{"id":115,"date":"2015-02-15T23:16:02","date_gmt":"2015-02-15T14:16:02","guid":{"rendered":"http:\/\/ik1-306-13392.vs.sakura.ne.jp\/?p=115"},"modified":"2015-02-15T23:21:45","modified_gmt":"2015-02-15T14:21:45","slug":"post-115","status":"publish","type":"post","link":"https:\/\/nobunobu1717.site\/?p=115","title":{"rendered":"ASP.NET MVC\u3067\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3092\u4f7f\u3046 \u305d\u306e4 \u30b5\u30fc\u30d0\u30b5\u30a4\u30c9\u7de8"},"content":{"rendered":"<h3>\u306f\u3058\u3081\u306b<\/h3>\n<p><a href=\"http:\/\/168.138.214.208\/?p=101\" title=\"\u524d\u56de\" target=\"_blank\">\u524d\u56de<\/a>\u307e\u3067\u306bcontenteditable\u5c5e\u6027\u3092\u7528\u3044\u305f\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3092\u51fa\u529b\u3067\u304d\u308bHTML\u30d8\u30eb\u30d1\u30fc\u306e\u4f5c\u6210\u65b9\u6cd5\u3092\u7d39\u4ecb\u3057\u307e\u3057\u305f\u3002<br \/>\n\u4eca\u56de\u306f\u5b9f\u969b\u306b\u305d\u308c\u306b\u5408\u308f\u305b\u305f\u30b5\u30fc\u30d0\u30fc\u30b5\u30a4\u30c9\u306e\u5b9f\u88c5\u3092\u8aac\u660e\u3057\u307e\u3059\u3002<\/p>\n<h3>\u30c7\u30fc\u30bf\u30af\u30e9\u30b9\u5b9a\u7fa9<\/h3>\n<p>\u307e\u305a\u306f\u3001\u4ee5\u4e0b\u306e\u3088\u3046\u306aNews\u30af\u30e9\u30b9\u3092\u5229\u7528\u3059\u308b\u3053\u3068\u3092\u524d\u63d0\u3067\u8a71\u3092\u9032\u3081\u307e\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \" title=\"News\u30af\u30e9\u30b9\" >    public class News\r\n    {\r\n            [DisplayName(\"\u30bf\u30a4\u30c8\u30eb\")]\r\n            [Required(ErrorMessage = \"{0}\u3092\u5165\u529b\u3057\u3066\u304f\u3060\u3055\u3044\u3002\")]\r\n            public string Title { get; set; }\r\n\r\n            [AllowHtml]\r\n            [DisplayName(\"\u5185\u5bb9\")]\r\n            [Required(ErrorMessage = \"{0}\u3092\u5165\u529b\u3057\u3066\u304f\u3060\u3055\u3044\u3002\")]\r\n            public string Detail { get; set; }\r\n\r\n            [DisplayName(\"\u66f4\u65b0\u65e5\u6642\")]\r\n            [DisplayFormat(DataFormatString = \"{0:yyyy\/MM\/dd}\")]\r\n            [Required(ErrorMessage = \"{0}\u3092\u5165\u529b\u3057\u3066\u304f\u3060\u3055\u3044\u3002\")]\r\n            public DateTime UpdateTime { get; set; }\r\n    }<\/pre>\n<p>\u3053\u306eNews\u30af\u30e9\u30b9\u306eDetail\u30d7\u30ed\u30d1\u30c6\u30a3\u3092\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3068\u3057\u3066\u5229\u7528\u53ef\u80fd\u306b\u3059\u308b\u305f\u3081\u306b<strong>AllowHtml<\/strong>\u5c5e\u6027\u3092\u4ed8\u4e0e\u3057\u307e\u3059\u3002<br \/>\n\u3053\u306e\u5c5e\u6027\u3092\u4ed8\u4e0e\u3057\u306a\u3044\u3068ASP.NET