ASP.Net 2.0´°ÌåÉí·ÝÑéÖ¤»úÖÆ
±¾ÆªÎÄÕ½éÉÜÁËÔÚASP.Net 2.0ÈçºÎ×ö´°ÌåÉí·ÝÑéÖ¤£¬²¢ÇÒ½²½âÁËIISºÍASP.Net2.0´°ÌåÉí·ÝÑéÖ¤»úÖÆÊÇÈçºÎ½áºÏÔÚÒ»ÆðµÄ¡£ÎÒÃÇ»¹»áÏêϸ½²½âÒ»ÏÂ2.0ÖйØÓÚ´°ÌåÉí·ÝÑéÖ¤µÄÒ»¸öÀࣺFormsAuthenticationModule¡£
l ×ÛÊö
µ±Ä³Ò»¸öÓû§Ê¹ÓÃÓû§Ãû³É¹¦µÇÂ½ÍøÕ¾Ê±£¬FormsAuthentication£¨´°ÌåÉí·ÝÑéÖ¤»úÖÆ£¬ÏÂÃæÍ³Ò»Ê¹ÓÃÓ¢ÎÄÊõÓ ½«»á´´½¨Ò»¸öauthentication ticket (Éí·ÝÑé֤Ʊ),ͨ¹ýÕâ¸öticket¾Í¿ÉÒÔÔÚÍøÕ¾ÉÏÈ«³Ì¸ú×ÙÕâ¸öÓû§ÁË¡£Form authentication ticketͨ³£±»°üº¬ÔÚÒ»¸öCookieÀïÃæ£¬µ«ÊÇAsp.net2.0Ò²Ö§³Ö²»Ê¹ÓÃCookieµÄFormsAuthentication£¬Õâʱºòticket¾ÍÐèҪͨ¹ýQuery string ´«µÝ¡£
µ±Ò»¸öÓû§Ôڵǽij¸öÍøÕ¾Ê±£¬ÐèÒªÌṩÉí·ÝÑéÖ¤²ÅÄܽøÈëÍøÕ¾¡£Èç¹ûËû»¹Ã»ÓÐÊäÈëÑéÖ¤ÐÅÏ¢£¨Í¨³£ÊÇÓû§ÃûºÍÃÜÂ룩£¬Ôò´ËÓû§½«»á±»Öض¨Ïòµ½Ò»¸öµÇÂ½Ò³Ãæ¡£Óû§¿ÉÒÔÔÚµÇÂ½Ò³ÃæÊäÈëÑéÖ¤ÐÅÏ¢£¬È»ºóÕâЩÐÅÏ¢±»·¢Ë͵½·þÎñÆ÷Óëijһ¸ö´æ´¢Óû§Éí·ÝÐÅÏ¢µÄ½éÖÊ£¨ÀýÈçSql Server»òÕßij¸öÎļþ£©½øÐÐÐÅÏ¢¶Ô±È¡£ÔÚASP.Net2.0ÖУ¬¿ÉÒÔͨ¹ýMemberShip ProivderÀ´·ÃÎÊ´æ´¢ÔÚÖîÈçSqlserverµÄÐÅÏ¢¡££¨ProviderģʽÓкܶàÓŵ㣬ÉÔºó»áÓÐÎÄÕÂÏêϸ˵Ã÷¡££©µ±Óû§ÐÅϢͨ¹ýÑéÖ¤ºó£¬´ËÓû§½«»ñµÃÔÊÐí£¬·ÃÎÊËûËùÆÚÍûµÄÒ³Ãæ¡£
FormsAuthenticationͨ¹ýFormsAuthenticationModuleÕâ¸öÀàÀ´Ö´ÐУ¬Õâ¸öÀàÊÇASP.netÒ³ÃæÔËÐÐÖÜÆÚµÄÒ»²¿·Ö¡£ÒÔÏÂÎÒÃǽ«½âÊÍFormsAuthenticationÔÚASP.net2.0ÖÐÊÇÈçºÎ¹¤×÷µÄ¡£
l IIS ÑéÖ¤
Asp.netÑéÖ¤·ÖΪÁ½²½¡£Ê×ÏÈ£¬IISÑéÖ¤µ±Ç°Óû§·ÃÎÊÍøÕ¾ËùʹÓõÄwindowsÕʺÅÊÇ·ñÓÐȨÏÞ¡£Èç¹ûIIS·ÃÎʱ»ÅäÖÃΪanonymous£¬ÔòÈκÎÓû§¶¼ÄÜ·ÃÎÊÒ³Ãæ¡£
È»ºó£¬ÔÚIISÑéÖ¤Íê±Ïºó£¬ASP.net¿ªÊ¼Ö´ÐÐ×ÔÉíµÄÑéÖ¤¡£Ñé֤ģʽ¿ÉÒÔÔÚweb.configÎļþÖÐÅäÖã¬Ö»ÒªÔÚconfigÎļþÖÐдÉÏ<authentication mode="Forms" />£¬ÄÇôASP.net¾ÍÖªµÀʹÓÃFormsAuthenticationModule Àà½øÐÐÑéÖ¤¡£
l Asp.Net froms Authentication
froms Authentication ÅäÖãºÄã¿ÉÒÔÔÚconfigÎļþÖÐÅäÖá£ÅäÖÃÈçÏ£º
<system.web>
<authentication mode="Forms">
<forms loginUrl="Login.aspx"
protection="All"
timeout="30"
name=".ASPXAUTH"
path="/"
requireSSL="false"
slidingExpiration="true"
defaultUrl="default.aspx"
co
Ïà¹ØÎĵµ£º
xtreeView.js
---==========================================================
var ie5=document.all&&document.getElementById
var ns6=document.getElementById&&!document.all
if (ie5||ns6)
var menuobj=document.getElementById("Panel2")
function showmenuie5(e)
{
&n ......
