed if a condition is true/false, the lines should
be enclosed within curly braces:
<html>
<body>
<?php
$d=date("D");
if ($d=="Fri")
{
echo "Hello!<br />";
echo "Have a nice weekend!";
echo "See you on Monday!";
}
?>
</body>
</html>
Syntax
if (condition)
code to be executed if condition is true;
elseif (condition)
code to be executed if condition is true;
else
code to be executed if condition is false;
Example
The following example will output "Have a nice weekend!" if the current day is
Friday, and "Have a nice Sunday!" if the current day is Sunday. Otherwise it will
output "Have a nice day!":
<html>
<body>
<?php
$d=date("D");
if ($d=="Fri")
echo "Have a nice weekend!";
elseif ($d=="Sun")
echo "Have a nice Sunday!";
else
echo "Have a nice day!";
?>
</body>
</html>
PHP Switch Statement
The Switch statement in PHP is used to perform one of several different actions
based on one of several different conditions.
The Switch Statement
If you want to select one of many blocks of code to be executed, use the Switch
statement.
The switch statement is used to avoid long blocks of if..elseif..else code.
Syntax
switch (expression)
{
case label1:
code to be executed if expression = label1;
break;
case label2:
code to be executed if expression = label2;
break;
default:
code to be executed
if expression is different
from both label1 and label2;
}
Example
<html>
<body>
<?php
switch ($x)
{
case 1:
echo "Number 1";
break;
case 2:
echo "Number 2";
break;
case 3:
echo "Number 3";
break;
default:
echo "No number between 1 and 3";
}
?>
</body>
</html>
PHP Arrays
An array can store one or more values in a single variable name.
What is an array?
When working with PHP, sooner or later, you might want to create many similar
variables.
Instead of having many similar variables, you can store the data as elements in an
array.
Each element in the array has its own ID so that it can be easily accessed.
Numeric Arrays
A numeric array stores each element with a numeric ID key.
Example 1
Example 2
Associative Arrays
An associative array, each ID key is associated with a value.
When storing data about specific named values, a numerical array is not always the
best way to do it.
With associative arrays we can use the values as keys and assign values to them.
Example 1
Example 2
This example is the same as example 1, but shows a different way of creating the
array:
$ages['Peter'] = "32";
$ages['Quagmire'] = "30";
$ages['Joe'] = "34";
Multidimensional Arrays
In a multidimensional array, each element in the main array can also be an array.
And each element in the sub-array can be an array, and so on.
Example
Example 2
PHP Looping
Looping statements in PHP are used to execute the same block of code a specified
number of times.
Looping
Very often when you write code, you want the same block of code to run a number
of times. You can use looping statements in your code to perform this.
In PHP we have the following looping statements:
while - loops through a block of code if and as long as a specified
condition is true
do...while - loops through a block of code once, and then repeats the loop
as long as a special condition is true
for - loops through a block of code a specified number of times
foreach - loops through a block of code for each element in an array
Syntax
while (condition)
code to be executed;
Example
The following example demonstrates a loop that will continue to run as long as the
variable i is less than, or equal to 5. i will increase by 1 each time the loop runs:
<html>
<body>
<?php
$i=1;
while($i<=5)
{
echo "The number is " . $i . "<br />";
$i++;
}
?>
</body>
</html>
Syntax
do
{
code to be executed;
}
while (condition);
Example
The following example will increment the value of i at least once, and it will
continue incrementing the variable i as long as it has a value of less than 5:
<html>
<body>
<?php
$i=0;
do
{
$i++;
echo "The number is " . $i . "<br />";
}
while ($i<5);
?>
</body>
</html>
In it's simplest form, the for statement is used when you know how many times you
want to execute a statement or a list of statements.
Syntax
for (init; cond; incr)
{
code to be executed;
}
Parameters:
init: Is mostly used to set a counter, but can be any code to be
executed once at the beginning of the loop statement.
cond: Is evaluated at beginning of each loop iteration. If the
condition evaluates to TRUE, the loop continues and the code
executes. If it evaluates to FALSE, the execution of the loop ends.
incr: Is mostly used to increment a counter, but can be any code to
be executed at the end of each loop.
Note: Each of the parameters can be empty or have multiple expressions
separated by commas.
cond: All expressions separated by a comma are evaluated but the
result is taken from the last part. This parameter being empty
means the loop should be run indefinitely. This is useful when using
a conditional break statement inside the loop for ending the loop.
Example
The following example prints the text "Hello World!" five times:
<html>
<body>
<?php
for ($i=1; $i<=5; $i++)
{
echo "Hello World!<br />";
}
?>
</body>
</html>
For every loop, the value of the current array element is assigned to $value (and the
array pointer is moved by one) - so on the next loop, you'll be looking at the next
element.
Syntax
foreach (array as value)
{
code to be executed;
}
Example
The following example demonstrates a loop that will print the values of the given
array:
<html>
<body>
<?php
$arr=array("one", "two", "three");
foreach ($arr as $value)
{
echo "Value: " . $value . "<br />";
}
?>
</body>
</html>
Unit – II
Creating Functions – Reading Data in Web Pages – PHP Browser Handling
Power
ROAD MAP
Reading Data in •Handling Text fields, Text areas, Check Boxes, Radio Buttons, List Boxes.
Web Pages •Handling Password Controls, Hidden Controls, Image Maps, File Uploads,
Buttons
PHP Functions
The real power of PHP comes from its functions.
In PHP - there are more than 700 built-in functions available.
PHP Functions
In this tutorial we will show you how to create your own functions.
For a reference and examples of the built-in functions
<html>
<body>
<?php
function writeMyName()
Example
{
echo "Kai Jim Refsnes";
}
writeMyName();
?>
</body>
</html>
Use a PHP Function
Now we will use the function in a PHP script:
<html>
<body>
<?php
function writeMyName()
{
echo "Kai Jim Refsnes";
}
echo "Hello world!<br />";
echo "My name is ";
writeMyName();
echo ".<br />That's right, ";
writeMyName();
echo " is my name.";
?>
</body>
</html>
You may have noticed the parentheses after the function name, like:
writeMyName(). The parameters are specified inside the parentheses.
Example 1
The following example will write different first names, but the same last name:
<html>
<body>
<?php
function writeMyName($fname)
{
echo $fname . " Refsnes.<br />";
}
echo "My name is ";
writeMyName("Kai Jim");
echo "My name is ";
writeMyName("Hege");
echo "My name is ";
writeMyName("Stale");
?>
</body>
</html>
Example 2
Example
<html>
<body>
<?php
function add($x,$y)
{
$total = $x + $y;
return $total;
}
echo "1 + 16 = " . add(1,16);
?>
</body>
</html>
Form example:
<html>
<body>
<form action="welcome.php" method="post">
Name: <input type="text" name="name" />
Age: <input type="text" name="age" />
<input type="submit" />
</form>
</body>
</html>
The example HTML page above contains two input fields and a submit button.
When the user fills in this form and click on the submit button, the form data is sent
to the "welcome.php" file.
The PHP $_GET and $_POST variables will be explained in the next chapters.
Form Validation
User input should be validated whenever possible. Client side validation is faster,
and will reduce server load.
However, any site that gets enough traffic to worry about server resources, may also
need to worry about site security. You should always use server side validation if the
form accesses a database.
A good way to validate a form on the server is to post the form to itself, instead of
jumping to a different page. The user will then get the error messages on the same
page as the form. This makes it easier to discover the error.
PHP $_GET
The $_GET variable is used to collect values from a form with method="get".
The $_GET Variable
The $_GET variable is an array of variable names and values sent by the HTTP
GET method.
The $_GET variable is used to collect values from a form with method="get".
Information sent from a form with the GET method is visible to everyone (it will be
displayed in the browser's address bar) and it has limits on the amount of
information to send (max. 100 characters).
Example
<form action="welcome.php" method="get">
Name: <input type="text" name="name" />
Age: <input type="text" name="age" />
<input type="submit" />
</form>
When the user clicks the "Submit" button, the URL sent could look something like
this:
http://www.w3schools.com/welcome.php?name=Peter&age=37
The "welcome.php" file can now use the $_GET variable to catch the form data
(notice that the names of the form fields will automatically be the ID keys in the
$_GET array):
The PHP $_REQUEST variable can be used to get the result from form data sent
with both the GET and POST methods.
Example
Welcome <?php echo $_REQUEST["name"]; ?>.<br />
You are <?php echo $_REQUEST["age"]; ?> years old!
PHP $_POST
The $_POST variable is used to collect values from a form with method="post".
