Ò»Ì×»ùÓÚasp.netµÄ°²È«Ð£Ñé»úÖÆÓ¦ÓÃÄ£ÐÍ £¡
using System;
using System.Data;
using System.Configuration;
using System.Linq;
using System.Web;
using System.Web.Security;
using System.Web.UI;
using System.Web.UI.HtmlControls;
using System.Web.UI.WebControls;
using System.Web.UI.WebControls.WebParts;
using System.Xml.Linq;
using System.IO;
using System.Text;
using System.Web.UI.MobileControls;
using System.Collections.Generic;
/// <summary>
///SQLFilter µÄժҪ˵Ã÷
/// </summary>
public static class SQLFilter
{
#region SQL×¢Èë¹ýÂË
/// <summary>
/// SQL×¢Èë¹ýÂË
/// </summary>
/// <param name="sqlParems">Òª¹ýÂ˵IJÎÊýÊý×é</param>
/// <returns>Èç¹û²ÎÊý´æÔÚ²»°²È«×Ö·û£¬Ôò·µ»Øfalse</returns>
// Ó¦ÓÃʾÀý
// if(TheManagerUtils.SqlFilter(new string[] { "ss","kk" }, this.Page) == false)
// {
// //Ö±½ÓÌø×ªµ½ÏàÓ¦µÄ´íÎóÒ³Ãæ
// Response.Redirect("WelfarePage.aspx");
// return;
// }
public static bool SqlFilter(string[] sqlParems, Page p)
{
StringBuilder parems = new StringBuilder();
#region ÓйطǷ¨Êý¾ÝµÄÏà¹ØÎ¬»¤
//³£ÓõÄSQL¶ñÒâ×Ö·ûÆÁ±Î
string sql = "insert|delete|update|select|exec|script";
try
{
//»ñÈ¡ÅäÖÃÔÚWeb.configÖÐ×îеÄSQL¶ñÒâ×Ö·ûÆÁ±Î
sql = System.Configuration.ConfigurationSettings.AppSettings["
Ïà¹ØÎĵµ£º
ÔÚWeb±à³Ì¹ý³ÌÖУ¬´æÔÚןܶలȫÒþ»¼¡£±ÈÈçÔÚÒÔǰµÄASP°æ±¾ÖУ¬CookieΪ·ÃÎÊÕߺͱà³ÌÕß¶¼ÌṩÁË·½±ã£¬²¢Ã»ÓÐÌṩ¼ÓÃܵŦÄÜ¡£´ò¿ªIEä¯ÀÀÆ÷£¬Ñ¡Ôñ“¹¤¾ß”²Ëµ¥ÀïµÄ“InternetÑ¡Ï¬È»ºóÔÚµ¯³öµÄ¶Ô»°¿òÀïµ¥»÷“ÉèÖÔ°´Å¥£¬Ñ¡Ôñ“²é¿´Îļþ”°´Å¥£¬ÔÚµ¯³öµÄ´°¿ÚÖУ¬¾Í»áÏÔʾӲÅÌÀï ......
asp.netÖÐapplication,session,cookie,viewstate,cache¶ÔÏó
ÔÚasp.netÖÐÄÚÖöÔÏóÈçapplication,session,cookie,viewstate,cacheµÈµÄÉú´æÖÜÆÚºÍÓ¦Ó÷¶Î§´Ó´óµ½Ð¡Îªapplication,cache,session,cookie,viewstate.
applicationºÍcacheµÄÓ¦Ó÷¶Î§¶¼ÊÇÔÚÕû¸öÓ¦ÓóÌÐòÖÐ.¶øsession,cookie,viewstateÔòÊÇ»ùÓÚÿ¸öÓû§,application ......
ǰÑÔ
дÕâÆªÎÄÕµÄÄ¿µÄ£¬ÊÇÏë×ܽáһЩ¶«Î÷£¬ÒÔ°ïÖúÅóÓÑÃǸüºÃµÄʹÓÃÕâ¸ö¿ò¼Ü¡£µ«ÊÇ£¬ÎÒÓÖ²»Ïñ°Ñ¹Ù·½ÁоٵÄÄÄЩÓÅÊÆ¡¢¹¦ÄÜ·Òë¹ýÀ´ÁоÙÔÚÕâÀï¡£ËùÒÔ£¬ÎÒÏë¸É´àÎҾʹ¿´Ó¸öÈ˹۵ãÉ϶ÔÕâ¸ö¿ò¼ÜÆÀÂÛһϰɡ£ËµµÄ²»ºÃµÄ£¬²»¶ÔµÄ»¹ÇëÅúÆÀÖ¸Õý¡£
ASP.NET MVC——ÂÝÐý½ø²½µÄ²úÎï
¶ÔÓÚ΢ÈíÎªÊ²Ã´ÒªÍÆ³öASP.NET MVC£¬ÎÒÃÇ ......
¹ØÓÚÒ³Ãæ´«ÖµµÄ·½·¨£¬Òý·¢Á˺ܶàÌÖÂÛ¡£¿´À´ÓкܶàÈ˹Ø×¢Õâ¸ö£¬ÎÒ¾ÍÎÒ¸öÈ˹۵ã×öÁËЩ×ܽᣬϣÍû¶Ô´ó¼ÒÓÐËù°ïÖú¡£
1. ʹÓÃQueryString±äÁ¿
QueryStringÊÇÒ»Öַdz£¼òµ¥µÄ´«Öµ·½Ê½£¬Ëû¿ÉÒÔ½«´«Ë͵ÄÖµÏÔʾÔÚä¯ÀÀÆ÷µÄµØÖ·À¸ÖС£Èç¹ûÊÇ´«µÝÒ»¸ö»ò¶à¸ö°²È«ÐÔÒªÇ󲻸߻òÊǽṹ¼òµ¥µÄÊýֵʱ£¬¿ÉÒÔʹÓÃÕâ¸ö·½·¨¡£µ«ÊǶÔÓÚ´«µ ......