ASP.NETºÍSQL Server 2005Á¬½Ó³öÏֵĴíÎóÒÔ¼°½â¾ö°ì·¨
ÎҲſªÊ¼¿´ASP.NETÓëÊý¾Ý¿âµÄÁ¬½Ó£¬½ñÌìÒ»¿ªÊ¼¾ÍÒ»Á¬Óöµ½Èý¸öÎÊÌ⣬ÕÛÌÚÁËÒ»ÍíÉÏ...Ï£ÍûÎҲ鵽µÄ×ÊÁ϶Դó¼ÒÓÐÓá£
×î³õÎÒдµÄÓï¾äÊÇ£º
//Create the Connection
//SqlConnection conn = new SqlConnection(@"Data Source=(local)\NetSDK; Initial Catalog=Northwind; User ID = sa; password = yourPassword;");
ÉÏÃæÕâ¸öÓï¾äÊÇÕÕÊéÉÏ´òµÄ£¬¿´À´ÊÇÕâ¸öData Source¸øÎÒ´øÀ´µÄÂé·³...ÉÏÃæÄǸö@ÊÇÓÃÀ´ºöÂÔ\µÄ£¬´ó¼Ò°´ÕÕ×Ô¼ºµÄϲºÃ¿´¼Ó²»¼ÓËü°É¡£
ÎÒ·¢ÏÖ×îÖÕÎÊÌâÒ»·½Ãæ³öÔÚÁËÎÒµÄASP.NETÓëSQLµÄÁ¬½ÓÓï¾äÉÏ£¬ÁíÒ»·½Ãæ³öÔÚÁËSQLµÄÊý¾Ý¿âÉèÖÃÉÏ¡£
ÎÒ×îÖÕÐÞ¸ÄÕýÈ·µÄÓï¾äΪ£º
//Create the Connection
//SqlConnection conn = new SqlConnection("Data Source=myComputer\\SQLEXPRESS; Initial Catalog=Northwind; User ID = sa; password = yourPassword;");
ÎÒ³öÏÖµÄÈý¸ö´íÎóÊÇ£º
´íÎóÒ»£ºSQLÍøÂç½Ó¿Ú, error: 26-¶¨Î»Ö¸¶¨µÄ·þÎñÆ÷/ʵÀýʱ³ö´í
´íÎó¶þ£ºÔÚ½¨Á¢Óë·þÎñÆ÷µÄÁ¬½Óʱ³ö´í¡£ÔÚÁ¬½Óµ½ SQL Server 2005 ʱ£¬ÔÚĬÈϵÄÉèÖÃÏ SQL Server ²»ÔÊÐí½øÐÐÔ¶³ÌÁ¬½Ó¿ÉÄܻᵼÖ´Ëʧ°Ü¡£ (provider: ÃüÃû¹ÜµÀÌṩ³ÌÐò, error: 40 - ÎÞ·¨´ò¿ªµ½ SQL Server µÄÁ¬½Ó)
´íÎóÈý£ºLogin failed for user "myComputer\ASPNET".
¶ÔÓÚ´íÎóÒ»£¬ÎҲο¼ÁËÒÔÏÂÍøÒ³£º
http://wenda.tianya.cn/wenda/thread?tid=1c5966b7cc13190e
http://hi.baidu.com/%B0%A2%D7%F3/blog/item/008aeec4a80373ae8226ac85.html
Ã²ËÆÓÐÍøÓÑÓÃÕâ¸ö·½·¨½â¾öÁËÎÊÌ⣬²»¹ý¶ÔÓÚÎÒÀ´ËµÕâÊÇÈÔȻûÓнâ¾ö¡£
²»¹ýÒªÌØ±ð˵Ã÷µÄÊÇ£º´ÓÎҵĵçÄÔ->ÓÒ¼ü½øÈ듼ÆËã»ú¹ÜÀ픵ķþÎñºÍÓ¦ÓóÌÐò->SQL Server 2005ÅäÖÃÖеÄSQL Server 2005ÍøÂçÅäÖá£ÆäÖжÔÓÚTCP/IPºÍNamed PipesÒ»¶¨¶¼ÒªÆôÓá£ÁíÍ⣬ÓÉÓڲο¼µÄ×ÊÁÏÉÏÓÐ˵µ½½«TCP/IPµÄIPÑ¡ÏÀïµÄËùÓÐÏîÈ«²¿ÆôÓã¬ÎÒ¾ÍÕÕ×öÁË¡£²»¹ýÎÊÌâûÓнâ¾ö¡£