The $_POST Variable
The $_POST variable is an array of variable names and values sent by the HTTP
POST method.
The $_POST variable is used to collect values from a form with method="post".
Information sent from a form with the POST method is invisible to others and has
no limits on the amount of information to send.
Example
<form action="welcome.php" method="post">
Enter your name: <input type="text" name="name" />
Enter your age: <input type="text" name="age" />
<input type="submit" />
</form>
When the user clicks the "Submit" button, the URL will not contain any form data,
and will look something like this:
http://www.w3schools.com/welcome.php
The "welcome.php" file can now use the $_POST variable to catch the form data
(notice that the names of the form fields will automatically be the ID keys in the
$_POST array):
However, because the variables are not displayed in the URL, it is not possible to
bookmark the page.
The PHP $_REQUEST variable can be used to get the result from form data sent
with both the GET and POST methods.
Example
Welcome <?php echo $_REQUEST["name"]; ?>.<br />
You are <?php echo $_REQUEST["age"]; ?> years old!
PHP Date()
The PHP date() function is used to format a time or a date.
The PHP Date() Function
The PHP date() function formats a timestamp to a more readable date and time.
Syntax
date(format,timestamp)
Parameter Description
An overview of all the letters that can be used in the format parameter can be found
in date.
Other characters, like"/", ".", or "-" can also be inserted between the letters to add
additional formatting:
<?php
echo date("Y/m/d");
echo "<br />";
echo date("Y.m.d");
echo "<br />";
echo date("Y-m-d");
?>
In our next example we will use the mktime() function to create a timestamp for
tomorrow.
The mktime() function returns the Unix timestamp for a specified date.
Syntax
mktime(hour,minute,second,month,day,year,is_dst)
To go one day in the future we simply add one to the day argument of mktime():
<?php
$tomorrow = mktime(0,0,0,date("m"),date("d")+1,date("Y"));
echo "Tomorrow is ".date("Y/m/d", $tomorrow);
?>
These two functions are used to create functions, headers, footers, or elements that can
be reused on multiple pages.
This can save the developer a considerable amount of time. This means that you can
create a standard header or menu file that you want all your web pages to include.
When the header needs to be updated, you can only update this one include file, or
when you add a new page to your site, you can simply change the menu file (instead
of updating the links on all web pages).
The include() Function
The include() function takes all the text in a specified file and copies it into the file
that uses the include function.
Example 1
Assume that you have a standard header file, called "header.php". To include the
header file in a page, use the include() function, like this:
<html>
<body>
<?php include("header.php"); ?>
<h1>Welcome to my home page</h1>
<p>Some text</p>
</body>
</html>
Example 2
Now, let's assume we have a standard menu file that should be used on all pages
(include files usually have a ".php" extension). Look at the "menu.php" file below:
<html>
<body>
<a href="http://www.w3schools.com/default.php">Home</a> |
<a href="http://www.w3schools.com/about.php">About Us</a> |
<a href="http://www.w3schools.com/contact.php">Contact Us</a>
The three files, "default.php", "about.php", and "contact.php" should all include the
"menu.php" file. Here is the code in "default.php":
<html>
<body>
<a href="default.php">Home</a> |
<a href="about.php">About Us</a> |
<a href="contact.php">Contact Us</a>
<h1>Welcome to my home page</h1>
<p>Some text</p>
</body>
</html>
And, of course, we would have to do the same thing for "about.php" and
"contact.php". By using include files, you simply have to update the text in the
"menu.php" file if you decide to rename or change the order of the links or add
another web page to the site.
The require() Function
The require() function is identical to include(), except that it handles errors
differently.
The include() function generates a warning (but the script will continue execution)
while the require() function generates a fatal error (and the script execution will stop
after the error).
If you include a file with the include() function and an error occurs, you might get
an error message like the one below.
PHP code:
<html>
<body>
<?php
include("wrongFile.php");
echo "Hello World!";
?>
</body>
</html>
Error message:
Warning: include(wrongFile.php) [function.include]:
failed to open stream:
No such file or directory in C:\home\website\test.php on line
5
Warning: include() [function.include]:
Failed opening 'wrongFile.php' for inclusion
(include_path='.;C:\php5\pear')
in C:\home\website\test.php on line 5
Hello World!
Notice that the echo statement is still executed! This is because a Warning does not
stop the script execution.
Now, let's run the same example with the require() function.
PHP code:
<html>
<body>
<?php
require("wrongFile.php");
echo "Hello World!";
?>
</body>
</html>
Error message:
Warning: require(wrongFile.php) [function.require]:
failed to open stream:
No such file or directory in C:\home\website\test.php on line
5
Fatal error: require() [function.require]:
Failed opening required 'wrongFile.php'
(include_path='.;C:\php5\pear')
in C:\home\website\test.php on line 5
The echo statement was not executed because the script execution stopped after the
fatal error.
Member Data
Member Functions
PHP: Creating classes and Instantiation
The class definition starts with the keyword class followed by a class
name, then followed by a set of curly braces ({}) which enclose constants,
variables (called "properties"), and functions (called "methods")
belonging to the class.
A valid class name (excluding the reserved words) starts with a letter or
underscore, followed by any number of letters, numbers, or underscores.
Methods can be public, private or protected. Public means that methods can be
accessed everywhere, private means methods can be accessed by the class that
defines the member and protected means methods can be accessed only within
the class itself and by inherited and parent classes.
The constructor is not required if you don't want to pass any property
values or perform any actions when the object is created.
function __destruct
{
/* Class initialization code */
}
The type of argument1, argument2,.......,argumentN are mixed.
PHP: Inheritance
Allows subclasses to share the methods and properties (which are public
or protected) of its superclass.
Interfaces may inherit from other interfaces using the extends keyword.
ROAD MAP
FILE HANDLING
OPEN, READ & CLOSE DELETE,WRITE & APPEND
The first parameter of this function contains the name of the file to be opened and
the second parameter specifies in which mode the file should be opened:
<html>
<body>
<?php
$file=fopen("welcome.txt","r");
?>
</body>
</html>
Modes Description
w Write only. Opens and clears the contents of file; or creates a new file
if it doesn't exist
a Append. Opens and writes to the end of the file or creates a new
file if it doesn't exist
x Write only. Creates a new file. Returns FALSE and an error if file
already exists
Note: If the fopen() function is unable to open the specified file, it returns 0 (false).
Example
<html>
<body>
<?php
$file=fopen("welcome.txt","r") or exit("Unable to open
file!");
?>
</body>
</html>
Closing a File
The fclose() function is used to close an open file:
<?php
$file = fopen("test.txt","r");
//some code to be executed
fclose($file);
?>
Check End-of-file
The feof() function checks if the "end-of-file" (EOF) has been reached.
The feof() function is useful for looping through data of unknown length.
Note: After a call to this function the file pointer has moved to the next line.
Example
The example below reads a file line by line, until the end of file is reached:
<?php
$file = fopen("welcome.txt", "r") or exit("Unable to open
file!");
//Output a line of the file until the end is reached
while(!feof($file))
{
echo fgets($file). "<br />";
}
fclose($file);
?>
Note: After a call to this function the file pointer moves to the next character.
Example
The example below reads a file character by character, until the end of file is
reached:
<?php
$file=fopen("welcome.txt","r") or exit("Unable to open
file!");
while (!feof($file))
{
echo fgetc($file);
}
fclose($file);
?>
<html>
<body>
Look at the following HTML form for uploading files:
Note: Allowing users to upload files is a big security risk. Only permit
trusted users to perform file uploads.
Create The Upload Script
The "upload_file.php" file contains the code for uploading a file:
<?php
if ($_FILES["file"]["error"] > 0)
{
echo "Error: " . $_FILES["file"]["error"] . "<br />";
}
else
{
echo "Upload: " . $_FILES["file"]["name"] . "<br />";
echo "Type: " . $_FILES["file"]["type"] . "<br />";
echo "Size: " . ($_FILES["file"]["size"] / 1024) . " Kb<br
/>";
echo "Stored in: " . $_FILES["file"]["tmp_name"];
}
?>
By using the global PHP $_FILES array you can upload files from a client
computer to the remote server.
The first parameter is the form's input name and the second index can be
either "name", "type", "size", "tmp_name" or "error". Like this:
$_FILES["file"]["name"] - the name of the uploaded file
$_FILES["file"]["type"] - the type of the uploaded file
$_FILES["file"]["size"] - the size in bytes of the uploaded file
$_FILES["file"]["tmp_name"] - the name of the temporary copy of
the file stored on the server
$_FILES["file"]["error"] - the error code resulting from the file
upload
This is a very simple way of uploading files. For security reasons, you
should add restrictions on what the user is allowed to upload.
