Ò»Ì×»ùÓÚasp.netµÄ°²È«Ð£Ñé»úÖÆÓ¦ÓÃÄ£ÐÍ £¡
using System;
using System.Data;
using System.Configuration;
using System.Linq;
using System.Web;
using System.Web.Security;
using System.Web.UI;
using System.Web.UI.HtmlControls;
using System.Web.UI.WebControls;
using System.Web.UI.WebControls.WebParts;
using System.Xml.Linq;
using System.IO;
using System.Text;
using System.Web.UI.MobileControls;
using System.Collections.Generic;
/// <summary>
///SQLFilter µÄժҪ˵Ã÷
/// </summary>
public static class SQLFilter
{
#region SQL×¢Èë¹ýÂË
/// <summary>
/// SQL×¢Èë¹ýÂË
/// </summary>
/// <param name="sqlParems">Òª¹ýÂ˵IJÎÊýÊý×é</param>
/// <returns>Èç¹û²ÎÊý´æÔÚ²»°²È«×Ö·û£¬Ôò·µ»Øfalse</returns>
// Ó¦ÓÃʾÀý
// if(TheManagerUtils.SqlFilter(new string[] { "ss","kk" }, this.Page) == false)
// {
// //Ö±½ÓÌø×ªµ½ÏàÓ¦µÄ´íÎóÒ³Ãæ
// Response.Redirect("WelfarePage.aspx");
// return;
// }
public static bool SqlFilter(string[] sqlParems, Page p)
{
StringBuilder parems = new StringBuilder();
#region ÓйطǷ¨Êý¾ÝµÄÏà¹ØÎ¬»¤
//³£ÓõÄSQL¶ñÒâ×Ö·ûÆÁ±Î
string sql = "insert|delete|update|select|exec|script";
try
{
//»ñÈ¡ÅäÖÃÔÚWeb.configÖÐ×îеÄSQL¶ñÒâ×Ö·ûÆÁ±Î
sql = System.Configuration.ConfigurationSettings.AppSettings["
Ïà¹ØÎĵµ£º
ÃüÃû¿Õ¼ä Access
Àࣺ
User
ÊôÐÔ£ºLoginID,UserName,Password,Remark
Role
ÊôÐÔ£ºRoleName Remark(±¸×¢ÐÅÏ¢)
AccessItem
ÊôÐÔ£ºName,Text,Remark
PermissionManager
ÊôÐÔ£º
·½·¨£ºvoid AddUser(string loginID,string password, string remark );void AddRole();Void AddItem(string name,string text,strin ......
asp.netÖÐapplication,session,cookie,viewstate,cache¶ÔÏó
ÔÚasp.netÖÐÄÚÖöÔÏóÈçapplication,session,cookie,viewstate,cacheµÈµÄÉú´æÖÜÆÚºÍÓ¦Ó÷¶Î§´Ó´óµ½Ð¡Îªapplication,cache,session,cookie,viewstate.
applicationºÍcacheµÄÓ¦Ó÷¶Î§¶¼ÊÇÔÚÕû¸öÓ¦ÓóÌÐòÖÐ.¶øsession,cookie,viewstateÔòÊÇ»ùÓÚÿ¸öÓû§,application ......
protected
void Page_Load(object sender, EventArgs e)
{
try
{
//query the pdf path
& ......
ÎÒ們ÔÚ開發網頁應ÓóÌʽ£¬時³£ÐèҪȥ½âÎö網Ö·(Request.Url)µÄÿ個Ƭ¶Î£¬進ÐÐһЩÅÐ斷¡£ÀýÈç說 "http://localhost:1897/News/Press/Content.aspx/123?id=1#toc
"£¬ÎÒ們ÏëҪȡµÃ網Ö·裡µÚÒ»層Ä¿錄µ ......
¹ØÓÚÒ³Ãæ´«ÖµµÄ·½·¨£¬Òý·¢Á˺ܶàÌÖÂÛ¡£¿´À´ÓкܶàÈ˹Ø×¢Õâ¸ö£¬ÎÒ¾ÍÎÒ¸öÈ˹۵ã×öÁËЩ×ܽᣬϣÍû¶Ô´ó¼ÒÓÐËù°ïÖú¡£
1. ʹÓÃQueryString±äÁ¿
QueryStringÊÇÒ»Öַdz£¼òµ¥µÄ´«Öµ·½Ê½£¬Ëû¿ÉÒÔ½«´«Ë͵ÄÖµÏÔʾÔÚä¯ÀÀÆ÷µÄµØÖ·À¸ÖС£Èç¹ûÊÇ´«µÝÒ»¸ö»ò¶à¸ö°²È«ÐÔÒªÇ󲻸߻òÊǽṹ¼òµ¥µÄÊýֵʱ£¬¿ÉÒÔʹÓÃÕâ¸ö·½·¨¡£µ«ÊǶÔÓÚ´«µ ......