create proc TestPro
(@conditon varchar(50))
as
declare @sql varchar(1000)
set @sql='select * from test'
if @conditon!=''
set @sql=@sql+' where name='''+@conditon+''''--''转义成'
exec(@sql)
go
--调用存储过程
exec TestPro 'b'
create proc TestPro
(@conditon varchar(50))
as
declare @sql varchar(1000)
set @sql='select * from test'
if @conditon!=''
set @sql=@sql+' where name='''+@conditon+''''--''转义成'
exec(@sql)
go
--调用存储过程
exec TestPro 'b'