Restrictions on Upload
In this script we add some restrictions to the file upload. The user may only
upload .gif or .jpeg files and the file size must be under 20 kb:
<?php
if ((($_FILES["file"]["type"] == "image/gif")
|| ($_FILES["file"]["type"] == "image/jpeg")
|| ($_FILES["file"]["type"] == "image/pjpeg"))
&& ($_FILES["file"]["size"] < 20000))
{
if ($_FILES["file"]["error"] > 0)
{
echo "Error: " . $_FILES["file"]["error"] . "<br />";
}
else
{
echo "Upload: " . $_FILES["file"]["name"] . "<br />";
echo "Type: " . $_FILES["file"]["type"] . "<br />";
echo "Size: " . ($_FILES["file"]["size"] / 1024) . " Kb<br
/>";
echo "Stored in: " . $_FILES["file"]["tmp_name"];
}
}
else
{
echo "Invalid file";
}
?>
Note: For IE to recognize jpg files the type must be pjpeg, for FireFox it
must be jpeg.
Saving the Uploaded File
The examples above create a temporary copy of the uploaded files in the
PHP temp folder on the server.
The temporary copied files disappears when the script ends. To store the
uploaded file we need to copy it to a different location:
<?php
if ((($_FILES["file"]["type"] == "image/gif")
|| ($_FILES["file"]["type"] == "image/jpeg")
|| ($_FILES["file"]["type"] == "image/pjpeg"))
&& ($_FILES["file"]["size"] < 20000))
{
if ($_FILES["file"]["error"] > 0)
{
echo "Return Code: " . $_FILES["file"]["error"] . "<br
/>";
}
else
{
echo "Upload: " . $_FILES["file"]["name"] . "<br />";
echo "Type: " . $_FILES["file"]["type"] . "<br />";
echo "Size: " . ($_FILES["file"]["size"] / 1024) . " Kb<br
/>";
echo "Temp file: " . $_FILES["file"]["tmp_name"] . "<br
/>";
if (file_exists("upload/" . $_FILES["file"]["name"]))
{
echo $_FILES["file"]["name"] . " already exists. ";
}
else
{
move_uploaded_file($_FILES["file"]["tmp_name"],
"upload/" . $_FILES["file"]["name"]);
echo "Stored in: " . "upload/" .
$_FILES["file"]["name"];
}
}
}
else
{
echo "Invalid file";
}
?>
The script above checks if the file already exists, if it does not, it copies the
file to the specified folder.
Note: This example saves the file to a new folder called "upload"
PHP Cookies
A cookie is often used to identify a user.
What is a Cookie?
A cookie is often used to identify a user. A cookie is a small file that the
server embeds on the user's computer. Each time the same computer requests
a page with a browser, it will send the cookie too. With PHP, you can both
create and retrieve cookie values.
How to Create a Cookie?
The setcookie() function is used to set a cookie.
Note: The setcookie() function must appear BEFORE the <html> tag.
Syntax
setcookie(name, value, expire, path, domain);
Example 1
In the example below, we will create a cookie named "user" and assign the
value "Alex Porter" to it. We also specify that the cookie should expire after
one hour:
<?php
setcookie("user", "Alex Porter", time()+3600);
?>
<html>
.....
Example 2
You can also set the expiration time of the cookie in another way. It may be
easier than using seconds.
<?php
$expire=time()+60*60*24*30;
setcookie("user", "Alex Porter", $expire);
?>
<html>
.....
In the example above the expiration time is set to a month (60 sec * 60 min *
24 hours * 30 days).
In the example below, we retrieve the value of the cookie named "user" and
display it on a page:
<?php
// Print a cookie
echo $_COOKIE["user"];
// A way to view all cookies
print_r($_COOKIE);
?>
In the following example we use the isset() function to find out if a cookie
has been set:
<html>
<body>
<?php
if (isset($_COOKIE["user"]))
echo "Welcome " . $_COOKIE["user"] . "!<br />";
else
echo "Welcome guest!<br />";
?>
</body>
</html>
Delete example:
<?php
// set the expiration date to one hour ago
setcookie("user", "", time()-3600);
?>
The form below passes the user input to "welcome.php" when the user clicks
on the "Submit" button:
<html>
<body>
<form action="welcome.php" method="post">
Name: <input type="text" name="name" />
Age: <input type="text" name="age" />
<input type="submit" />
</form>
</body>
</html>
<html>
<body>
Welcome <?php echo $_POST["name"]; ?>.<br />
You are <?php echo $_POST["age"]; ?> years old.
</body>
</html>
PHP Sessions
A PHP session variable is used to store information about, or change settings
for a user session. Session variables hold information about one single user,
and are available to all pages in one application.
PHP Session Variables
When you are working with an application, you open it, do some changes
and then you close it. This is much like a Session. The computer knows who
you are. It knows when you start the application and when you end. But on
the internet there is one problem: the web server does not know who you are
and what you do because the HTTP address doesn't maintain state.
A PHP session solves this problem by allowing you to store user information
on the server for later use (i.e. username, shopping items, etc). However,
session information is temporary and will be deleted after the user has left
the website. If you need a permanent storage you may want to store the data
in a database.
Sessions work by creating a unique id (UID) for each visitor and store
variables based on this UID. The UID is either stored in a cookie or is
propagated in the URL.
Starting a PHP Session
Before you can store user information in your PHP session, you must first
start up the session.
Note: The session_start() function must appear BEFORE the <html> tag:
The code above will register the user's session with the server, allow you to
start saving user information, and assign a UID for that user's session.
Storing a Session Variable
The correct way to store and retrieve session variables is to use the PHP
$_SESSION variable:
<?php
session_start();
// store session data
$_SESSION['views']=1;
?>
<html>
<body>
<?php
//retrieve session data
echo "Pageviews=". $_SESSION['views'];
?>
</body>
</html>
Output:
Pageviews=1
<?php
session_start();
if(isset($_SESSION['views']))
$_SESSION['views']=$_SESSION['views']+1;
else
$_SESSION['views']=1;
echo "Views=". $_SESSION['views'];
?>
Destroying a Session
If you wish to delete some session data, you can use the unset() or the
session_destroy() function.
<?php
unset($_SESSION['views']);
?>
You can also completely destroy the session by calling the session_destroy()
function:
<?php
session_destroy();
?>
Note: session_destroy() will reset your session and you will lose all your
stored session data.
Syntax
mail(to,subject,message,headers,parameters)
Parameter Description
to Required. Specifies the receiver / receivers of the email
subject Required. Specifies the subject of the email. Note: This
parameter cannot contain any newline characters
message Required. Defines the message to be sent. Each line should be
separated with a LF (\n). Lines should not exceed 70
characters
headers Optional. Specifies additional headers, like From, Cc, and
Bcc. The additional headers should be separated with a CRLF
(\r\n)
parameters Optional. Specifies an additional parameter to the sendmail
program
Note: For the mail functions to be available, PHP requires an installed and
working email system. The program to be used is defined by the
configuration settings in the php.ini file
In the example below we first declare the variables ($to, $subject, $message,
$from, $headers), then we use the variables in the mail() function to send an
e-mail:
<?php
$to = "[email protected]";
$subject = "Test mail";
$message = "Hello! This is a simple email message.";
$from = "[email protected]";
$headers = "From: $from";
mail($to,$subject,$message,$headers);
echo "Mail Sent.";
?>
PHP Mail Form
With PHP, you can create a feedback-form on your website. The example
below sends a text message to a specified e-mail address:
<html>
<body>
<?php
if (isset($_REQUEST['email']))
//if "email" is filled out, send email
{
//send email
$email = $_REQUEST['email'] ;
$subject = $_REQUEST['subject'] ;
$message = $_REQUEST['message'] ;
mail( "[email protected]", "Subject: $subject",
$message, "From: $email" );
echo "Thank you for using our mail form";
}
else
//if "email" is not filled out, display the form
{
echo "<form method='post' action='mailform.php'>
Email: <input name='email' type='text' /><br />
Subject: <input name='subject' type='text' /><br />
Message:<br />
<textarea name='message' rows='15' cols='40'>
</textarea><br />
<input type='submit' />
</form>";
}
?>
</body>
</html>
Note: This is the simplest way to send e-mail, but it is not secure. In the next
chapter of this tutorial you can read more about vulnerabilities in e-mail
scripts, and how to validate user input to make it more secure.
PHP Secure E-mails
There is a weakness in the PHP e-mail script in the previous chapter.
