Home | Site Map           
   
     

Preventing Repeat Form Submission Using PHP Sessions


We've all seen those messages on some websites warning not to click a button more than once or negative consequences, like paying a bill twice, may result. Sometimes we can cause these problems by hitting the back or refresh buttons. In this article I will explain a methodology whereby a site can ensure each form is submitted only once, thereby demonstrating that such warnings are unnecessary and, depending on the nature of the problems caused, worth repairing immediately. Let's begin by taking a look at the process we are studying: Form Submission. As pedantic as it may seem, it will be worthwhile to detail each of the steps in this process:

  • Visitor requests a page from the server which has a form on it.
  • Server retrieves form and sends to user.
  • User enters data on form and submits to server.
  • Server processes form data and returns resultant page.
  • The scenario we now need to analyze is when the user re-triggers a previous form submission process. What we need to find or create is something which changes during the form submission process which does not depend on the specific form being submitted and which we can tell changed. That was a loaded sentence which fully details our solution, so let's break it down. Find or create something which
  • changes during the form submission process,
  • does not depend on the specific form being submitted, and
  • we can tell changed.
  • Since the item which changes does not depend on the form being submitted (e.g. it doesn't matter if it's a newsletter registration form, customer signup form, payment form, etc.), the item is not something which already exists and therefore must be created, so let's create a form variable called submissionId and assume it has the 3 properties mentioned above. So far, so good -- or so it appears! The third "property" is that "we can tell [it] changed", but "changed" is not a property of a variable, so we need to look at this more closely. In order to tell something changed, we must have a reference point, an answer to the question "changed from what?" This is where a session variable will come into play. If we define a session variable, say $_SESSION['nextValidSubmission'] and treat it as a reference point, we will have all of the tools necessary to protect our visitors. The idea will be to keep the session variable updated with the last submissionId sent out and change the submissionId each time it is sent out to the user. Then, if they try to resubmit the data, they will be submitting an old submissionId which doesn't match nextValidSubmission and we will know not to re-process this data. Let's look at this in terms of the processes:

  • Visitor requests a page from the server which has a form on it.
  • Server retrieves form, generates a new submissionId which is embedded into the form, updates nextValidSubmission, and sends to user.
  • User enters data on form and submits to server.
  • Server processes form data, changes nextValidSubmission, and returns resultant page.
  • Now, if the visitor somehow resends the data, they will be sending the old submissionId which will not match the new nextValidSubmission. So, you can now say goodbye to relying on javascript to remove/disable buttons, silly warning messages, and upset customers by preventing form re-submission.

    Webmaster of Script Reference - The *NEW* PHP Reference & Tutorial Site For Non-Programmers
    See here for more detailed information, an example using PHP, and an alternate method which doesn't require sessions.


    MORE RESOURCES:

    website design - Yahoo! News Search Results
    website design - Yahoo! News Search Results

    Elliottsweb, a Chicago Website Design Company, Welcomes Its Newest Internet M...
    CHICAGO, IL-- - Elliottsweb, a Chicago website design company, would like to kindly welcome its newest website design and search engine optimization clients:Kurt Hermanni is an experienced Miami immigration ...
    GiftCards.com Releases New Site Design
    PITTSBURGH, Feb. 3, 2012 /PRNewswire/ -- GiftCards.com is excited to announce the release of their new website re-design at www.giftcards.com .  The new layout is designed to provide easier access to all ...
    Roadside Multimedia Announces the Launch of FastTrak Dental Website Design
    Roadside Multimedia is thrilled to introduce FastTrak, a new dental website design option for those who may not be in the market for a fully custom website. These websites will fit the style and budget of many dental practices while still providing the strong online presence needed to promote any business.(PRWEB) January 31, 2012 FastTrak is an exciting new website design option from Roadside ...
    Long Island Web Designers, Benjamin Marc Recently Launches New Webpage Explai...
    Long Island Website Design Company Benjamin Marc explains a step by step process to design & development.Lake Grove, NY (PRWEB) February 01, 2012 Long Island Web Designers, Benjamin Marc recently launches new webpage explaining step by step what to expect when hiring them.The new web page starts off explaining the process of being a new client of Benjamin Marc. It always begins with a free ...
    Page 1 Solutions Promotes Three Employees within their Website Design and Dev...
    Page 1 Solutions recently promoted three of their employees to new positions within their design and development department.Golden, Colorado (PRWEB) January 31, 2012 Page 1 Solutions is happy announce the promotion of three of their employees within the company. Tim Hankinson was just promoted to a Website Developer position, Stacey Ball has been promoted to Senior Front End Developer, and ...

     

     

    Food     PeoplesChoice | Web Starter | PhotoLog | Workstations | Web Design | Photo Blog | Articles Searches | Daily Blog     MP3

    Copyright © 2008 All Rights Reserved TheWebStylist.com