1¡¢IsStartupScriptRegistered£º¶ÔÏóÊÇ·ñ×¢²áÁËÆôÓýű¾¡£
2¡¢IsClientScriptBlockRegistered£º¶ÔÏóÊÇ·ñ×¢²áÁ˿ͻ§¶Ë½Å±¾¿é¡£
3¡¢IsClientScriptIncludeRegistered£º¶ÔÏóÊÇ·ñ×¢²áÁ˿ͻ§¶Ë½Å±¾°üº¬¡£
µÚÒ»¸öÀý×Ó£º
string info = "<script>alert('ÄãºÃÂð£¿');</script>";
//ÅжÏʼþÊÇ·ñ±»×¢²á£¬Ð´ÈëÇ ......
×î½üÔÚ¹úÍâµÄÍøÕ¾ÂÒ×ßһͨ£¬·¢ÏÖһЩ±È½ÏºÃµÄÎÄÕ£¬ÊÕ¼¯ÕûÀí¼ÓÓÚ×Ô¼ºµÄÀí½â£¬×÷Ϊ±Ê¼ÇÐÎʽ¼Ç¼ÏÂÀ´£¬ÈÃÒÔºó×Ô¼ºÓиö»ØÒä¡£
¡¡¡¡ASP.NETÊÇÒ»¸ö·Ç³£Ç¿´óµÄ¹¹½¨WebÓ¦ÓÃµÄÆ½Ì¨,ËüÌṩÁ˼«´óµÄÁé»îÐÔºÍÄÜÁ¦ÒÔÖÂÓÚ¿ÉÒÔÓÃËüÀ´¹¹½¨ËùÓÐÀàÐ͵ÄWebÓ¦ÓÃ.¾ø´ó¶àÊýµÄÈËÖ»ÊìϤ¸ß²ãµÄ¿ò¼ÜÈçWebFormsºÍWebS ......
ÔÚ ASP.NET ÍøÒ³µÄĬÈÏÄ£ÐÍÖУ¬Óû§»áÓëÒ³½»»¥£¬µ¥»÷°´Å¥»òÖ´Ðе¼Ö»ط¢µÄһЩÆäËû²Ù×÷¡£´Ëʱ½«ÖØÐ´´½¨Ò³¼°Æä¿Ø¼þ£¬²¢ÔÚ·þÎñÆ÷ÉÏÔËÐÐÒ³´úÂ룬ÇÒа汾µÄÒ³±»³ÊÏÖµ½ä¯ÀÀÆ÷¡£µ«ÊÇ£¬ÔÚÓÐЩÇé¿öÏ£¬ÐèÒª´Ó¿Í»§¶ËÔËÐзþÎñÆ÷´úÂ룬¶ø²»Ö´Ðлط¢¡£Èç¹ûÒ³ÖеĿͻ§¶Ë½Å±¾Î¬»¤Ò»Ð©×´Ì¬ÐÅÏ¢£¨ÀýÈ磬¾Ö²¿±äÁ¿Öµ£©£¬ÄÇô·¢ËÍÒ³ºÍ»ñÈ¡Ò ......
1¡¢<%=%> ÀïÃæ·ÅµÄ±äÁ¿Ãû£¬È磺
<div>
<h1>Hello World</h1>
<p>Welcome to Beginning ASP.NET 3.5 on <%=
DateTime.Now.ToString() %></p>
</div>
Êä³ö½á¹ûΪ£º
Hello World
Welcome to Beginning ASP.NET 3.5 on 2009-11-10 15:53:08
2¡¢ <%#%> ÕâÀïÊÇÊ ......