PHP E-mail Injections
First, look at the PHP code from the previous chapter:
<html>
<body>
<?php
if (isset($_REQUEST['email']))
//if "email" is filled out, send email
{
//send email
$email = $_REQUEST['email'] ;
$subject = $_REQUEST['subject'] ;
$message = $_REQUEST['message'] ;
mail("[email protected]", "Subject: $subject",
$message, "From: $email" );
echo "Thank you for using our mail form";
}
else
//if "email" is not filled out, display the form
{
echo "<form method='post' action='mailform.php'>
Email: <input name='email' type='text' /><br />
Subject: <input name='subject' type='text' /><br />
Message:<br />
<textarea name='message' rows='15' cols='40'>
</textarea><br />
<input type='submit' />
</form>";
}
?>
</body>
</html>
The problem with the code above is that unauthorized users can insert data
into the mail headers via the input form.
What happens if the user adds the following text to the email input field in
the form?
[email protected]%0ACc:[email protected]
%0ABcc:[email protected],[email protected],
[email protected],[email protected]
%0ABTo:[email protected]
The mail() function puts the text above into the mail headers as usual, and
now the header has an extra Cc:, Bcc:, and To: field. When the user clicks the
submit button, the e-mail will be sent to all of the addresses above!
PHP Stopping E-mail Injections
The best way to stop e-mail injections is to validate the input.
The code below is the same as in the previous chapter, but now we have
added an input validator that checks the email field in the form:
<html>
<body>
<?php
function spamcheck($field)
{
//filter_var() sanitizes the e-mail
//address using FILTER_SANITIZE_EMAIL
$field=filter_var($field, FILTER_SANITIZE_EMAIL);
This tutorial contains some of the most common error checking methods in
PHP.
If the file does not exist you might get an error like this:
Warning: fopen(welcome.txt) [function.fopen]: failed to open
stream:
No such file or directory in C:\webfolder\test.php on line 2
To avoid that the user gets an error message like the one above, we test if the
file exist before we try to access it:
<?php
if(!file_exists("welcome.txt"))
{
die("File not found");
}
else
{
$file=fopen("welcome.txt","r");
}
?>
Now if the file does not exist you get an error like this:
File not found
The code above is more efficient than the earlier code, because it uses a
simple error handling mechanism to stop the script after the error.
However, simply stopping the script is not always the right way to go. Let's
take a look at alternative PHP functions for handling errors.
Creating a Custom Error Handler
Creating a custom error handler is quite simple. We simply create a special
function that can be called when an error occurs in PHP.
Syntax
error_function(error_level,error_message,
error_file,error_line,error_context)
Parameter Description
error_level Required. Specifies the error report level for the user-defined
error. Must be a value number. See table below for possible
error report levels
error_message Required. Specifies the error message for the user-defined
error
error_file Optional. Specifies the filename in which the error occurred
error_line Optional. Specifies the line number in which the error
occurred
error_context Optional. Specifies an array containing every variable, and
their values, in use when the error occurred
Now that we have created an error handling function we need to decide when
it should be triggered.
Set Error Handler
The default error handler for PHP is the built in error handler. We are going
to make the function above the default error handler for the duration of the
script.
It is possible to change the error handler to apply for only some errors, that
way the script can handle different errors in different ways. However, in this
example we are going to use our custom error handler for all errors:
set_error_handler("customError");
Example
Testing the error handler by trying to output variable that does not exist:
<?php
//error handler function
function customError($errno, $errstr)
{
echo "<b>Error:</b> [$errno] $errstr";
}
//set error handler
set_error_handler("customError");
//trigger error
echo($test);
?>
Trigger an Error
In a script where users can input data it is useful to trigger errors when an
illegal input occurs. In PHP, this is done by the trigger_error() function.
Example
In this example an error occurs if the "test" variable is bigger than "1":
<?php
$test=2;
if ($test>1)
{
trigger_error("Value must be 1 or below");
}
?>
Example
In this example an E_USER_WARNING occurs if the "test" variable is
bigger than "1". If an E_USER_WARNING occurs we will use our custom
error handler and end the script:
<?php
//error handler function
function customError($errno, $errstr)
{
echo "<b>Error:</b> [$errno] $errstr<br />";
echo "Ending Script";
die();
}
//set error handler
set_error_handler("customError",E_USER_WARNING);
//trigger error
$test=2;
if ($test>1)
{
trigger_error("Value must be 1 or below",E_USER_WARNING);
}
?>
Now that we have learned to create our own errors and how to trigger them,
lets take a look at error logging.
Error Logging
By default, PHP sends an error log to the servers logging system or a file,
depending on how the error_log configuration is set in the php.ini file. By
using the error_log() function you can send error logs to a specified file or a
remote destination.
<?php
//error handler function
function customError($errno, $errstr)
{
echo "<b>Error:</b> [$errno] $errstr<br />";
echo "Webmaster has been notified";
error_log("Error: [$errno] $errstr",1,
"[email protected]","From: [email protected]");
}
//set error handler
set_error_handler("customError",E_USER_WARNING);
//trigger error
$test=2;
if ($test>1)
{
trigger_error("Value must be 1 or below",E_USER_WARNING);
}
?>
And the mail received from the code above looks like this:
Error: [512] Value must be 1 or below
This should not be used with all errors. Regular errors should be logged on
the server using the default PHP logging system.
The query above selects all the data in the "LastName" column from the
"Persons" table, and will return a recordset like this:
LastName
Hansen
Svendson
Pettersen
Facts About MySQL Database
One great thing about MySQL is that it can be scaled down to support
embedded database applications. Perhaps it is because of this reputation that
many people believe that MySQL can only handle small to medium-sized
systems.
The truth is that MySQL is the de-facto standard database for web sites that
support huge volumes of both data and end users (like Friendster, Yahoo,
Google).
Syntax
mysql_connect(servername,username,password);
Parameter Description
Example
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
// some code
?>
Closing a Connection
The connection will be closed automatically when the script ends. To close
the connection before, use the mysql_close() function:
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
// some code
mysql_close($con);
?>
Syntax
CREATE DATABASE database_name
To get PHP to execute the statement above we must use the mysql_query()
function. This function is used to send a query or command to a MySQL
connection.
Example
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
if (mysql_query("CREATE DATABASE my_db",$con))
{
echo "Database created";
}
else
{
echo "Error creating database: " . mysql_error();
}
mysql_close($con);
?>
Create a Table
The CREATE TABLE statement is used to create a table in MySQL.
Syntax
CREATE TABLE table_name
(
column_name1 data_type,
column_name2 data_type,
column_name3 data_type,
....
)
Example
The following example creates a table named "Persons", with three columns.
The column names will be "FirstName", "LastName" and "Age":
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
// Create database
if (mysql_query("CREATE DATABASE my_db",$con))
{
echo "Database created";
}
else
{
echo "Error creating database: " . mysql_error();
}
// Create table
mysql_select_db("my_db", $con);
$sql = "CREATE TABLE Persons
(
FirstName varchar(15),
LastName varchar(15),
Age int
)";
// Execute query
mysql_query($sql,$con);
mysql_close($con);
?>
Note: When you create a database field of type varchar, you must specify the
maximum length of the field, e.g. varchar(15).
The data type specifies what type of data the column can hold. For a
complete reference of all the data types available in MySQL,
A primary key is used to uniquely identify the rows in a table. Each primary
key value must be unique within the table. Furthermore, the primary key
field cannot be null because the database engine requires a value to locate the
record.
The following example sets the personID field as the primary key field. The
primary key field is often an ID number, and is often used with the
AUTO_INCREMENT setting. AUTO_INCREMENT automatically
increases the value of the field by 1 each time a new record is added. To
ensure that the primary key field cannot be null, we must add the NOT
NULL setting to the field.
Example
$sql = "CREATE TABLE Persons
(
personID int NOT NULL AUTO_INCREMENT,
PRIMARY KEY(personID),
FirstName varchar(15),
LastName varchar(15),
Age int
)";
mysql_query($sql,$con);
Syntax
The first form doesn't specify the column names where the data will be
inserted, only their values:
To get PHP to execute the statements above we must use the mysql_query()
function. This function is used to send a query or command to a MySQL
connection.
Example
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
mysql_query("INSERT INTO Persons (FirstName, LastName, Age)
VALUES ('Peter', 'Griffin', '35')");
mysql_query("INSERT INTO Persons (FirstName, LastName, Age)
VALUES ('Glenn', 'Quagmire', '33')");
mysql_close($con);
?>
<html>
<body>
<form action="insert.php" method="post">
Firstname: <input type="text" name="firstname" />
Lastname: <input type="text" name="lastname" />
Age: <input type="text" name="age" />
<input type="submit" />
</form>
</body>
</html>
When a user clicks the submit button in the HTML form in the example
above, the form data is sent to "insert.php".
