📄 conn.asp
字号:
<%@ LANGUAGE = VBScript CodePage = 936%>
<%Server.ScriptTimeOut=72000%>
<%
Response.Buffer = True
randomize timer
Dim Startime,endtime,db
Dim SqlNowString,Conn
Const IsSqlDataBase = 0 '定义数据库类别,1为SQL数据库,0为Access数据库
Startime = Timer()
dim Rs,Rs1,Rs2
Sub ConnectionDatabase
Dim ConnStr
If IsSqlDataBase = 1 Then
'sql数据库连接参数:数据库名、用户密码、用户名、连接名(本地用local,外地用IP)
Dim SqlDatabaseName,SqlPassword,SqlUsername,SqlLocalName
SqlDatabaseName = "IFS"
SqlPassword = ""
SqlUsername = "IFS"
SqlLocalName = "(local)"
ConnStr = "Provider = Sqloledb; User ID = " & SqlUsername & "; Password = " & SqlPassword & "; Initial Catalog = " & SqlDatabaseName & "; Data Source = " & SqlLocalName & ";"
Else
Db = "db/#data.asp"
ConnStr = "Provider = Microsoft.Jet.OLEDB.4.0;Data Source = " & Server.MapPath(db)
End If
On Error Resume Next
Set conn = Server.CreateObject("ADODB.Connection")
conn.open ConnStr
If Err Then
err.Clear
Set Conn = Nothing
Response.Write "The Sever Is Busy,Please try again..."
Response.End
End If
End Sub
Function GrateRs(SqlStr,wr)
dim Rs
Set Rs=Server.CreateObject("ADODB.Recordset")
Rs.Open SqlStr, Conn, 1, wr
set GrateRs=Rs
End Function
Function ReplStr(s)
s=Replace(s,"'","’")
s=Replace(s,"%","%")
s=Replace(s,"&","&")
s=Replace(s,"<","<")
s=Replace(s,">",">")
s=replace(s,chr(13)+chr(10),"<br>")
s=Replace(s," "," ")
ReplStr=s
End Function
'防SQL注入函数
Function YeSqlStr(data,falgs)
select case falgs
case "1" '数值型
data= data
if not isNumeric (data) then data=0
case "2" '字符型
data = Replace (data, "'", "''" )
case else '字符串
data = Trim(Replace(data, "&", "&"))
data = replace(data, "<", "<")
data = replace(data, ">", ">")
data = replace(data, "'", """")
data = replace(data, "*", "")
data = replace(data, "?", "")
data = replace(data, "select", "")
data = replace(data, "insert", "")
data = replace(data, "delete", "")
data = replace(data, "update", "")
data = replace(data, "delete", "")
data = replace(data, "create", "")
data = replace(data, "drop", "")
data = replace(data, "declare", "")
data = replace(data, vbCrLf&vbCrlf, "</p><p>")
data = replace(data, vbCrLf, "<br>")
end select
YeSqlStr= data
End Function
Sub DBConnEnd()
On Error Resume Next
Rs.Close
Set Rs = Nothing
Conn.Close
Set Conn = Nothing
End Sub
sub AdShow(adid)
if adid<>"" then
Set adRs=GrateRs("select * from ifs_ad1 where adid="&adid,1)
if not adRs.eof and adRs("ctrl")=1 then
response.write adRs("ad")
end if
adRs.close
set adRs=nothing
end if
end sub
'调用常规设置
call ConnectionDatabase
Set Rs=GrateRs("Select * from config",1)
Set_Usr_name = Rs("username")
jg = Rs("jg")
Set_Usr_kconn = Rs("kconn")
SYStem_url=Rs("systemurl")
Site_name=Rs("Sitename")
Set_Usr_State=1
if Rs("ischeck")=1 then Set_Usr_State=0
call DBConnEnd
%>
⌨️ 快捷键说明
复制代码
Ctrl + C
搜索代码
Ctrl + F
全屏模式
F11
切换主题
Ctrl + Shift + D
显示快捷键
?
增大字号
Ctrl + =
减小字号
Ctrl + -