Code:
/ 4.0 / 4.0 / untmp / DEVDIV_TFS / Dev10 / Releases / RTMRel / ndp / fx / src / xsp / System / Web / Routing / PageRouteHandler.cs / 1305376 / PageRouteHandler.cs
//------------------------------------------------------------------------------ //// Copyright (c) Microsoft Corporation. All rights reserved. // //----------------------------------------------------------------------------- namespace System.Web.Routing { using System; using System.Web.UI; using System.Web.Compilation; using System.Web.Security; using System.Security; using System.Security.Permissions; using System.Security.Principal; public class PageRouteHandler : IRouteHandler { public PageRouteHandler(string virtualPath) : this(virtualPath, true) { } public PageRouteHandler(string virtualPath, bool checkPhysicalUrlAccess) { if (string.IsNullOrEmpty(virtualPath) || !virtualPath.StartsWith("~/", StringComparison.OrdinalIgnoreCase)) { throw new ArgumentException(SR.GetString(SR.PageRouteHandler_InvalidVirtualPath), "virtualPath"); } this.VirtualPath = virtualPath; this.CheckPhysicalUrlAccess = checkPhysicalUrlAccess; _useRouteVirtualPath = VirtualPath.Contains("{"); } ////// This is the full virtual path (using tilde syntax) to the WebForm page. /// ////// Needs to be thread safe so this is only settable via ctor. /// public string VirtualPath { get; private set; } ////// Because we're not actually rewriting the URL, ASP.NET's URL Auth will apply /// to the incoming request URL and not the URL of the physical WebForm page. /// Setting this to true (default) will apply URL access rules against the /// physical file. /// ///True by default public bool CheckPhysicalUrlAccess { get; private set; } private bool _useRouteVirtualPath; private Route _routeVirtualPath; private Route RouteVirtualPath { get { if (_routeVirtualPath == null) { //Trim off ~/ _routeVirtualPath = new Route(VirtualPath.Substring(2), this); } return _routeVirtualPath; } } private bool CheckUrlAccess(string virtualPath, RequestContext requestContext) { IPrincipal user = requestContext.HttpContext.User; // If there's no authenticated user, use the default identity if (user == null) { user = new GenericPrincipal(new GenericIdentity(String.Empty, String.Empty), new string[0]); } return CheckUrlAccessWithAssert(virtualPath, requestContext, user); } [SecurityPermission(SecurityAction.Assert, Unrestricted = true)] private bool CheckUrlAccessWithAssert(string virtualPath, RequestContext requestContext, IPrincipal user) { return UrlAuthorizationModule.CheckUrlAccessForPrincipal(virtualPath, user, requestContext.HttpContext.Request.HttpMethod); } public virtual IHttpHandler GetHttpHandler(RequestContext requestContext) { if (requestContext == null) { throw new ArgumentNullException("requestContext"); } string virtualPath = GetSubstitutedVirtualPath(requestContext); // Virtual Path ----s up with query strings, so we need to strip them off int qmark = virtualPath.IndexOf('?'); if (qmark != -1) { virtualPath = virtualPath.Substring(0, qmark); } if (this.CheckPhysicalUrlAccess && !CheckUrlAccess(virtualPath, requestContext)) { return new UrlAuthFailureHandler(); } Page page = BuildManager.CreateInstanceFromVirtualPath(virtualPath, typeof(Page)) as Page; return page; } ////// Gets the virtual path to the resource after applying substitutions based on route data. /// /// ///public string GetSubstitutedVirtualPath(RequestContext requestContext) { if (requestContext == null) { throw new ArgumentNullException("requestContext"); } if (!_useRouteVirtualPath) return VirtualPath; VirtualPathData vpd = RouteVirtualPath.GetVirtualPath(requestContext, requestContext.RouteData.Values); // if (vpd == null) return VirtualPath; return "~/" + vpd.VirtualPath; } } } // File provided for Reference Use Only by Microsoft Corporation (c) 2007.
Link Menu
This book is available now!
Buy at Amazon US or
Buy at Amazon UK
- controlskin.cs
- TimeSpanMinutesConverter.cs
- MetadataItemEmitter.cs
- ToolStripDropDown.cs
- XmlToDatasetMap.cs
- ControlBuilder.cs
- MemoryMappedView.cs
- DBSqlParserColumn.cs
- Error.cs
- EntityCommand.cs
- BooleanFunctions.cs
- TypeResolver.cs
- ScriptingSectionGroup.cs
- CategoryGridEntry.cs
- RecognizerBase.cs
- SamlAssertionKeyIdentifierClause.cs
- TextSerializer.cs
- PromptEventArgs.cs
- KeyValueInternalCollection.cs
- Action.cs
- MonitoringDescriptionAttribute.cs
- Certificate.cs
- XmlProcessingInstruction.cs
- ImageListStreamer.cs
- CalendarKeyboardHelper.cs
- GridEntryCollection.cs
- ModifyActivitiesPropertyDescriptor.cs
- ZipIOEndOfCentralDirectoryBlock.cs
- BasePropertyDescriptor.cs
- ClientSponsor.cs
- TemplateApplicationHelper.cs
- Simplifier.cs
- TextElementCollection.cs
- SR.cs
- MulticastDelegate.cs
- XmlSchemaImporter.cs
- UnauthorizedWebPart.cs
- XmlUtil.cs
- XmlIlTypeHelper.cs
- UnsafeNativeMethods.cs
- SqlReorderer.cs
- IIS7UserPrincipal.cs
- OuterGlowBitmapEffect.cs
- DefaultSettingsSection.cs
- AttachmentCollection.cs
- MsdtcClusterUtils.cs
- DataColumnPropertyDescriptor.cs
- ResourceProviderFactory.cs
- MergablePropertyAttribute.cs
- UrlAuthFailedErrorFormatter.cs
- UIPropertyMetadata.cs
- WebControlToolBoxItem.cs
- LinkConverter.cs
- CheckableControlBaseAdapter.cs
- NetStream.cs
- RepeatButtonAutomationPeer.cs
- ConstructorExpr.cs
- PackageFilter.cs
- RoleManagerModule.cs
- OrthographicCamera.cs
- SourceCollection.cs
- WindowsUpDown.cs
- BitmapFrameDecode.cs
- ButtonFieldBase.cs
- ConfigurationPropertyCollection.cs
- RawStylusInputCustomData.cs
- ToolStripItemImageRenderEventArgs.cs
- PointAnimationUsingPath.cs
- DoubleLinkList.cs
- Errors.cs
- EventRoute.cs
- CompModSwitches.cs
- CriticalExceptions.cs
- BaseAppDomainProtocolHandler.cs
- PropagationProtocolsTracing.cs
- ButtonRenderer.cs
- SystemIPGlobalStatistics.cs
- ArgIterator.cs
- ClientFormsIdentity.cs
- MenuItemStyle.cs
- WebPart.cs
- NeutralResourcesLanguageAttribute.cs
- SchemaCompiler.cs
- ManagementOperationWatcher.cs
- WebServiceErrorEvent.cs
- ConnectivityStatus.cs
- PathFigureCollectionConverter.cs
- SystemException.cs
- SqlMethodAttribute.cs
- EncryptedType.cs
- DBConcurrencyException.cs
- DurableInstanceContextProvider.cs
- TemplateEditingFrame.cs
- PictureBox.cs
- EventLevel.cs
- ToolStripGrip.cs
- LassoHelper.cs
- ComAwareEventInfo.cs
- XmlNodeComparer.cs
- SpecialNameAttribute.cs