The "insert.php" file connects to a database, and retrieves the values from the
form with the PHP $_POST variables.
Then, the mysql_query() function executes the INSERT INTO statement, and
a new record will be added to the "Persons" table.
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
$sql="INSERT INTO Persons (FirstName, LastName, Age)
VALUES
('$_POST[firstname]','$_POST[lastname]','$_POST[age]')";
if (!mysql_query($sql,$con))
{
die('Error: ' . mysql_error());
}
echo "1 record added";
mysql_close($con)
?>
Syntax
SELECT column_name(s)
FROM table_name
To get PHP to execute the statement above we must use the mysql_query()
function. This function is used to send a query or command to a MySQL
connection.
Example
The following example selects all the data stored in the "Persons" table (The
* character selects all the data in the table):
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
$result = mysql_query("SELECT * FROM Persons");
while($row = mysql_fetch_array($result))
{
echo $row['FirstName'] . " " . $row['LastName'];
echo "<br />";
}
mysql_close($con);
?>
The example above stores the data returned by the mysql_query() function in
the $result variable.
Next, we use the mysql_fetch_array() function to return the first row from
the recordset as an array. Each call to mysql_fetch_array() returns the next
row in the recordset. The while loop loops through all the records in the
recordset. To print the value of each row, we use the PHP $row variable
($row['FirstName'] and $row['LastName']).
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
Quagmir
Glenn
e
Peter Griffin
PHP MySQL The Where Clause
The WHERE clause is used to filter records.
The WHERE clause
The WHERE clause is used to extract only those records that fulfill a
specified criterion.
Syntax
SELECT column_name(s)
FROM table_name
WHERE column_name operator value
To get PHP to execute the statement above we must use the mysql_query()
function. This function is used to send a query or command to a MySQL
connection.
Example
The following example selects all rows from the "Persons" table where
"FirstName='Peter':
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
while($row = mysql_fetch_array($result))
{
echo $row['FirstName'] . " " . $row['LastName'];
echo "<br />";
}
?>
Peter Griffin
If you want to sort the records in a descending order, you can use the DESC
keyword.
Syntax
SELECT column_name(s)
FROM table_name
ORDER BY column_name(s) ASC|DESC
Example
The following example selects all the data stored in the "Persons" table, and
sorts the result by the "Age" column:
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
while($row = mysql_fetch_array($result))
{
echo $row['FirstName'];
echo " " . $row['LastName'];
echo " " . $row['Age'];
echo "<br />";
}
mysql_close($con);
?>
SELECT column_name(s)
FROM table_name
ORDER BY column1, column2
Syntax
UPDATE table_name
SET column1=value, column2=value2,...
WHERE some_column=some_value
Note: Notice the WHERE clause in the UPDATE syntax. The WHERE
clause specifies which record or records that should be updated. If you omit
the WHERE clause, all records will be updated!
To get PHP to execute the statement above we must use the mysql_query()
function. This function is used to send a query or command to a MySQL
connection.
Example
Peter Griffin 35
Glenn Quagmire 33
After the update, the "Persons" table will look like this:
FirstName LastName Age
Peter Griffin 36
Glenn Quagmire 33
Syntax
DELETE FROM table_name
WHERE some_column = some_value
Note: Notice the WHERE clause in the DELETE syntax. The WHERE
clause specifies which record or records that should be deleted. If you omit
the WHERE clause, all records will be deleted!
To get PHP to execute the statement above we must use the mysql_query()
function. This function is used to send a query or command to a MySQL
connection.
Example
Peter Griffin 35
Glenn Quagmire 33
The following example deletes all the records in the "Persons" table where
LastName='Griffin':
<?php
$con = mysql_connect("localhost","peter","abc123");
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("my_db", $con);
Glenn Quagmire 33
UNIT – V
ROAD MAP
• CREATING AN IMAGE
• DRAWING RECTANGLES,ELLIPSE,ARCS &
DRAWING IMAGES
ON THE SERVER POLYGONS
AJAX Introduction
AJAX = Asynchronous JavaScript And XML
AJAX is an acronym for Asynchronous JavaScript And XML.
AJAX is not a new programming language, but simply a new technique for
creating better, faster, and more interactive web applications.
AJAX uses JavaScript to send and receive data between a web browser and a
web server.
The AJAX technique makes web pages more responsive by exchanging data
with the web server behind the scenes, instead of reloading an entire web
page each time a user makes a change.
The open standards used in AJAX are well defined, and supported by all
major browsers. AJAX applications are browser and platform independent.
(Cross-Platform, Cross-Browser technology)
AJAX Is About Better Internet Applications
Web applications have many benefits over desktop applications:
they can reach a larger audience
they are easier to install and support
they are easier to develop
With AJAX, Internet applications can be made richer (smaller, faster, and
easier to use).
You Can Start Using AJAX Today
There is nothing new to learn.
AJAX is based on open standards. These standards have been used by most
developers for several years.
Because the server returns a new web page each time the user submits input,
traditional web applications often run slowly and tend to be less user
friendly.
With AJAX, web applications can send and retrieve data without reloading
the whole web page. This is done by sending HTTP requests to the server
(behind the scenes), and by modifying only parts of the web page using
JavaScript when the server returns data.
XML is commonly used as the format for receiving server data, although any
format, including plain text, can be used.
You will learn more about how this is done in the next chapters of this
tutorial.
PHP and AJAX
There is no such thing as an AJAX server.
AJAX XMLHttpRequest
The XMLHttpRequest object makes AJAX possible.
The XMLHttpRequest
The XMLHttpRequest object is the key to AJAX.
It has been available ever since Internet Explorer 5.5 was released in July
2000, but not fully discovered before people started to talk about AJAX and
Web 2.0 in 2005.
Creating An XMLHttpRequest Object
Different browsers use different methods to create an XMLHttpRequest
object.
Internet Explorer uses an ActiveXObject.
Other browsers uses a built in JavaScript object called XMLHttpRequest.
Here is the simplest code you can use to overcome this problem:
var XMLHttp=null
if (window.XMLHttpRequest)
{
XMLHttp=new XMLHttpRequest()
}
else if (window.ActiveXObject)
{
XMLHttp=new ActiveXObject("Microsoft.XMLHTTP")
}
function GetXmlHttpObject()
{
var xmlHttp=null;
try
{
// Firefox, Opera 8.0+, Safari
xmlHttp=new XMLHttpRequest();
}
catch (e)
{
// Internet Explorer
try
{
xmlHttp=new ActiveXObject("Msxml2.XMLHTTP");
}
catch (e)
{
xmlHttp=new ActiveXObject("Microsoft.XMLHTTP");
}
}
return xmlHttp;
}
Suggestions:
<html>
<head>
<script src="clienthint.js"></script>
</head>
<body>
<form>
First Name:
<input type="text" id="txt1"
onkeyup="showHint(this.value)">
</form>
<p>Suggestions: <span id="txtHint"></span></p>
</body>
</html>
function showHint(str)
{
if (str.length==0)
{
document.getElementById("txtHint").innerHTML="";
return;
}
xmlHttp=GetXmlHttpObject();
if (xmlHttp==null)
{
alert ("Browser does not support HTTP Request");
return;
}
var url="gethint.php";
url=url+"?q="+str;
url=url+"&sid="+Math.random();
xmlHttp.onreadystatechange=stateChanged;
xmlHttp.open("GET",url,true);
xmlHttp.send(null);
}
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
document.getElementById("txtHint").innerHTML=xmlHttp.responseT
ext;
}
}
function GetXmlHttpObject()
{
var xmlHttp=null;
try
{
// Firefox, Opera 8.0+, Safari
xmlHttp=new XMLHttpRequest();
}
catch (e)
{
// Internet Explorer
try
{
xmlHttp=new ActiveXObject("Msxml2.XMLHTTP");
}
catch (e)
{
xmlHttp=new ActiveXObject("Microsoft.XMLHTTP");
}
}
return xmlHttp;
}
Example Explained
The showHint() Function
This function executes every time a character is entered in the input field.
If there is some input in the text field (str.length > 0) the function executes
the following:
1. Defines the url (filename) to send to the server
2. Adds a parameter (q) to the url with the content of the input field
3. Adds a random number to prevent the server from using a cached file
4. Calls on the GetXmlHttpObject function to create an XMLHTTP
object, and tells the object to execute a function called stateChanged
when a change is triggered
5. Opens the XMLHTTP object with the given url.
6. Sends an HTTP request to the server
If the input field is empty, the function simply clears the content of the
txtHint placeholder.
