zoukankan      html  css  js  c++  java
  • dotnet中的swfupload(或其它socket)传输中的session和cookie问题解决

    < DOCTYPE html PUBLIC -WCDTD XHTML StrictEN httpwwwworgTRxhtmlDTDxhtml-strictdtd>

           通过 Global.asax 文件你可以覆盖丢失的Session ID cookie,代码如下(引用官方解决方案):

    void Application_BeginRequest(object sender, EventArgs e)

    string session_param_name = "ASPSESSID";
    string session_cookie_name = "ASP.NET_SESSIONID";

    if (HttpContext.Current.Request.Form[session_param_name] != null)
    UpdateCookie(session_cookie_name, HttpContext.Current.Request.Form[session_param_name]);
    else if (HttpContext.Current.Request.QueryString[session_param_name] != null)
    UpdateCookie(session_cookie_name, HttpContext.Current.Request.QueryString[session_param_name]);
    catch (Exception)

    string auth_param_name = "AUTHID";
    string auth_cookie_name = FormsAuthentication.FormsCookieName;

    if (HttpContext.Current.Request.Form[auth_param_name] != null)
    UpdateCookie(auth_cookie_name, HttpContext.Current.Request.Form[auth_param_name]);
    else if (HttpContext.Current.Request.QueryString[auth_param_name] != null)
    UpdateCookie(auth_cookie_name, HttpContext.Current.Request.QueryString[auth_param_name]);

    catch (Exception)
    void UpdateCookie(string cookie_name, string cookie_value)
    HttpCookie cookie = HttpContext.Current.Request.Cookies.Get(cookie_name);
    if (cookie == null)
    HttpCookie cookie1 = new HttpCookie(cookie_name, cookie_value);
    cookie.Value = cookie_value;

    Explaination: This code checks your POST (form) and GET (querystring) for a Session ID. If it finds one then it overrides the session cookie with the value from your POST/GET. Then later when the session is restored the overridden session is what you get (instead of IE's session or a brand new session which was what the bug was causing to happen).

    The same sort of thing is done for the Forms Auth cookie, but I didn't actually go back and look at Forms Auth to see how it works to make sure this would work. And I didn't set the Forms Auth bit so it might not even work.

    You just need to include a post_param in your SWFUpload page that passes in the session id. Something like:

    var swfu = new SWFUpload({

    post_params : {

    "ASPSESSID" : "<%=Session.SessionID %>"


    Note: The overriding of the Forms Authentication cookie has not been tested but I think it should still work. Someone will have to let me know.

    P.S. & Security Warning: Don't just copy and paste this code in to your ASP.Net application without knowing what you are doing. It introduces security issues and possibilities of Cross-site Scripting.


  • 相关阅读:
    Deep Learning论文笔记之(七)深度网络高层特征可视化
    hdu1024 最大m子序列和
    poj 2472
    poj 2472
    hdu4539 郑厂长系列故事——排兵布阵 + POJ1158 炮兵阵地
    hdu4539 郑厂长系列故事——排兵布阵 + POJ1158 炮兵阵地
  • 原文地址:https://www.cnblogs.com/netcorner/p/2912033.html
Copyright © 2011-2022 走看看