I have a following form:
Yes I always do that.
Also note you should never use mysql_query. Search for php PDO. Not to mention the awful @ for suppressing error
PDO
@