ASP.NET SQL ×¢ÈëÃâ·Ñ½â¾ö·½°¸
UrlScanµÄ3.1ÊÇÒ»¸ö°²È«µÄ¹¤¾ß£¬ÏÞÖÆÁËIISµÄHTTPÇëÇ󽫴¦ÀíÀàÐÍ¡£ ͨ¹ý×èÖ¹ÌØ¶¨µÄHTTPÇëÇó£¬ÔÚURLScan 3.1°²È«¹¤¾ßÓÐÖúÓÚ·ÀÖ¹¶Ô·þÎñÆ÷Ó¦ÓóÌÐò¿ÉÄÜÓꦵÄÇëÇó¡£ UrlScanµÄ3.1ÊÇURLScan 2.5µÄ¸üа汾¡£Ö§³ÖIIS 5.1ÖУ¬IIS 6.0ºÍIIS 7.0ÔÚWindows VistaºÍWindows Server 2008¡£ÏÂÔØµØÖ·http://download.csdn.net/source/2057125
×èÖ¹¶ÔWebÓ¦ÓóÌÐò¿ÉÄÜÓꦵÄÇëÇó
UrlScan3.1¸ù¾Ý¹ÜÀíÔ±ÉèÖõĹæÔò¹ýÂËËùÓд«Èëµ½·þÎñÆ÷µÄÇëÇó¡£Ö»ÒªÇëÇóͨ¹ý¹ýÂË£¬²ÅÄܵõ½·þÎñÆ÷µÄ´¦Àí¡£
¼õÇáSQL×¢Èë¹¥»÷
ͨ¹ý UrlScan3.1µÄ¿ÉÅäÖÿÉÒÔ¹ýÂËHTTP²éѯ×Ö·û´®ÖµºÍÆäËûµÄHTTP±êÍ·£¬ÒÔ¼õÇáSQL×¢Èë¹¥»÷£¬´Ó¶ø¹®¹ÌÓ¦ÓóÌÐòµÄ°²È«¡£
·ÖÎöÈÕÖ¾Îļþ
UrlScan3.1ÌṩÁËW3C¸ñʽµÄÈÕÖ¾Îļþ·ÖÎöÎļþ£¬×ñÑ΢ÈíÈÕÖ¾·ÖÎöÆ÷2.2·ÖÎö½â¾ö·½°¸¡£
ÌØÕ÷
еÄURLScan 3.1°æ±¾¿ÉÒÔ°²×°ÔÚIIS 5.1£¬IIS 6.0ºÍIIS 7.0 ÉÏ
´´½¨¶ÀÌØµÄ“¾Ü¾ø”¹æÔòÓÃÓÚ¼ì²â²éѯ×Ö·û´®£¬ËùÓбêÌ⣬»òÌØ¶¨Í·¡£
ÔÚÒ»¸öÈ«¾ÖµÄDenyQueryStringÅäÖýÚÖУ¬Äú¿ÉÒÔ×Ô¶¨ÒåÇëÇó¹æÔò
ÔÚÒ»¸öÈ«¾ÖµÄAlwaysAllowedUrlsÅäÖýڲ¿·ÖÔÊÐíÄúÖ¸¶¨°²È«µÄÍøÖ·£¬´Ó¶øÍ¨¹ýURLµÄ¼ì²é¡£
ÔÚÒ»¸öÈ«¾ÖµÄAlwaysAllowedQueryStringsÅäÖýÚÖУ¬¿ÉÒÔÖ¸¶¨²éѯ×Ö·û´®µÄ°²È«£¬½«Í¨¹ýËùÓеIJéѯ×Ö·û´®¼ì²é¡£
תÒåÐòÁУ¨È磥0D£¥£©£¬¿ÉÓÃÓÚ·ñÈϹæÔò£¬ËùÒÔ¿ÉÒÔ·ñ¶¨µÄCRLFºÍÉæ¼°·Ç´òÓ¡×Ö·ûµÄÆäËûÐòÁС£
UrlScanµÄ¶à¸öʵÀý¿ÉÒÔΪվµã°²×°¹ýÂËÆ÷£¬Æä×Ô¼ºµÄÅäÖú͹æÔò£¨Urlscan.iniµÄ£©Ã¿¸ö¡£
¸ü¸Ä֪ͨ»á´«²¥µ½IIS¹¤×÷½ø³Ì¡£
ÔöÇ¿µÄW3C¸ñʽµÄÅäÖôíÎó¸ñʽ¼Ç¼ÔÚ±¸×¢Ê¹Í·ÖС£
Ïà¹ØÎĵµ£º
ÓÉÓÚ´úÂë¹ýÓÚ¼òµ¥£¬Ö±½ÓÌù³ö£º
SqlDataSourceEnumerator SseInstance = SqlDataSourceEnumerator.Instance;
//ServerName:·þÎñÆ÷Ãû;
//InstanceName:ʵÀýÃû;
//IsClustered:ÊÇ·ñΪȺ¼¯·þÎñÆ÷µÄÒ»²¿·Ö;
//Version:°æ±¾,8.*ÊÇSQL 2000,9.*ÊÇSQL 2005
DataTable DtSqlInstance = SseInstance.GetDataSources();
×¢£º ......
