Hudzilla.org - the homepage of Paul Hudson
Contents > Files > Handling file uploads: move_uploaded_file() Wish List | Report Bug | About Me ]

8.10.2     Checking uploaded files: is_uploaded_file()

This is NOT the latest copy of this book; click here for the latest version.

bool is_uploaded_file ( string filename)

The move_uploaded_file() function is basically the same as the rename() function with the difference that it only succeeds if the file was just uploaded by the PHP script - this adds extra security to your script, by stopping people trying to move secure data, such as password files, into a public directory.

If you want to perform this check yourself, use the is_uploaded_file() function - it takes a filename as its sole parameter, and returns true if the file was uploaded by the script and false if not. Here is a simple example:

if (is_uploaded_file($somefile)) {
    
copy($somefile, "/var/www/userfiles/$somefile");
}

If you just want to check whether a file was uploaded before you move it, move_uploaded_file() is better.





<< 8.10.1 Advanced file upload handling   8.11 Locking files with flock() >>
Table of Contents
Want to see this stuff in print? PHP in a Nutshell takes the core topics covered here, adds in thousands of edits from the editorial team and myself, and combines them to make an unbeatable reference for PHP programmers at all levels.



My latest book has hundreds more tips on how to use PHP, Apache, and MySQL, plus Perl, Python, shell scripts, performance tuning, and more!



Top-right shadow
 
Bottom-left shadow Bottom shadow

Comments from other readers
Unix Programmer - 06 Sep 2008

Suggestion: It would be helpful to point out that this takes the $_FILES['userfile']['tmp_name'] value as its filename.



Add comment
Please note that by posting a comment here you are committing it to the public domain. This is important so that others can make use of your code themselves, and also so that I can incorporate helpful notes directly into the main text. Comments are limited to 2000 characters in length.

If you are reporting an error in the content, please tell me directly.

Your name/email address:
Your comment:
 
Now, in order to verify that you're a real person, please answer this simple question: what is three plus six?
The answer is:
(please write in
numbers, eg 19)


Top-right shadow
 
Bottom-left shadow Bottom shadow