This function executes every time the state of the XMLHTTP object
changes.
When the state changes to 4 (or to "complete"), the content of the txtHint
placeholder is filled with the response text.
AJAX applications can only run in web browsers with complete XML
support.
<?php
// Fill up array with names
$a[]="Anna";
$a[]="Brittany";
$a[]="Cinderella";
$a[]="Diana";
$a[]="Eva";
$a[]="Fiona";
$a[]="Gunda";
$a[]="Hege";
$a[]="Inga";
$a[]="Johanna";
$a[]="Kitty";
$a[]="Linda";
$a[]="Nina";
$a[]="Ophelia";
$a[]="Petunia";
$a[]="Amanda";
$a[]="Raquel";
$a[]="Cindy";
$a[]="Doris";
$a[]="Eve";
$a[]="Evita";
$a[]="Sunniva";
$a[]="Tove";
$a[]="Unni";
$a[]="Violet";
$a[]="Liza";
$a[]="Elizabeth";
$a[]="Ellen";
$a[]="Wenche";
$a[]="Vicky";
//get the q parameter from URL
$q=$_GET["q"];
//lookup all hints from array if length of q>0
if (strlen($q) > 0)
{
$hint="";
for($i=0; $i<count($a); $i++)
{
if (strtolower($q)==strtolower(substr($a[$i],0,strlen($q))))
{
if ($hint=="")
{
$hint=$a[$i];
}
else
{
$hint=$hint." , ".$a[$i];
}
}
}
}
Example Explained
As you can see it is just a simple HTML form with a simple drop down box
called "cds".
The paragraph below the form contains a div called "txtHint". The div is
used as a placeholder for info retrieved from the web server.
When the user selects data, a function called "showCD" is executed. The
execution of the function is triggered by the "onchange" event.
In other words: Each time the user changes the value in the drop down box,
the function showCD is called.
The XML File
This is the JavaScript code stored in the file "selectcd.js":
var xmlHttp
function showCD(str)
{
xmlHttp=GetXmlHttpObject()
if (xmlHttp==null)
{
alert ("Browser does not support HTTP Request")
return
}
var url="getcd.php"
url=url+"?q="+str
url=url+"&sid="+Math.random()
xmlHttp.onreadystatechange=stateChanged
xmlHttp.open("GET",url,true)
xmlHttp.send(null)
}
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
document.getElementById("txtHint").innerHTML=xmlHttp.responseT
ext
}
}
function GetXmlHttpObject()
{
var xmlHttp=null;
try
{
// Firefox, Opera 8.0+, Safari
xmlHttp=new XMLHttpRequest();
}
catch (e)
{
// Internet Explorer
try
{
xmlHttp=new ActiveXObject("Msxml2.XMLHTTP");
}
catch (e)
{
xmlHttp=new ActiveXObject("Microsoft.XMLHTTP");
}
}
return xmlHttp;
}
Example Explained
The stateChanged() and GetXmlHttpObject functions are the same as in the
last chapter, you can go to the previous page for an explanation of those
If an item in the drop down box is selected the function executes the
following:
1. Calls on the GetXmlHttpObject function to create an XMLHTTP
object
2. Defines the url (filename) to send to the server
3. Adds a parameter (q) to the url with the content of the input field
4. Adds a random number to prevent the server from using a cached file
5. Call stateChanged when a change is triggered
6. Opens the XMLHTTP object with the given url.
7. Sends an HTTP request to the server
The PHP Page
The server paged called by the JavaScript, is a simple PHP file called
"getcd.php".
The code runs a query against the XML file and returns the result as HTML:
<?php
$q=$_GET["q"];
$xmlDoc = new DOMDocument();
$xmlDoc->load("cd_catalog.xml");
$x=$xmlDoc->getElementsByTagName('ARTIST');
for ($i=0; $i<=$x->length-1; $i++)
{
//Process only element nodes
if ($x->item($i)->nodeType==1)
{
if ($x->item($i)->childNodes->item(0)->nodeValue == $q)
{
$y=($x->item($i)->parentNode);
}
}
}
$cd=($y->childNodes);
for ($i=0;$i<$cd->length;$i++)
{
//Process only element nodes
if ($cd->item($i)->nodeType==1)
{
echo($cd->item($i)->nodeName);
echo(": ");
echo($cd->item($i)->childNodes->item(0)->nodeValue);
echo("<br />");
}
}
?>
Example Explained
When the query is sent from the JavaScript to the PHP page the following
happens:
1. PHP creates an XML DOM object of the "cd_catalog.xml" file
2. All "artist" elements (nodetypes = 1) are looped through to find a
name matching the one sent from the JavaScript.
3. The CD containing the correct artist is found
4. The album information is output and sent to the "txtHint" placeholder
The paragraph below the form contains a div called "txtHint". The div is
used as a placeholder for info retrieved from the web server.
When the user selects data, a function called "showUser()" is executed. The
execution of the function is triggered by the "onchange" event.
In other words: Each time the user changes the value in the drop down box,
the function showUser() is called.
The JavaScript
This is the JavaScript code stored in the file "selectuser.js":
var xmlHttp
function showUser(str)
{
xmlHttp=GetXmlHttpObject()
if (xmlHttp==null)
{
alert ("Browser does not support HTTP Request")
return
}
var url="getuser.php"
url=url+"?q="+str
url=url+"&sid="+Math.random()
xmlHttp.onreadystatechange=stateChanged
xmlHttp.open("GET",url,true)
xmlHttp.send(null)
}
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
document.getElementById("txtHint").innerHTML=xmlHttp.responseT
ext
}
}
function GetXmlHttpObject()
{
var xmlHttp=null;
try
{
// Firefox, Opera 8.0+, Safari
xmlHttp=new XMLHttpRequest();
}
catch (e)
{
//Internet Explorer
try
{
xmlHttp=new ActiveXObject("Msxml2.XMLHTTP");
}
catch (e)
{
xmlHttp=new ActiveXObject("Microsoft.XMLHTTP");
}
}
return xmlHttp;
}
Example Explained
The stateChanged() and GetXmlHttpObject functions are the same as in the
PHP AJAX Suggest chapter, you can go to there for an explanation of those.
If an item in the drop down box is selected the function executes the
following:
1. Calls on the GetXmlHttpObject function to create an XMLHTTP
object
2. Defines the url (filename) to send to the server
3. Adds a parameter (q) to the url with the content of the dropdown box
4. Adds a random number to prevent the server from using a cached file
5. Call stateChanged when a change is triggered
6. Opens the XMLHTTP object with the given url.
7. Sends an HTTP request to the server
The code runs a SQL query against a database and returns the result as an
HTML table:
<?php
$q=$_GET["q"];
mysql_select_db("ajax_demo", $con);
$result = mysql_query($sql);
while($row = mysql_fetch_array($result))
{
echo "<tr>";
echo "<td>" . $row['FirstName'] . "</td>";
echo "<td>" . $row['LastName'] . "</td>";
echo "<td>" . $row['Age'] . "</td>";
echo "<td>" . $row['Hometown'] . "</td>";
echo "<td>" . $row['Job'] . "</td>";
echo "</tr>";
}
echo "</table>";
mysql_close($con);
?>
Example Explained
When the query is sent from the JavaScript to the PHP page the following
happens:
1. PHP opens a connection to a MySQL server
2. The "user" with the specified name is found
3. A table is created and the data is inserted and sent to the "txtHint"
placeholder
This example my seem a lot like the "PHP AJAX Database" example in the
last chapter, however there is a big difference: in this example we get the
data from the PHP page as XML using the responseXML function.
Glenn Quagmire
Pilot
Age: 41
From: Quahog
In other words: Each time the user changes the value in the drop down box,
the function showUser() is called and outputs the result in the specified
<span> elements.
