您的位置:首页 > 数据库

XsqlFilterResult----动态生成sql语句的类,过滤一些为空的查询条件

2012-11-25 11:10 791 查看
XsqlBuilder用于可以动态构造sql语句,避免在构造sql时使用过多的 if 判断,与SafeSqlProcesser集成提供防止sql注入攻击,与DataModifier集成完成数据类型的转换

动态构造sql示例:

Java代码





String xsql = "select * from user where 1=1

/~ and username = {username} ~/

/~ and password = {password} ~/

/~ and age = [age] ~/

/~ and sex = [sex] ~/"

Map filters = new HashMap();

filters.put("username", "badqiu");

filters.put("age", "12");

filters.put("sex", "");

XsqlFilterResult result = xsqlBuilder.applyFilters(xsql,filters);

String xsql = "select * from user where 1=1
/~ and username = {username} ~/
/~ and password = {password} ~/
/~ and age = [age] ~/
/~ and sex = [sex] ~/"

Map filters = new HashMap();
filters.put("username", "badqiu");
filters.put("age", "12");
filters.put("sex", "");

XsqlFilterResult result = xsqlBuilder.applyFilters(xsql,filters);


构造生成的结果result.getXsql()将会等于

Sql代码





select * fromuserwhere 1=1 and username={username} andage=12

select * from user where 1=1 and username={username} and age=12


被过滤删除的段: /~ and password = {password} ~/这一段由于在filters中password不存在而没有被构造出来 /~ and sex = [sex] ~/由于sex的值为空串也没有被构造出来

最后result.acceptedFilters值

Java代码





Map acceptedFilters = result.getAcceptedFilters();

会等于:

{username=badqiu}

Map acceptedFilters = result.getAcceptedFilters();
会等于:
{username=badqiu}


相关符号介绍:

/~ segment... ~/ 为一个条件代码块 {key} 过滤器中起标记作用的key,作为后面可以替换为sql的?,或是hql的:username标记 [key] 将直接替换为key value

数据类型转换示例:

select * from user where and 1=1 /~ age={age?int} ~/ 将会将Map filters中key=age的值转换为int类型

项目地址:http://code.google.com/p/rapid-xsqlbuilder/

下载地址:http://rapid-xsqlbuilder.googlecode.com/files/xsqlbuilder-1.0.zip
内容来自用户分享和网络整理,不保证内容的准确性,如有侵权内容,可联系管理员处理 点击这里给我发消息
标签: