pg_escape_string() escapes a string for
insertion into the database. It returns an escaped string in the
PostgreSQL format. Use of this function is recommended instead of
addslashes(). If the type of the column
is bytea, pg_escape_bytea() must be used
instead.
Note:
This function requires PostgreSQL 7.2 or later.
Parameters
connection
PostgreSQL database connection resource. When
connection
is not present, the default connection
is used. The default connection is the last connection made by
pg_connect() or pg_pconnect().