The JavaScript
This is the JavaScript code stored in the file "responsexml.js":
var xmlHttp
function showUser(str)
{
xmlHttp=GetXmlHttpObject()
if (xmlHttp==null)
{
alert ("Browser does not support HTTP Request")
return
}
var url="responsexml.php"
url=url+"?q="+str
url=url+"&sid="+Math.random()
xmlHttp.onreadystatechange=stateChanged
xmlHttp.open("GET",url,true)
xmlHttp.send(null)
}
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
xmlDoc=xmlHttp.responseXML;
document.getElementById("firstname").innerHTML=
xmlDoc.getElementsByTagName("firstname")[0].childNodes[0].node
Value;
document.getElementById("lastname").innerHTML=
xmlDoc.getElementsByTagName("lastname")[0].childNodes[0].nodeV
alue;
document.getElementById("job").innerHTML=
xmlDoc.getElementsByTagName("job")[0].childNodes[0].nodeValue;
document.getElementById("age_text").innerHTML="Age: ";
document.getElementById("age").innerHTML=
xmlDoc.getElementsByTagName("age")[0].childNodes[0].nodeValue;
document.getElementById("hometown_text").innerHTML="<br/>From:
";
document.getElementById("hometown").innerHTML=
xmlDoc.getElementsByTagName("hometown")[0].childNodes[0].nodeV
alue;
}
}
function GetXmlHttpObject()
{
var objXMLHttp=null
if (window.XMLHttpRequest)
{
objXMLHttp=new XMLHttpRequest()
}
else if (window.ActiveXObject)
{
objXMLHttp=new ActiveXObject("Microsoft.XMLHTTP")
}
return objXMLHttp
}
Example Explained
The showUser() and GetXmlHttpObject functions are the same as in the you
can go to there for an explanation of those.
The stateChanged() Function
If an item in the drop down box is selected the function executes the
following:
1. Defines the "xmlDoc" variable as an xml document using the
responseXML function
2. Retrieves data from the xml documents and places them in the correct
<span> elements
The code runs a SQL query against a database and returns the result as an
XML document:
<?php
header('Content-Type: text/xml');
header("Cache-Control: no-cache, must-revalidate");
//A date in the past
header("Expires: Mon, 26 Jul 1997 05:00:00 GMT");
$q=$_GET["q"];
$con = mysql_connect('localhost', 'peter', 'abc123');
if (!$con)
{
die('Could not connect: ' . mysql_error());
}
mysql_select_db("ajax_demo", $con);
$sql="SELECT * FROM user WHERE id = ".$q."";
$result = mysql_query($sql);
echo '<?xml version="1.0" encoding="ISO-8859-1"?>
<person>';
while($row = mysql_fetch_array($result))
{
echo "<firstname>" . $row['FirstName'] . "</firstname>";
echo "<lastname>" . $row['LastName'] . "</lastname>";
echo "<age>" . $row['Age'] . "</age>";
echo "<hometown>" . $row['Hometown'] . "</hometown>";
echo "<job>" . $row['Job'] . "</job>";
}
echo "</person>";
mysql_close($con);
?>
Example Explained
When the query is sent from the JavaScript to the PHP page the following
happens:
1. The content-type of the PHP document is set to be "text/xml"
2. The PHP document is set to "no-cache" to prevent caching
3. The $q variable is set to be the data sent from the html page
4. PHP opens a connection to a MySQL server
5. The "user" with the specified id is found
6. The data is outputted as an xml document
<html>
<head>
<script src="livesearch.js"></script>
<style type="text/css">
#livesearch
{
margin:0px;
width:194px;
}
#txt1
{
margin:0px;
}
</style>
</head>
<body>
<form>
<input type="text" id="txt1" size="30"
onkeyup="showResult(this.value)">
<div id="livesearch"></div>
</form>
</body>
</html>
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
document.getElementById("livesearch").
innerHTML=xmlHttp.responseText;
document.getElementById("livesearch").
style.border="1px solid #A5ACB2";
}
}
function GetXmlHttpObject()
{
var xmlHttp=null;
try
{
// Firefox, Opera 8.0+, Safari
xmlHttp=new XMLHttpRequest();
}
catch (e)
{
// Internet Explorer
try
{
xmlHttp=new ActiveXObject("Msxml2.XMLHTTP");
}
catch (e)
{
xmlHttp=new ActiveXObject("Microsoft.XMLHTTP");
}
}
return xmlHttp;
}
This function executes every time a character is entered in the input field.
If there is no input in the text field (str.length == 0) the function sets the
return field to empty and removes any border around it.
However, if there is any input in the text field the function executes the
following:
1. Defines the url (filename) to send to the server
2. Adds a parameter (q) to the url with the content of the input field
3. Adds a random number to prevent the server from using a cached file
4. Calls on the GetXmlHttpObject function to create an XMLHTTP
object, and tells the object to execute a function called stateChanged
when a change is triggered
5. Opens the XMLHTTP object with the given url.
6. Sends an HTTP request to the server
This function executes every time the state of the XMLHTTP object
changes.
When the state changes to 4 (or to "complete"), the content of the txtHint
placeholder is filled with the response text, and a border is set around the
return field.
The PHP Page
The server page called by the JavaScript code is a PHP file called
"livesearch.php".
The code searches the XML file for titles matching the search string and
returns the result as HTML:
<?php
$xmlDoc = new DOMDocument();
$xmlDoc->load("links.xml");
$x=$xmlDoc->getElementsByTagName('link');
//get the q parameter from URL
$q=$_GET["q"];
//lookup all links from the xml file if length of q>0
if (strlen($q) > 0)
{
$hint="";
for($i=0; $i<($x->length); $i++)
{
$y=$x->item($i)->getElementsByTagName('title');
$z=$x->item($i)->getElementsByTagName('url');
if ($y->item(0)->nodeType==1)
{
//find a link matching the search text
if (stristr($y->item(0)->childNodes->item(0)->nodeValue,$q))
{
if ($hint=="")
{
$hint="<a href='" .
$z->item(0)->childNodes->item(0)->nodeValue .
"' target='_blank'>" .
$y->item(0)->childNodes->item(0)->nodeValue . "</a>";
}
else
{
$hint=$hint . "<br /><a href='" .
$z->item(0)->childNodes->item(0)->nodeValue .
"' target='_blank'>" .
$y->item(0)->childNodes->item(0)->nodeValue . "</a>";
}
}
}
}
}
// Set output to "no suggestion" if no hint were found
// or to the correct values
if ($hint == "")
{
$response="no suggestion";
}
else
{
$response=$hint;
}
//output the response
echo $response;
?>
If there is any text sent from the JavaScript (strlen($q) > 0) the following
happens:
1. PHP creates an XML DOM object of the "links.xml" file
2. All "title" elements (nodetypes = 1) are looped through to find a
name matching the one sent from the JavaScript
3. The link containing the correct title is found and set as the
"$response" variable. If more than one match is found, all matches
are added to the variable
4. If no matches are found the $response variable is set to "no
suggestion"
5. The $result variable is output and sent to the "livesearch" placeholder
The JavaScript
The JavaScript code is stored in "getrss.js" and linked to the HTML
document:
var xmlHttp
function showRSS(str)
{
xmlHttp=GetXmlHttpObject()
if (xmlHttp==null)
{
alert ("Browser does not support HTTP Request")
return
}
var url="getrss.php"
url=url+"?q="+str
url=url+"&sid="+Math.random()
xmlHttp.onreadystatechange=stateChanged
xmlHttp.open("GET",url,true)
xmlHttp.send(null)
}
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
document.getElementById("rssOutput")
.innerHTML=xmlHttp.responseText
}
}
function GetXmlHttpObject()
{
var xmlHttp=null;
try
{
// Firefox, Opera 8.0+, Safari
xmlHttp=new XMLHttpRequest();
}
catch (e)
{
// Internet Explorer
try
{
xmlHttp=new ActiveXObject("Msxml2.XMLHTTP");
}
catch (e)
{
xmlHttp=new ActiveXObject("Microsoft.XMLHTTP");
}
}
return xmlHttp;
}
Example Explained
The stateChanged() and GetXmlHttpObject functions are the same as in the
PHP AJAX Suggest chapter.
