Linq To Sql½ø½×ϵÁУ¨Ò»£© ´ÓÓ³Éä½²Æð
±¾ÏµÁУ¬»ò¶à»òÉÙ£¬Ö±½Ó»ò¼ä½ÓÒÀÀµÈëÃÅϵÁÐ֪ʶ¡£µ«£¬ÒÀÈ»×·Çó¶ÀÁ¢³ÉÕ¡£Òò±¾ÎÄ×÷ÕßˮƽÓÐÏÞ£¬ÎÄÖдíÎóÄÑÃ⣬¾´Çë¶ÁÕßÖ¸³ö²¢Á½⡣±¾ÏµÁн«»áºÍÈëÃŲ¢´æ¡£
°¸Àý
ij¾ý±»ÑûΪһ³¬ÊÐÉè¼ÆÊý¾Ý¿â£¬ÓÃÀ´´æ´¢Êý¾Ý¡£¸Ã¾ý¸ù¾Ý¸Ã³¬ÊÐÖÐʵ¼Ê³öÏֵĶÔÏó£¬Éè¼ÆÁËCustomer, Employee£¬Order, ProductµÈ±í£¬ÓÃÀ´±£´æÏàÓ¦µÄ¿Í»§£¬Ô±¹¤£¬¶©µ¥£¬»õÆ·µÈ¡£Ì«ºÃÁË£¬¸Ã¾ýºÜÓÐooµÄ˼ÏëÂð¡£
Èç¹û£¬Äã±»ÒªÇóÓÃÀ༰¶ÔÏó£¬À´ÃèÊö¸Ã¹ØÏµÐÍÊý¾Ý£¬Äã¸ÃÈçºÎ×öÄØ£¿ÔÚlinqÍÆ³ö֮ǰ£¬ADO.NET±»ÓÃÀ´×öÊý¾Ý·ÃÎʲ㡣¶øºó£¬³ÌÐòÔ±ÐèÒª×Ô¼ºÈ¥±àдÊÂÎñÂß¼²ãÖÐËù³öÏÖµÄÀà¡£±ÈÈ磬Customer, Employee£¬Order, ProductµÈ¡£È»ºó£¬³ÌÐòÔ±×é×°ËùÐèµÄsqlÓï¾ä£¬Í¨¹ýADO.NET£¬½«·µ»ØµÄ¼Ç¼£¬À´³õʼ»¯CustomerµÈÀàµÄ¶ÔÏó¡£ÔÚÕâÀÄãÒѾ×Ô¼º¶¯ÊÖ½«Customer±íºÍCustomerÀà¹ØÁªÁËÆðÀ´¡£´ÓLinq To SqlµÄÉè¼ÆÀ´¿´£¬ËüÖ÷ÒªÊÇΪÁ˽â¾ödata!=objects µÄÎÊÌâ¶ø²úÉúµÄ¡£ÏÖÔÚ£¬ÓÐÁËTableºÍClassÖ®¼äµÄÓ³É䣬Êý¾ÝºÍ¶ÔÏóÖ®¼ä¾Í¿ÉÒÔÓÐÒ»¸öÒ»Ò»¶ÔÓ¦µÄ¹ØÏµÁË¡£
ÔÚLinq To Sql֮ǰ£¬ÔÚjavaÁìÓòÓÐHibernate£¬ÔÚnetÁìÓòÓÐNHibernate¼¼Êõ£¬À´ÊµÏÖobject/relational ³Ö¾ÃºÍ²éѯ·þÎñ¡£ÎÞÂÛÊÇHibernate»¹ÊÇNHibernate£¬ÆäÅäÖø´ÔÓ£¬ÉÏÊÖʱ¼ä³¤£¬ÒѾ²»ÄÜÊÊÓ¦¿ìËÙ¿ª·¢µÄÐèÒª¡£¶øLinq To SqlµÄÍÆ³ö£¬Ç¡Ç¡ÃÖ²¹ÁËËüÃǵÄȱµã£¬³¹µ×½µµÍÁ˳ÌÐò¿ª·¢Ãż÷¡£
Linq
LinqÊÇLanguage Integrated QueryµÄËõд¡£Linq To SqlÊÇlinqÖеÄÒ»²¿·Ö£¬ÆäÓëADO.NET OrcasµÄ¹ØÏµÈëÏ¡£
ÏÖÔÚlinq·ÖÈý¸ö²¿·Ö¡£Linq To Objects£¬¼´ÒÔǰµÄlinq¡£ÆäÖ÷ÒªÊÇÕë¶ÔCLR-Based ObjectsµÄ²éѯ¡£¼´ÄÚ´æ²Ù×÷¡£Linq Enabled ADO.NETÊÇÕë¶Ô¹ØÏµÐÍÊý¾ÝµÄ¡£ÕâÓÖ°üº¬Èý¸ö²¿·Ö¡£Linq To Datasets, Linq To Sql, Linq To Entities. ÆäÖÐLinq To Sql ÊÇ´ó¼ÒËùÊìϤµÄ²¿·Ö£¬¼´ÒÔǰµÄDlinq. ¹Ù·½µÄ½âÊÍÊÇ£¬Linq To Datasets, support for ADO.NET Datasets; Linq to SQL, support for SQL Server; Linq