select *from student
select student_id from student
select student_id ,student_name from student
select student_id student_name from student ½«student_name ×÷Ϊstudent_idµÄ±ðÃû´¦Àí
È磺 select student_id a from student
select a=student_id from student
´Óstudent±íÖзֱð¼ ......
Êý¾Ý¿âµÄÐÔÄܲâÊÔ¿ÉÒÔ°ïÖúÄãÌáǰ֪µÀÄãµÄϵͳµÄ¸ºÔØÄÜÁ¦£¬¿ÉÒÔ°ïÖúÄã¸Ä½øÏµÍ³µÄʵʩ»òÉè¼Æ£¬¿ÉÒÔ°ïÖúÄãÈ·¶¨Ò»Ð©Éè¼ÆºÍ±à³ÌÔÔò. µ«ÊÇ£¬ÕâÀïÃæÒ²ÓÐÏÝÚå. Èç¹û²»Ð¡ÐÄ£¬Äã»á×Ô¼º°Ñ×Ô¼ºÏݽøÈ¥£¬È´×îÖÕ²»Ã÷°×ÊÇʲôÔÒò. ÕâÀÎÒÄÃһλÏÈÉúΪÀý£¬À´¿´¿´ËûÔõô×Ô¼º°Ñ×Ô¼º¸ãºýÍ¿µÄ.
×î½ü, ÏëÆðÔÚ´æ´¢¹ý³ÌÖо¿¾¹ÊÇʹÓÃÁÙʱ±í»¹ÊÇÊ ......
ÔÚWebÓ¦ÓóÌÐòÉÏÏÂÎÄÖУ¬ASP.NETÒ³Ãæ»áÔÚµÚÒ»´Î±»ÇëÇóʱ£¬°´Ðè±»¶¯Ì¬±àÒë¡£¶¯Ì¬±àÒë²¢²»ÊÇASP.NETÒ³Ãæ(.aspxÎļþ)ÌØÓеģ¬
»¹·¢ÉúÔÚ.NET
Web·þÎñ(.asmxÎļþ)¡¢WebÓû§¿Ø¼þ(.ascxÎļþ)¡¢HTTP´¦Àí³ÌÐò(.ashxÎļþ)£¬ÒÔ¼°ÆäËû¼¸ÖÖASP.NETÓ¦ÓóÌÐòÎļþ(Èç
global.asaxÎļþ)ÉíÉÏ¡£ÔËÐÐʱ¹ÜµÀÄ£Ð͸ºÔð´¦ÀíÊäÈëµÄ(incoming)HTTPÊ ......
¹úÄÚCMS£º
1.SiteServer CMS
SiteServer CMS ÍøÕ¾ÄÚÈݹÜÀíϵͳ£¨Öø×÷ȨµÇ¼ÇºÅ2008SR15710£©ÊǶ¨Î»ÓÚÖи߶ËÊг¡µÄCMSÄÚÈݹÜÀíϵͳ£¬Äܹ»ÒÔ×îµÍµÄ³É
±¾¡¢×îÉÙµÄÈËÁ¦Í¶ÈëÔÚ×î¶ÌµÄʱ¼äÄÚ¼ÜÉèÒ»¸ö¹¦ÄÜÆëÈ«¡¢ÐÔÄÜÓÅÒì¡¢¹æÄ£ÅÓ´óµÄÍøÕ¾Æ½Ì¨¡£
¡¡¡¡ SiteServer CMS ÊÇ»ùÓÚ΢Èí.NET ƽ̨¿ª·¢µÄÍøÕ¾ÄÚÈݹÜÀíϵͳ£¬Ëü¼¯³ÉÁËÄÚÈÝ·¢² ......