File: PDO-prepare.xml

package info (click to toggle)
php-doc 20061001-1
  • links: PTS
  • area: non-free
  • in suites: etch, etch-m68k
  • size: 45,764 kB
  • ctags: 1,611
  • sloc: xml: 502,485; php: 7,645; cpp: 500; makefile: 297; perl: 161; sh: 141; awk: 28
file content (161 lines) | stat: -rw-r--r-- 5,658 bytes parent folder | download
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
<?xml version='1.0' encoding='iso-8859-1'?>
<!-- $Revision: 1.11 $ -->
<!-- Generated by xml_proto.php v2.1. Found in /scripts directory of phpdoc. -->
  <refentry id="function.PDO-prepare">
   <refnamediv>
    <refname>PDO::prepare</refname>
    <refpurpose>
     Prepares a statement for execution and returns a statement object
    </refpurpose>
   </refnamediv>
   <refsect1 role="description">
    &reftitle.description;
    <methodsynopsis>
     <type>PDOStatement</type><methodname>PDO::prepare</methodname>
     <methodparam><type>string</type><parameter>statement</parameter></methodparam>
     <methodparam choice="opt"><type>array</type><parameter>driver_options</parameter></methodparam>
    </methodsynopsis>

    <para>
     Prepares an SQL statement to be executed by the
     <function>PDOStatement::execute</function> method. The SQL statement can
     contain zero or more named (:name) or question mark (?) parameter markers
     for which real values will be substituted when the statement is executed.
     You cannot use both named and question mark parameter markers within the same
     SQL statement; pick one or the other parameter style.
    </para>
    <para>
     You must include a unique parameter marker for each value you wish to pass
     in to the statement when you call <function>PDOStatement::execute</function>.
     You cannot use a named parameter marker of the same name twice in a prepared
     statement. You cannot bind multiple values to a single named parameter in,
     for example, the IN() clause of an SQL statement.
    </para>
    <para>
     Calling <function>PDO::prepare</function> and
     <function>PDOStatement::execute</function> for statements that will be
     issued multiple times with different parameter values optimizes the
     performance of your application by allowing the driver to negotiate
     client and/or server side caching of the query plan and meta information,
     and helps to prevent SQL injection attacks by eliminating the need to
     manually quote the parameters.
    </para>
    <para>
     PDO will emulate prepared statements/bound parameters for drivers that do
     not natively support them, and can also rewrite named or question mark
     style parameter markers to something more appropriate, if the driver
     supports one style but not the other.
    </para>
   </refsect1>
   <refsect1 role="parameters">
    &reftitle.parameters;
    <para>
     <variablelist>
      <varlistentry>
       <term><parameter>statement</parameter></term>
       <listitem>
        <para>
         This must be a valid SQL statement for the target database server.
        </para>
       </listitem>
      </varlistentry>
      <varlistentry>
       <term><parameter>driver_options</parameter></term>
       <listitem>
        <para>
         This array holds one or more key=&gt;value pairs to set
         attribute values for the PDOStatement object that this method
         returns. You would most commonly use this to set the
         <literal>PDO::ATTR_CURSOR</literal> value to
         <literal>PDO::CURSOR_SCROLL</literal> to request a scrollable cursor.
         Some drivers have driver specific options that may be set at
         prepare-time.
        </para>
       </listitem>
      </varlistentry>
     </variablelist>
    </para>
   </refsect1>

   <refsect1 role="returnvalues">
    &reftitle.returnvalues;
    <para>
     If the database server successfully prepares the statement,
     <function>PDO::prepare</function> returns a PDOStatement object.
     If the database server cannot successfully prepare the statement,
     <function>PDO::prepare</function> returns &false;.
    </para>
   </refsect1>

   <refsect1 role="examples">
    &reftitle.examples;
    <para>
     <example><title>Prepare an SQL statement with named parameters</title>
      <programlisting role='php'>
<![CDATA[
<?php
/* Execute a prepared statement by passing an array of values */
$sql = 'SELECT name, colour, calories
    FROM fruit
    WHERE calories < :calories AND colour = :colour';
$sth = $dbh->prepare($sql, array(PDO::ATTR_CURSOR, PDO::CURSOR_FWDONLY));
$sth->execute(array(':calories' => 150, ':colour' => 'red'));
$red = $sth->fetchAll();
$sth->execute(array(':calories' => 175, ':colour' => 'yellow'));
$yellow = $sth->fetchAll();
?>
]]>
      </programlisting>
     </example>
     <example>
      <title>Prepare an SQL statement with question mark parameters</title>
      <programlisting role='php'>
<![CDATA[
<?php
/* Execute a prepared statement by passing an array of values */
$sth = $dbh->prepare('SELECT name, colour, calories
    FROM fruit
    WHERE calories < ? AND colour = ?');
$sth->execute(array(150, 'red'));
$red = $sth->fetchAll();
$sth->execute(array(175, 'yellow'));
$yellow = $sth->fetchAll();
?>
]]>
      </programlisting>
     </example>
    </para>
   </refsect1>

   <refsect1 role="seealso">
    &reftitle.seealso;
    <para>
     <simplelist>
      <member><function>PDO::exec</function></member>
      <member><function>PDO::query</function></member>
      <member><function>PDOStatement::execute</function></member>
     </simplelist>
    </para>
   </refsect1>
  </refentry>

<!-- Keep this comment at the end of the file
Local variables:
mode: sgml
sgml-omittag:t
sgml-shorttag:t
sgml-minimize-attributes:nil
sgml-always-quote-attributes:t
sgml-indent-step:1
sgml-indent-data:t
indent-tabs-mode:nil
sgml-parent-document:nil
sgml-default-dtd-file:"../../../../manual.ced"
sgml-exposed-tags:nil
sgml-local-catalogs:nil
sgml-local-ecat-files:nil
End:
vim600: syn=xml fen fdm=syntax fdl=2 si
vim: et tw=78 syn=sgml
vi: ts=1 sw=1
-->