Every time an option is selected in the input field this function executes the
following:
1. Defines the url (filename) to send to the server
2. Adds a parameter (q) to the url with the selected option from the drop
down box
3. Adds a random number to prevent the server from using a cached file
4. Calls on the GetXmlHttpObject function to create an XMLHTTP
object, and tells the object to execute a function called stateChanged
when a change is triggered
5. Opens the XMLHTTP object with the given url.
6. Sends an HTTP request to the server
The PHP Page
The server page called by the JavaScript code is a PHP file called
"getrss.php":
<?php
//get the q parameter from URL
$q=$_GET["q"];
//find out which feed was selected
if($q=="Google")
{
$xml=("http://news.google.com/news?ned=us&topic=h&output=rss")
;
}
elseif($q=="MSNBC")
{
$xml=("http://rss.msnbc.msn.com/id/3032091/device/rss/rss.xml"
);
}
$xmlDoc = new DOMDocument();
$xmlDoc->load($xml);
//get elements from "<channel>"
$channel=$xmlDoc->getElementsByTagName('channel')->item(0);
$channel_title = $channel->getElementsByTagName('title')
->item(0)->childNodes->item(0)->nodeValue;
$channel_link = $channel->getElementsByTagName('link')
->item(0)->childNodes->item(0)->nodeValue;
$channel_desc = $channel->getElementsByTagName('description')
->item(0)->childNodes->item(0)->nodeValue;
//output elements from "<channel>"
echo("<p><a href='" . $channel_link
. "'>" . $channel_title . "</a>");
echo("<br />");
echo($channel_desc . "</p>");
//get and output "<item>" elements
$x=$xmlDoc->getElementsByTagName('item');
for ($i=0; $i<=2; $i++)
{
$item_title=$x->item($i)->getElementsByTagName('title')
->item(0)->childNodes->item(0)->nodeValue;
$item_link=$x->item($i)->getElementsByTagName('link')
->item(0)->childNodes->item(0)->nodeValue;
$item_desc=$x->item($i)->getElementsByTagName('description')
->item(0)->childNodes->item(0)->nodeValue;
echo ("<p><a href='" . $item_link
. "'>" . $item_title . "</a>");
echo ("<br />");
echo ($item_desc . "</p>");
}
?>
The first number represents the "Yes" votes, the second number represents
the "No" votes.
Note: Remember to allow your web server to edit the text file. Do NOT give
everyone access, just the web server (PHP).
The JavaScript
The JavaScript code is stored in "poll.js" and linked to in the HTML
document:
var xmlHttp
function getVote(int)
{
xmlHttp=GetXmlHttpObject()
if (xmlHttp==null)
{
alert ("Browser does not support HTTP Request")
return
}
var url="poll_vote.php"
url=url+"?vote="+int
url=url+"&sid="+Math.random()
xmlHttp.onreadystatechange=stateChanged
xmlHttp.open("GET",url,true)
xmlHttp.send(null)
}
function stateChanged()
{
if (xmlHttp.readyState==4 || xmlHttp.readyState=="complete")
{
document.getElementById("poll").
innerHTML=xmlHttp.responseText;
}
}
function GetXmlHttpObject()
{
var objXMLHttp=null
if (window.XMLHttpRequest)
{
objXMLHttp=new XMLHttpRequest()
}
else if (window.ActiveXObject)
{
objXMLHttp=new ActiveXObject("Microsoft.XMLHTTP")
}
return objXMLHttp
}
This function executes when "yes" or "no" is selected in the HTML form.
<?php
$vote = $_REQUEST['vote'];
//get content of textfile
$filename = "poll_result.txt";
$content = file($filename);
//put content in array
$array = explode("||", $content[0]);
$yes = $array[0];
$no = $array[1];
if ($vote == 0)
{
$yes = $yes + 1;
}
if ($vote == 1)
{
$no = $no + 1;
}
//insert votes to txt file
$insertvote = $yes."||".$no;
$fp = fopen($filename,"w");
fputs($fp,$insertvote);
fclose($fp);
?>
<h2>Result:</h2>
<table>
<tr>
<td>Yes:</td>
<td>
<img src="poll.gif"
width='<?php echo(100*round($yes/($no+$yes),2)); ?>'
height='20'>
<?php echo(100*round($yes/($no+$yes),2)); ?>%
</td>
</tr>
<tr>
<td>No:</td>
<td>
<img src="poll.gif"
width='<?php echo(100*round($no/($no+$yes),2)); ?>'
height='20'>
<?php echo(100*round($no/($no+$yes),2)); ?>%
</td>
</tr>
</table>
QUESTION BANK
UNIT – I
Part - A
1. Expand and define PHP.
2. What is the role of PHP on the internet?
3. How to create a first PHP page?
4. Write down the command to run a first PHP page.
5. State the uses of echo statement.
6. List out the control characters of PHP.
7. Comment on ‘here’ document.
8. What are the types of comments in PHP?
9. How to define a variable in PHP?
10. Mention the predefined constants of PHP.
11. State the uses of execution operator.
12. Write syntax of switch statement in PHP.
13. Compare implode and explode functions.
14. Name the array-handling operators in PHP.
15. How do you merge the array elements in PHP?
Part – B
1. How do you embed HTML and PHP? Explain with example.
2. What do you mean by command-line PHP? Explain.
3. Write a short note on string interpolation.
4. Explain the internal data types of PHP.
5. Explain the following PHP operations:
i. String operators
ii. Bitwise operators
6. What are the PHP logical operators? Explain with example.
7. Explain with example, how to format the text string in PHP.
8. How to create an array in PHP? Explain with example.
9. How to work with multi-dimensional array? Explain.
Part – C
1. Explain in detail the variable declaration and creation of PHP with example.
2. Discuss the mathematical operators and functions of PHP with example.
3. Briefly explain the if-else construct of PHP with example.
4. Write brief notes on various looping construct of PHP with example.
5. Describe the various string functions of PHP.
6. Illustrate the concept of array manipulation in PHP with suitable example.
UNIT – II
Part – A
1. How do you build a function in PHP?
2. Write syntax to define a function in PHP.
3. How do you handle variable number of arguments in a function?
4. State the uses of static variable.
5. Compare text field and text area.
6. Compare checkbox and radio button.
7. Give the importance of hidden controls.
8. What is the role of server variable in PHP?
9. How to read user input in PHP?
10. What is meant by data validation?
Part – B
1. What is called as passing by reference? Explain with example.
2. How do you return array of values from functions? Explain.
3. Explain the PHP conditional functions with example.
4. Explain the PHP variable functions with example.
5. Explain the following:
i. Text field
ii. List box
6. State the importance of password control with example.
7. How do you dump a form’s data? Explain with example.
8. How can you do client-side data validation? Explain.
Part – C
1. Describe the scope of variable in PHP with example.
2. Discuss the setting of web pages to communicate with PHP.
3. Explain with example, how to upload the file in PHP.
4. Give a detailed note on data validation in PHP.
UNIT – III
Part – A
1. Why OOP is needed for PHP?
2. What are the PHP access modifiers?
3. How to initialize an object in PHP?
4. State the uses of destructor.
5. Define inheritance.
6. Define method overloading.
7. What is meant by auto loading class?
8. Define abstract class.
9. State the importance of interfaces.
10. Write down the uses of final keyword.
Part – B
1. Explain with example, creation of class and object in PHP.
2. Explain the method overriding concepts in PHP with example.
3. Explain with example, how the static members are handled by inheritance.
4. What do you mean by object iteration? Explain with example.
5. How to create class constant in PHP? Explain with example.
6. What is meant by reflection? Explain.
Part – C
1. Illustrate the concept of inheritance in PHP with example.
2. Give a detailed note on creation of static methods in PHP.
3. Explain with example, how to implement the interfaces in PHP.
4. Briefly explain the cloning objects in PHP with example.
5. Describe the various access modifiers in PHP.
UNIT – IV
Part – A
1. What is a file?
2. State the uses of feof() function.
3. What do you mean by binary read?
4. How do you read a text from file?
5. Write syntax to copy a file.
6. Name the PHP supported database.
7. What is a database?
8. How to create a table?
9. Write syntax of setcookie() function.
10. What is session?
Part – B
1. How do you open a file? Explain with example.
2. How do you read a character from file? Explain.
3. Write short note on parsing file.
4. State the importance of locking files with example.
5. How to create a MYSQL database? Explain with example.
6. Write PHP program to delete the records from a table.
7. Write PHP program to download and upload a file.
8. Write PHP program to illustrate the concept of session.
Part – C
1. Explain with example, how can you do I/O operations on binary files.
2. Briefly discuss the database access in PHP.
3. Give a detailed note on cookie.
4. Explain the following:
i. Sending E-mail
ii. Adding attachment to E-mail
UNIT-V
Part – A
1. Expand and define Ajax.
2. Expand and define XML.
3. What is an inner function?
4. State the purpose of java script.
5. What are the image formats?
6. Write function to create an image.
7. What are the functions used to draw filled-in figures?
8. Mention the function used to draw a text.
Part – B
1. Explain with example, the creation of XML Http Request Object.
2. Illustrate the concept of XML with PHP.
3. How to handle concurrent Ajax request? Explain.
4. Draw a table to list the graphics function.
5. Write PHP program to draw a line.
6. Write PHP program to draw a vertical text.
Part – C
1. Explain the following:
i. Passing data to the server with GET
ii. Passing data to the server with POST
2. Describe the connections to google suggest.
3. Write the PHP program for the following:
i. Drawing ellipses
ii. Drawing arcs
iii. Drawing polygons
4. Explain in detail the working concepts of image files.