


Using Yii form model and submitting form data in array form_PHP tutorial
According to the description in Yii documentation, the general process of Yii processing forms is:
In a small project just now, I wanted to use ajax to submit form information and verify and save it, but I didn’t want to use a hidden iframe for non-refresh submission, and the verification method of the model class could be used in the action, so I thought of using a form array. Submission method, for example:
form code:
<form action='' method='post' name='form_test'> <input type='text' name='arr[]' value='1'> <input type='text' name='arr[]' value='2'> <input type='text' name='arr[]' value='3'> </form>
After submission, you can directly use $_POST['arr'] to obtain the submitted data. $_POST['arr'] is:
<span Array<br /></span><span ( [</span>0] =><span a [</span>1] =><span b [</span>2] =><span c )</span>
Similarly, if you submit using the following form:
<form action='' method='post' name='form_test'> <input type='text' name='arr[3]' value='a'> <input type='text' name='arr[6]' value='b'> <input type='text' name='arr[8]' value='c'> </form>
$_POST['arr'] is:
<span Array</span><span ( [</span>3] =><span a [</span>6] =><span b [</span>8] =><span c )</span>
Of course you can also submit a two-dimensional array:
<form action='http://127.0.0.1/zhaobolu/test.php' method='post' name='form_test'> <input type='text' name='arr[][name1]' value='a'> <input type='text' name='arr[][name2]' value='b'> <input type='text' name='arr[][name3]' value='c'> </form>
$_POST['arr'] is:
<span Array</span><span ( [</span>0] => <span Array</span><span ( [name1] </span>=><span a ) [</span>1] => <span Array</span><span ( [name2] </span>=><span b ) [</span>2] => <span Array</span><span ( [name3] </span>=><span c ) )</span>
There is a problem here. If you do not set the key of the first sub-array, each value will be added to arr sequentially when generating the array. If you want to save the information in an array, just add a key value. , as follows:
<form action='http://127.0.0.1/zhaobolu/test.php' method='post' name='form_test'> <input type='text' name='arr[a][name1]' value='a1'> <input type='text' name='arr[a][value1]' value='a2'> <input type='text' name='arr[b][name2]' value='b1'> <input type='text' name='arr[b][value2]' value='b2'> </form>
$_POST['arr'] is:
<span Array</span><span ( [a] </span>=> <span Array</span><span ( [name1] </span>=><span a1 [value1] </span>=><span a2 ) [b] </span>=> <span Array</span><span ( [name2] </span>=><span b1 [value2] </span>=><span b2 ) )</span>
Posted below is an example of using ajax to submit a form and verifying it using the yii form model. The first is the model class part, which only has the simplest verification method:
<?<span php </span><span class</span> LandingForm <span extends</span><span CFormModel { </span><span public</span> <span $landing_title</span><span ; </span><span public</span> <span $landing_content</span><span ; </span><span public</span> <span $landing_position</span><span ; </span><span public</span> <span function</span><span rules() { </span><span return</span> <span array</span><span ( </span><span array</span>('landing_title, landing_content', 'required'), <span array</span>('landing_position', 'default', 'value'=>''),<span ); } }</span>
I found something interesting. When setting the parameter verification method, the model class needs to set rules for each public parameter. If there are parameters without set rules, use the form value in $_POST to assign values to the model. After that, the parameter value of the unset rule will be empty
Get the parameters submitted by the form in action and verify:
<span $model = new LandingForm;<br />$model</span>->attributes = <span $_POST</span>['form'<span ]; </span><span if</span>(<span $model</span>-><span validate()){ </span><span $info</span> = <span $model</span>-><span attributes; </span>...<span }<br />...</span>
The last is the code for the front-end submission form, using jquery:
<span var</span> info = <span new</span><span Object(); info </span>= { 'form[landing_title]'<span : landing_title, </span>'form[landing_content]'<span : landing_content, </span>'form[landing_position]'<span : landing_position, }; </span><span var</span> url = "..."<span ; $.post(url, info, </span><span function</span><span (rst){ ... });</span>

Effective methods to prevent session fixed attacks include: 1. Regenerate the session ID after the user logs in; 2. Use a secure session ID generation algorithm; 3. Implement the session timeout mechanism; 4. Encrypt session data using HTTPS. These measures can ensure that the application is indestructible when facing session fixed attacks.

Implementing session-free authentication can be achieved by using JSONWebTokens (JWT), a token-based authentication system where all necessary information is stored in the token without server-side session storage. 1) Use JWT to generate and verify tokens, 2) Ensure that HTTPS is used to prevent tokens from being intercepted, 3) Securely store tokens on the client side, 4) Verify tokens on the server side to prevent tampering, 5) Implement token revocation mechanisms, such as using short-term access tokens and long-term refresh tokens.

The security risks of PHP sessions mainly include session hijacking, session fixation, session prediction and session poisoning. 1. Session hijacking can be prevented by using HTTPS and protecting cookies. 2. Session fixation can be avoided by regenerating the session ID before the user logs in. 3. Session prediction needs to ensure the randomness and unpredictability of session IDs. 4. Session poisoning can be prevented by verifying and filtering session data.

To destroy a PHP session, you need to start the session first, then clear the data and destroy the session file. 1. Use session_start() to start the session. 2. Use session_unset() to clear the session data. 3. Finally, use session_destroy() to destroy the session file to ensure data security and resource release.

How to change the default session saving path of PHP? It can be achieved through the following steps: use session_save_path('/var/www/sessions');session_start(); in PHP scripts to set the session saving path. Set session.save_path="/var/www/sessions" in the php.ini file to change the session saving path globally. Use Memcached or Redis to store session data, such as ini_set('session.save_handler','memcached'); ini_set(

TomodifydatainaPHPsession,startthesessionwithsession_start(),thenuse$_SESSIONtoset,modify,orremovevariables.1)Startthesession.2)Setormodifysessionvariablesusing$_SESSION.3)Removevariableswithunset().4)Clearallvariableswithsession_unset().5)Destroythe

Arrays can be stored in PHP sessions. 1. Start the session and use session_start(). 2. Create an array and store it in $_SESSION. 3. Retrieve the array through $_SESSION. 4. Optimize session data to improve performance.

PHP session garbage collection is triggered through a probability mechanism to clean up expired session data. 1) Set the trigger probability and session life cycle in the configuration file; 2) You can use cron tasks to optimize high-load applications; 3) You need to balance the garbage collection frequency and performance to avoid data loss.


Hot AI Tools

Undresser.AI Undress
AI-powered app for creating realistic nude photos

AI Clothes Remover
Online AI tool for removing clothes from photos.

Undress AI Tool
Undress images for free

Clothoff.io
AI clothes remover

Video Face Swap
Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Article

Hot Tools

ZendStudio 13.5.1 Mac
Powerful PHP integrated development environment

Notepad++7.3.1
Easy-to-use and free code editor

DVWA
Damn Vulnerable Web App (DVWA) is a PHP/MySQL web application that is very vulnerable. Its main goals are to be an aid for security professionals to test their skills and tools in a legal environment, to help web developers better understand the process of securing web applications, and to help teachers/students teach/learn in a classroom environment Web application security. The goal of DVWA is to practice some of the most common web vulnerabilities through a simple and straightforward interface, with varying degrees of difficulty. Please note that this software

SublimeText3 Mac version
God-level code editing software (SublimeText3)

SublimeText3 English version
Recommended: Win version, supports code prompts!
