Friday, February 29, 2008
Budget 2008...
To my point of view the budget of 2k8 produced by Indian finance minister is really an awesome one. it clearly shows his efficiency and knowledge. The particular thing that attracted me was waiving of the debts of many small and middle sized farmers. This saved life of many of them. The next thing was reducing the threshold level for women and senior citizens. This is an excellent plan. Right from the day i saw budget till today what is a common was rising the price of tobacco products. As a citizen i would really welcome this budget. This clearly shows that our country is developing at a faster rate .
Saturday, February 23, 2008
SQL server 2k5......
Recently i was working in a project using c#.net as front end and MS SQL server as back end. i had the necessity of creating a table dynamically with the name of the user as the table name. i.e. once a user registers, a table is created in his name. For this i tried several methods like assigning the username to a variable and passing it as parameter for table name, passing the username directly as parameter. But none worked out. But still i searched for it over the net. Couldnt find any solutions.
I got vexed and was still searching. One day i had a chance to meet a programmer who works on SQL server. I put forth this question to him, he replied saying that there is possibility of creating a table dynamically as per my requirement but this is not prefered. He requested me not to try this because there is a possiblity of code injection attack i.e. if an user enters some code or enters a improper name in the place for text which accepts all forms because it is an string datatype, then the table name would be the same which is not a good programming practice(gpp). And the security of data is also poor as once you know the username its easy to hack the table and its data.
So, if anyone have the same idea just chuck it....
I got vexed and was still searching. One day i had a chance to meet a programmer who works on SQL server. I put forth this question to him, he replied saying that there is possibility of creating a table dynamically as per my requirement but this is not prefered. He requested me not to try this because there is a possiblity of code injection attack i.e. if an user enters some code or enters a improper name in the place for text which accepts all forms because it is an string datatype, then the table name would be the same which is not a good programming practice(gpp). And the security of data is also poor as once you know the username its easy to hack the table and its data.
So, if anyone have the same idea just chuck it....
Friday, February 22, 2008
Even I am Into It....
I am R.S.Diwaagar a student currently doing UG.
It makes me feel good when i think even am a blogger now... i was thinking of writing a blog for a long time but it all came true only today. First i wondered what to write and was thinking it for a long time. Then thought of putting all my emotions, perceptions and information. When i meant information im actually not gonna post my information instead just post some blog on the diverging technology and business. So if any1 is interested in it just look at my blog.
It makes me feel good when i think even am a blogger now... i was thinking of writing a blog for a long time but it all came true only today. First i wondered what to write and was thinking it for a long time. Then thought of putting all my emotions, perceptions and information. When i meant information im actually not gonna post my information instead just post some blog on the diverging technology and business. So if any1 is interested in it just look at my blog.
Subscribe to:
Comments (Atom)