ÁíÍ⣬ÎÒÐèÒªÓõ½NorthwindÊý¾Ý¿â£¬¶øÏµÄSQL Server 2005ÖÐûÓÐNorthwindºÍPubs£¬´ó¼Ò¿ÉÒÔµ½ÍøÉÏËÑSQL2000SampleDb.msi½øÐÐÏÂÔØ£¬°ÑËûÃǻָ´µ½Êý¾Ý¿âÀï¾ÍÐÐÁË¡£ÎÒÒ²ÏÂÔØÁËSQL Server 2005µÄsample£¬²»¹ý²»ÖªµÀΪʲôÈÔȻûÓÐNorthwindºÍPubs£¬ËùÒÔÓÃ2000µÄ¾ÍºÃÁË£¬Ã»ÓÐÊ²Ã´Çø±ð¡£
Ö®ºó£¬ÎÒ·¢ÏÖ²»ÄÜÔÚData SourceÀïÓÃ(local)\NetSDKÕâ¾ä»°£¬Òò´Ë¾Í¸Ä³ÉÁË(local)»ò(localhost)£¬ÕâÊÇÖÕÓÚûÓÐÁ˿ɶñµÄerror26£¬¶øÊÇ´íÎó¶þerror40¡£
Õâ¸ö´íÎó»¹ÊÇÓÉÓÚData SourceµÄÃû³Æ²»ÕýÈ·ÒýÆðµÄ¡£Çë´ó¼Òµ
Ïà¹ØÎĵµ£º
ÔÚWeb±à³Ì¹ý³ÌÖУ¬´æÔÚןܶలȫÒþ»¼¡£±ÈÈçÔÚÒÔǰµÄASP°æ±¾ÖУ¬CookieΪ·ÃÎÊÕߺͱà³ÌÕß¶¼ÌṩÁË·½±ã£¬²¢Ã»ÓÐÌṩ¼ÓÃܵŦÄÜ¡£´ò¿ªIEä¯ÀÀÆ÷£¬Ñ¡Ôñ“¹¤¾ß”²Ëµ¥ÀïµÄ“InternetÑ¡Ï¬È»ºóÔÚµ¯³öµÄ¶Ô»°¿òÀïµ¥»÷“ÉèÖÔ°´Å¥£¬Ñ¡Ôñ“²é¿´Îļþ”°´Å¥£¬ÔÚµ¯³öµÄ´°¿ÚÖУ¬¾Í»áÏÔʾӲÅÌÀï ......
×÷ΪһÃûÊý¾Ý¿âDBA£¬¿Ï¶¨»áÌý˵¹ý“tempdbÊý¾Ý¿âÂúÁË”¡£Í¨³£ÎÒÃǺÜÈÝÒ×È·¶¨Ôì³ÉÕâÒ»ÎÊÌâµÄÔÒò¡£µ«ÊǸü¶àµÄʱºòÕâÒ»ÎÊÌâÖ÷ÒªÔ´ÓÚÒ»×éÇëÇó£¬Éæ¼°µ½Ð´úÂ벿Êð»òÖð½¥Ôö¼ÓµÄÊý¾Ý¡£
¡¡¡¡“TempdbÂúÁË”Òâζ×Åʲô?
¡¡¡¡µ±SQL Server tempdbÂúÁËʱ£¬Éϲã¹ÜÀí³£³£ÐèÒª¾ö²ß¡¢Ò»Ð©¿ª·¢ÈËÔ±¿ÉÄÜ»áÍÆÐ¶ÔðÈΣ¬¾ ......
Ãæ¶ÔÏÖʵ°É£¬ËäÈ»Äã´ÓÀ´Ã»ÓдòËã³ÉΪһÃûSQL Serverר¼Ò£¬µ«ÊÇËæ×ÅÊý¾Ý¿âÒýÇæÖÖÀàºÍ°æ±¾µÄÔö¼Ó£¬Õâ¾ÍÒªÇóһЩÈËÀ´×¨ÃÅ´Óʲ¢¹Ø×¢Õâ·½ÃæµÄÄÚÈÝ¡£×÷Ϊ“΢ÈíÈË”(»òÕß³ÆÎªGal),ÎÞÂÛÄãÊDz»ÊÇÔ¸Ò⣬Äã¶¼±»Ñ¡ÖÐÁË¡£ÕâһϵÁеÄÎÄÕÂÈ«¶¼ÊǹØÓÚ°ïÖú×÷Ϊ¹ÜÀíÔ±¶ø·Ç³ÌÐòÔ±µÄÄãÔÚʹÓÃSQL Serverʱ¸ü¼Ó¸ßЧ¡£
¡¡¡¡ÔÚʵ¼ÊÖ´ÐÐ ......
SQL Injection with MySQL
±¾ÎÄ×÷Õߣºangel
ÎÄÕÂÐÔÖÊ£ºÔ´´
·¢²¼ÈÕÆÚ£º2004-09-16
±¾ÎÄÒѾ·¢±íÔÚ¡¶ºÚ¿Í·ÀÏß¡·7Ô¿¯£¬×ªÔØÇë×¢Ã÷¡£ÓÉÓÚдÁ˺ܾã¬Ëæ×ż¼ÊõµÄ½ø²½£¬±¾ÈËÒ²·¢ÏÖ¸ÃÎÄÀïÓв»ÉÙ´íÎóºÍÂÞàµĵط½¡£Çë¸÷λ¸ßÊÖ¿´Á˲»ÒªÐ¦¡£±¾ÎÄдÓÚ¡¶Advanced SQL Injection with MySQL¡·Ö®Ç°Ò»¸öÔ¡£
ÉùÃ÷
¡¡¡¡±¾ÎĽöÓÃÓÚ½ ......
µÚÒ»²¿·Ö »ù±¾¸ÅÄî
Ò»¡¢ ......