to Entities, Support fro Entity Data Model. ¼ÇµÃ£¬ÒÔÇ°ÔøÓÐÈËÎʼ°dlinqÓëADO.NET OrcasµÄ¹ØÏµ£¬ÒòΪËüÃÇÁ¥ÊôÓÚ²»Í¬µÄ¶ÓÎ鿪·¢£¬ÆäÖÐÓÐÖØµþµÄ²¿·Ö¡£¶øÏÖÔÚ£¬Æä¹¦Äܹé½áÔÚÒ»Æð£¬ÆäÖØµþ²¿·ÖÒѾµÃµ½Èںϡ££¨Èç¹ûÓÐÈËÊÇADO.NET team»òÊìϤÕâ¸öµÄ£¬¿ª±ÙרÀ¸¸øÎÒÃÇ´ó¼Ò½²Ò»ÏÂѽ¡££©×îºóÒ»²¿·Ö½ÐLinq To XML£¬¼´ÒÔǰµÄXlinq. Õë¶Ôxml¸ñʽÊý¾ÝµÄ²Ù×÷¡££¨»¹ÓÐÕë¶ÔASP.NETµÄBlinq, ´óÉùÎÊһϣ¬ÓÐûÓÐÈ˶®Õâ¸öѽ£©
DBML
Ëùνdbml£¬¼´Database Mark Language¡£Êý¾Ý¿âÃèÊöÓïÑÔ£¬Ê
Ïà¹ØÎĵµ£º
¡¡¡¾IT168 ¼¼ÊõÎĵµ¡¿¹ÊÊ¿ªÆª£ºÄãºÍÄãµÄÍŶӾ¹ý²»Ð¸Å¬Á¦£¬ÖÕÓÚÊ¹ÍøÕ¾³É¹¦ÉÏÏߣ¬¸Õ¿ªÊ¼Ê±£¬×¢²áÓû§½ÏÉÙ£¬ÍøÕ¾ÐÔÄܱíÏÖ²»´í£¬µ«Ëæ×Å×¢²áÓû§µÄÔö¶à£¬·ÃÎÊËÙ¶È¿ªÊ¼±äÂý£¬Ò»Ð©Óû§¿ªÊ¼·¢À´Óʼþ±íʾ¿¹Ò飬ÊÂÇé±äµÃÔ½À´Ô½Ô㣬ΪÁËÁôסÓû§£¬Ä㿪ʼ×ÅÊÖµ÷²é·ÃÎʱäÂýµÄÔÒò¡£
¡¡¡¡¾¹ý½ôÕŵĵ÷²é£¬Äã·¢ÏÖÎÊÌâ³öÔÚÊý¾Ý¿âÉÏ£¬µ±Ó¦ ......
Ãæ¶ÔÏÖʵ°É£¬ËäÈ»Äã´ÓÀ´Ã»ÓдòËã³ÉΪһÃûSQL Serverר¼Ò£¬µ«ÊÇËæ×ÅÊý¾Ý¿âÒýÇæÖÖÀàºÍ°æ±¾µÄÔö¼Ó£¬Õâ¾ÍÒªÇóһЩÈËÀ´×¨ÃÅ´Óʲ¢¹Ø×¢Õâ·½ÃæµÄÄÚÈÝ¡£×÷Ϊ“΢ÈíÈË”(»òÕß³ÆÎªGal),ÎÞÂÛÄãÊDz»ÊÇÔ¸Ò⣬Äã¶¼±»Ñ¡ÖÐÁË¡£ÕâһϵÁеÄÎÄÕÂÈ«¶¼ÊǹØÓÚ°ïÖú×÷Ϊ¹ÜÀíÔ±¶ø·Ç³ÌÐòÔ±µÄÄãÔÚʹÓÃSQL Serverʱ¸ü¼Ó¸ßЧ¡£
¡¡¡¡ÔÚʵ¼ÊÖ´ÐÐ ......
SQL Injection with MySQL
±¾ÎÄ×÷Õߣºangel
ÎÄÕÂÐÔÖÊ£ºÔ´´
·¢²¼ÈÕÆÚ£º2004-09-16
±¾ÎÄÒѾ·¢±íÔÚ¡¶ºÚ¿Í·ÀÏß¡·7Ô¿¯£¬×ªÔØÇë×¢Ã÷¡£ÓÉÓÚдÁ˺ܾã¬Ëæ×ż¼ÊõµÄ½ø²½£¬±¾ÈËÒ²·¢ÏÖ¸ÃÎÄÀïÓв»ÉÙ´íÎóºÍÂÞàµĵط½¡£Çë¸÷λ¸ßÊÖ¿´Á˲»ÒªÐ¦¡£±¾ÎÄдÓÚ¡¶Advanced SQL Injection with MySQL¡·Ö®Ç°Ò»¸öÔ¡£
ÉùÃ÷
¡¡¡¡±¾ÎĽöÓÃÓÚ½ ......
SELECT A,B=stuff((select ' ' + '×Ö¶ÎC£º' + C + ',×Ö¶ÎD£º' + D) + ';' from tbl WHERE (key= 'Ìõ¼þ') for xml path('')) , 1 , 1 ,'')
from tbl
WHERE (key= 'Ìõ¼þ')
group by key
ÀýÈ磺һ¸ö±íÖÐkeyΪAAµÄ¼Ç¼ÓÐ2Ìõ£¬µÚÒ»ÌõÖÐ×Ö¶ÎCµÄֵΪCC£¬×Ö¶ÎDµÄֵΪDD£¬µÚ¶þÌõÖÐ×Ö¶ÎCµÄֵΪCCC£¬×Ö¶ÎDµÄֵΪ ......