Re: Help with quote escaping in plpgsql - Mailing list pgsql-general

From Jan Wieck
Subject Re: Help with quote escaping in plpgsql
Date
Msg-id 3FB6CF57.3060901@Yahoo.com
Whole thread Raw
In response to Help with quote escaping in plpgsql  (someone@arbitrary.org (Joseph))
List pgsql-general
Joseph wrote:

> Hi,
>
> I want to make a function that accepts a pre-formatted varchar
> argument which will then be used in an IN clause:
>
> create or replace function testing(varchar) returns int as '
> declare
>    int c := 0;
> begin
>    select count(*) from my_table where some_field in ( $1 ) into c;
>    return c;
> end
> ' language 'plpgsql';
>
>
> But I can't figure out how to escape the varchar string I pass. I have
> tried:
>
> '''hello'',''world'''
>
> and all sorts of other things.
>
> Any suggestions?

This is currently not supported. Your best bet on this would be to use
the EXECUTE functionality like

create function testing(varchar) returns int as '
declare
     r record;
begin
     for r in execute ''select count(*) as cnt from my_table
             where some_field in ('' || $1 || '')''
     loop
         return r.cnt;
     end loop;
     return 0;
end;
' language plpgsql;

select testing('''hello'',''world''');


Jan

--
#======================================================================#
# It's easier to get forgiveness for being wrong than for being right. #
# Let's break this rule - forgive me.                                  #
#================================================== JanWieck@Yahoo.com #


pgsql-general by date:

Previous
From: bpalmer
Date:
Subject: how to find version?
Next
From:
Date:
Subject: Re: Conservation of OIDs