ASP.NetµÄUpdatePanel¿Ø¼þµÄ¼òµ¥Ê¹ÓÃ
¼¸ÖÖUpdatePanel¿Ø¼þµÄ×î¼òµ¥µÄÓ÷¨.
1.ÔÚUpdatePanel¿Ø¼þÀíµÄ×ӿؼþÖ±½Ó¾Ö²¿Ë¢ÐÂÄÚÈÝ.
Ó÷¨ÈçÏÂ
Ê×ÏȱØÐëÏÈÍÐÒ»¸öScriptManager¿Ø¼þ·ÅÔÚÒ³ÃæÄÚ,
ÔÚÍÐÒ»¸öupdatePanel¿Ø¼þ
ÔÚContentTemplateÀïÃæ·ÅҪˢеÄÄÚÈݺͰ´Å¥,
½«updatePanelµÄUpdateMode="Conditional",
ÕâÑù°´Å¥Ê¼þ½«ÔÚ¾Ö²¿Ë¢Ð¿ؼþÀïÃæµÄÄÚÈÝ
2.ÓÃÖ¸¶¨µÄ°´Å¥Ë¢ÐÂupdatePanelÀïÃæµÄÄÚÈÝ
ÔÚTriggers±êÇ©Àí
AsyncPostBackTrigger ControlID="ImageButton1"
°ó¶¨¿Ø¼þID
ÔڿؼþµÄOnclickʼþÖÐ ÓÃÒª±»Ë¢ÐµÄupdatePanelµÄupdate()·½·¨.
3.ÓÃjs½Å±¾Ë¢ÐÂÖ¸¶¨µÄupdatePanel¿Ø¼þ
д½Å±¾µ÷ÓÃ__doPostBack('su',id);·½·¨
ÔÚupdatepanelÀïÃæ×¢²áÒ»¸ö·þÎñÆ÷°´Å¥HiddenField ID="su"
Ïà¹ØÎĵµ£º
ASP.NET´úÂëÓÅ»¯Ò»¡¢Ò³ÃæºÍ·þÎñÆ÷¿Ø¼þ´¦Àí
1¡¢ASP.NET´úÂëÓÅ»¯±ÜÃâµ½·þÎñÆ÷µÄ²»±ØÒªµÄÍù·µÐгÌ
ÔÚijЩÇé¿öϲ»±ØÊ¹Óà ASP.NET ·þÎñÆ÷¿Ø¼þºÍÖ´Ðлط¢Ê¼þ´¦Àí¡£ÀýÈ磬ÔÚ ASP.NET ÍøÒ³ÖÐÑéÖ¤Óû§ÊäÈë¾³£¿ÉÔÚÊý¾ÝÌá½»µ½·þÎñÆ÷֮ǰÔÚ¿Í»§¶Ë½øÐС£Í¨³££¬Èç¹û²»ÐèÒª½«ÐÅÏ¢´«µÝµ½·þÎñÆ÷ÒÔ½øÐÐÑéÖ¤»ò½«ÆäдÈëÊý¾Ý´æ´¢Çø£¬Çë±ÜÃâÊ ......
»Ø³µµã»÷°´Å¥
Ö»ÐèÔÚ.aspxÒ³Ãæ´úÂëÖмÓÈëÒ»¶ÎJavaScript¼´¿É£º
<script type="text/javascript" language="javascript">
document.onkeydown = Check;
function Check(){ &n ......
Trustwave's SpiderLabs Security Advisory TWSL2010-001:
Multiplatform View State Tampering Vulnerabilities
Published: 2010-02-08 Version: 1.1
SpiderLabs has documented view state tampering
vulnerabilities in three products from separate vendors.
View states are used by some web application frame ......
±¾ÎĽéÉܵÄÕâ¸ö¹¦ÄÜÊÇ£º½ûÓÃÒ³Ãæ»º´æµÄ½â¾ö·½·¨£¬ÊÊÓÃÓÚIEºÍFireFoxä¯ÀÀÆ÷Ï£¬ÔÚweb¿ª·¢ÖкÏÀíʹÓûº´æ¿ÉÒÔÓÐЧµÄÌá¸ßÍøÕ¾µÄÐÔÄÜ£¬µ«ÊÇÔÚijЩ³¡ºÏÏÂÒòΪ»º´æµÄ´æÔÚ»á´øÀ´ºÜ¶àµÄÎÊÌâ¡£ÀýÈ磺ÒòΪ»º´æµÄ´æÔÚ»áÔì³ÉÖØ¸´Ìá½»Êý¾ÝµÄÎÊÌ⣬ÑéÖ¤ÂëͼƬ²»ÄÜÕýÈ·ÏÔʾµÄÎÊÌ⣬µÈµÈ¡£Õâ¸öʱºòÎÒÃǾÍÒª½ûÓÃÒ³Ãæ»º´æµÄ¹¦ÄÜ¡£&nbs ......
http://rzchina.net/node/3210
Web.configÎļþÖпÉÅäÖõÄÉí·ÝÑéÖ¤·½Ê½ÓÐWindows¡¢Forms¡¢PassPort¡¢None¡£
Web.configÎļþÖÐ<authentication>½Úµã£¬Éí·ÝÑéÖ¤·½Ê½È¡¾öÓڸýڵã“mode”ÊôÐÔµÄÉèÖá£
1£®None
None±íʾ²»Ö´ÐÐÉí·ÝÑéÖ¤¡£
2£®Windows
IIS¸ù¾ÝÓ¦ÓóÌÐòµÄÉèÖÃÖ´ÐÐÉí·ÝÑéÖ¤£¬ÆäÖаüº¬ÄäÃûÉí·Ý ......