Book Image

CodeIgniter 1.7

Book Image

CodeIgniter 1.7

Overview of this book

CodeIgniter (CI) is a powerful open-source PHP framework with a very small footprint, built for PHP coders who need a simple and elegant toolkit to create full-featured web applications. CodeIgniter is an MVC framework, similar in some ways to the Rails framework for Ruby, and is designed to enable, not overwhelm. This book explains how to work with CodeIgniter in a clear logical way. It is not a detailed guide to the syntax of CodeIgniter, but makes an ideal complement to the existing online CodeIgniter user guide, helping you grasp the bigger picture and bringing together many ideas to get your application development started as smoothly as possible. This book will start you from the basics, installing CodeIgniter, understanding its structure and the MVC pattern. You will also learn how to use some of the most important CodeIgniter libraries and helpers, upload it to a shared server, and take care of the most common problems. If you are new to CodeIgniter, this book will guide you from bottom to top. If you are an experienced developer or already know about CodeIgniter, here you will find ideas and code examples to compare to your own.
Table of Contents (21 chapters)
CodeIgniter 1.7
Credits
About the Authors
About the Reviewer
Preface

Adding security to our site


Security is an important concern for every website or online application. CI helps us keep our site safe, starting from URI security to global variables turned off, XSS filtering, data validation, and so on.

Some of these tools are run by default by CI, like the URI security, and we can even define the XSS filtering to run globally; this is done in our config file:

$config['global_xss_filtering'] = FALSE;

Other of these tools are run manually such as the form validation class and query escaping. Together these functions help us with securing the application.

Note

Benefits are:

Ease of use when adding security to our application and forms. And very important—thanks to some of those functions—our sites are more secure by default.