|
Hi Rocky
It is more secure to hash the password using PWDENCRYPT and PWDCOMPARE than to store it unencrypted in the database.
However, if you need to do a case-insensitive comparison then you can use COLLATE to cast strings into a binary collation.
Andy
|
|
|
|
|
yes hashing is indeed a better option than this. if u dont mind can u plz elaborate on using that, preferably by an example or something
thanks alot
Rocky
|
|
|
|
|
One way to do this is to cast the password and @Password to varbinary. This performs a binary check which, by it's very nature, compares the actual data and not the case-sensitive version.
the last thing I want to see is some pasty-faced geek with skin so pale that it's almost translucent trying to bump parts with a partner - John Simmons / outlaw programmer
Deja View - the feeling that you've seen this post before.
|
|
|
|
|
Hi all.
I have created my website and now I want to upload it in the internet ( on my server )
I have host any everything which is needed.
But the question is :
How Should I move my database ( which is SqlServer2000 ) into my server so that my website will work correctly ...
please help me and tell me how to put my database on my server ?
thank you.
|
|
|
|
|
Assuming that you have access to the remote server from Enterprise Manager, you could always attempt to Export Data. To do this, select the database in the Enterprise Manager, right click and select All Tasks > Export Data. Follow the steps in the wizard, and you can copy the objects and the data up to your website.
the last thing I want to see is some pasty-faced geek with skin so pale that it's almost translucent trying to bump parts with a partner - John Simmons / outlaw programmer
Deja View - the feeling that you've seen this post before.
|
|
|
|
|
thank you. is it the only way ?
|
|
|
|
|
It's not the only way, but it is the easiest.
the last thing I want to see is some pasty-faced geek with skin so pale that it's almost translucent trying to bump parts with a partner - John Simmons / outlaw programmer
Deja View - the feeling that you've seen this post before.
|
|
|
|
|
Hi
I am using a view say v_xyz and I am using table tbl1 and tbl2 in the view
Do i have any method to find out the unique key in view so that I can do the
differentiation in the records
thanks
Karan
|
|
|
|
|
If I wanted to see the differences between 2 tables then I would do the following:
select T1.Id, T2.Id,
case
when T1.Id is null then 'Record only exists in T2'
when T2.Id is null then 'Record only exists in T1'
when IsNull(T1.MyString, '') <> IsNull(T2.MyString, '') then 'MyString is different'
when IsNull(T1.MyNumber, -999) <> IsNull(T2.MyNumber, -999) then MyNumberis different'
--other when clauses to compare other columns
else 'Records are the same'
end
from T1
full outer join T2
on T2.Id = T1.Id Hope this helps.
Andy
|
|
|
|
|
Hi all, I'm using SQL Express 2005, it has been installed to use windows authentication for the login and not mixed mode, how and where do I change it so that it uses mixed mode for the login?
Thanks in advance
He who laughs last is a bit on the slow side
|
|
|
|
|
I a project we are having following tables -
Branch
BCode
BName
Vendor
VCode
VName
VendorPaymentHistory
VCode
PaymentDate
CashAMount
VendorCouponHistory
VCode
SCode
Date
Quantity
Price
Sale
SaleCode
VCode
SaleDate
SalesLine
SaleCode
PCode = Product Code
Price
Quantity
Now I am trying to write a query which will return following, -
For any date -
VendorCode(VCode) - Sum(Qty) Product Wise - Total Value of Coupons - Total Cash Paid - Day Balance - Previous Outstanding - Net Balance
I am not able to complete this? Any Help?
|
|
|
|
|
Have you tried using sub-select statements? For example:
select Vendor.VCode,
(select sum(SalesLine.Quantity) from SalesLine
inner join SalesLine
on SalesLine.SaleCode = Sale.SaleCode
where Sale.VCode = Vendor.Vcode) as SumProductQty
--other sub-selects go here
from Vendor
order by Vendor.VCode The sub-selects are allowed to reference fields within the Vendor table.
Regards
Andy
|
|
|
|
|
I am using MS Access 2003, I think it doesnot supports this.
Thanks
|
|
|
|
|
The only way to find out is to try it. Saying that, I do believe that Access supports this because this is a standard SQL technique and not a vendor/tool specific one.
the last thing I want to see is some pasty-faced geek with skin so pale that it's almost translucent trying to bump parts with a partner - John Simmons / outlaw programmer
Deja View - the feeling that you've seen this post before.
|
|
|
|
|
Hello
How can i use ado.net to send multiple queries to database and perform them. Example, I need to create a stored procedure programatically from my application. any way to do that. or is it possible to execute some transact sql statements like
declare @value as money
select @value = 10
How can i display the messages send by SQL server after executing queries in my application ?
Please help
Cheers
Navaneeth!!
|
|
|
|
|
You can put just about any SQL you like in a SqlCommand. So, yes, you can create stored procedures from your application.
Navaneethkn wrote: How can i display the messages send by SQL server after executing queries in my application ?
I've never needed to do this, so I don't know. However, if the SQL causes an exception to be thrown the messages will be in the exception message.
What's in the messages that you want back?
|
|
|
|
|
I developed an project in vb for storing some quotations in sql db and displaying it on ASP web page on daily basis. when i am adding quotes in the database, whenever i am using single quotation mark i am getting some run time error .. i need a solution to solve this problem.
Give me an instant solution to rectify this problem
regards,
Tech_spidy
|
|
|
|
|
Hi
Replace single quotation with double quotation before sending to database.
it will be like this
comment's will be comment''s
Cheers
Navaneeth!!
|
|
|
|
|
hi Navaneeth,
thanks for ur immediate response.. see while displaying some motivational quotes like, it wouldn't look good.. In official sites we can't go display like this.
thanks for ur temprory solution. if you/anyone know the exact solution please reply..
regards,
Tech_spidy
|
|
|
|
|
Hi,
I think Navaneeth mend to say: Replace the single quotation by two single quotations.
Wout Louwers
|
|
|
|
|
Hi Tech_Spidy
Don't worry. In database only single quote will be stored. It won't store '' in table.
Cheers
Navaneeth!!
|
|
|
|
|
Thank you so much navaneeth..
wht u suggested is exactly working..
regards
Tech_spidy
|
|
|
|
|
Use parameters to insert strings in to the database. That way you don't have to escape quotation marks. And you improve the security of your application.
|
|
|
|
|
ok.. i will try tht.
thanks for ur response.
regards
Tech_spidy
|
|
|
|
|
In SQL 2000 there is some thing called
SET QUOTEDIDENTIFIER ON/OFF
Pls check this. would help you.
|
|
|
|