zoukankan      html  css  js  c++  java
  • [AngularJS] Html ngSanitize, $sce

    Safely render arbitrary HTML snippets by using ngSanitize and $sce.

    By default angularJS consider user's input html is danger, so if you want to display html tag on the page will show unsafe error.

    To remove this error and trust user's input, we can install ngSanitize:

    bower install angular-sanitize
    var egghead = angular.module("egghead", ["ngSanitize"]);
    
    egghead.controller("AppCtrl", function () {
        var app = this;
    
        app.someHtml = '<a href="http://egghead.io" style="color:red">Learn stuff!</strong>';
    });
    <!DOCTYPE html>
    <html>
    <head>
        <title>Egghead.io</title>
        <link rel="stylesheet" href="bower_components/bootstrap.css/css/bootstrap.css"/>
    </head>
    <body ng-app="egghead" ng-controller="AppCtrl as app">
    <textarea name="" id="" cols="30" rows="10" ng-model="app.someHtml"></textarea>
    <div ng-bind-html="app.someHtml"></div>
    <script src="bower_components/angular/angular.js"></script>
    <script src="bower_components/angular-sanitize/angular-sanitize.js"></script>
    <script src="app.js"></script>
    </body>
    </html>

    Then the error message has gone, but we didn't get the result which we want, we want "Learn stuff" shown  in red color:

    <a href="http://egghead.io" style="color:red">Learn stuff!</strong>

    To overcome this, we can use $sce service:

    var egghead = angular.module("egghead", ["ngSanitize"]);
    
    egghead.controller("AppCtrl", function ($sce) {
        var app = this;
    
        app.someHtml = $sce.trustAsHtml('<a href="http://egghead.io" style="color:red">Learn stuff!</strong>');
    });

    Also you can trust as javascript, css && url:

    see here: https://docs.angularjs.org/api/ng/service/$sce

  • 相关阅读:
    合并报表优化记录
    如何在后台代码中执行原生sql?
    eclipse从数据库逆向生成Hibernate实体类
    用Eclipse进行远程Debug代码
    hibernate自动生成数据库表
    hibernate自动生成数据库表
    php通过UNIX源码编译安装
    php设置方法
    php其他配制选项
    终于做出了目录认证!
  • 原文地址:https://www.cnblogs.com/Answer1215/p/4176172.html
Copyright © 2011-2022 走看看