MVC\u306e\u30d5\u30ec\u30fc\u30e0\u30ef\u30fc\u30af\u30ec\u30d9\u30eb\u3067\u4e0d\u6b63\u306a\u30bf\u30b0\u3084\u6587\u5b57\u5217\u3092\u30c1\u30a7\u30c3\u30af\u3059\u308b\u51e6\u7406\u304c\u5b9f\u884c\u3055\u308c\u3066\u30a8\u30e9\u30fc\u3068\u306a\u3063\u3066\u3044\u3057\u307e\u3059\u3002<\/p>\n<h3>\u30a8\u30b9\u30b1\u30fc\u30d7\u51e6\u7406<\/h3>\n<p>\u4e0a\u8a18\u306eAllowHtml\u5c5e\u6027\u3092\u4ed8\u4e0e\u3057\u305f\u3053\u3068\u3067\u69d8\u3005\u306a\u30bf\u30b0\u304c\u8a31\u53ef\u3055\u308c\u3066\u3057\u307e\u3046\u305f\u3081\u3001Javascript\u306e\u57cb\u3081\u8fbc\u307f\u306a\u3069\u3082\u53ef\u80fd\u306b\u306a\u3063\u3066\u3057\u307e\u3044\u307e\u3059\u3002\u305d\u306e\u305f\u3081\u3001\u4e0d\u6b63\u306a\u30bf\u30b0\u306a\u3069\u3092\u30a8\u30b9\u30b1\u30fc\u30d7\u3059\u308b\u51e6\u7406\u304c\u5fc5\u8981\u3068\u306a\u308a\u307e\u3059\u3002<br \/>\n\u5165\u529b\u5185\u5bb9\u3092\u30a8\u30b9\u30b1\u30fc\u30d7\u3059\u308b\u624b\u6bb5\u306f\u8272\u3005\u3042\u308b\u3068\u601d\u3044\u307e\u3059\u304c\u3001\u4eca\u56de\u306f<a href=\"http:\/\/nsoup.codeplex.com\/\" title=\"NSoup\" target=\"_blank\">NSoup<\/a>\u3068\u3044\u3063\u305f\u30aa\u30fc\u30d7\u30f3\u30bd\u30fc\u30b9\u3092\u5229\u7528\u3057\u307e\u3059\u3002\u5143\u306fjsoup\u3068\u3044\u3063\u305fJava\u5411\u3051\u306e\u30e9\u30a4\u30d6\u30e9\u30ea\u3092.NET\u5411\u3051\u306b\u79fb\u690d\u3057\u305f\u3082\u306e\u306e\u3088\u3046\u3067\u3059\u3002<br \/>\nNuget\u306a\u3069\u306b\u306f\u5bfe\u5fdc\u3057\u3066\u3044\u306a\u3055\u305d\u3046\u306a\u306e\u3067\u624b\u52d5\u3067\u30c0\u30a6\u30f3\u30ed\u30fc\u30c9\u3057\u3066\u53c2\u7167\u306b\u52a0\u3048\u307e\u3059\u3002<br \/>\n\u305d\u3057\u3066NSoup\u3092\u5229\u7528\u3057\u305f\u4ee5\u4e0b\u306e\u3088\u3046\u306aHTML\u5909\u63db\u30af\u30e9\u30b9\u3092\u4f5c\u6210\u3057\u307e\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \" >    public class SecureHtmlUtility\r\n    {\r\n        public static string GetSecuredHtmlFromString(string rawHtml)\r\n        {\r\n            \/\/\u6709\u52b9\u306a\u30bf\u30b0\u4e00\u89a7\u3092\u53d6\u5f97\r\n            var white = GetWhiteList();\r\n            \/\/\u7121\u52b9\u306a\u30bf\u30b0\u3092\u30ab\u30c3\u30c8\u3059\u308b\r\n            var str = NSoupClient.Clean(rawHtml, white);\r\n\r\n            return str;\r\n        }\r\n\r\n        private static Whitelist GetWhiteList()\r\n        {\r\n            var white = Whitelist.Relaxed;\r\n            \/\/font\u30bf\u30b0\u306ecolor,size\u5c5e\u6027\u3092\u8a31\u53ef\r\n            white.AddTags(new[] { \"font\" });\r\n            white.AddAttributes(\"font\", new[]\r\n            {\r\n                \"color\", \"size\"\r\n            });\r\n\r\n            return white;\r\n        }\r\n    }<\/pre>\n<p>Whitelist\u3092\u7528\u610f\u3057\u3066\u8a31\u53ef\u3059\u308b\u30bf\u30b0\u3092\u5b9a\u7fa9\u3057\u307e\u3059\u3002\u81ea\u524d\u3067\u3059\u3079\u3066\u4f5c\u308b\u3053\u3068\u3082\u53ef\u80fd\u3067\u3059\u304c\u3001\u4eca\u56de\u306f\u521d\u3081\u304b\u3089\u7528\u610f\u3055\u308c\u305fRelaxed\u3092\u4f7f\u7528\u3057\u3066\u3001\u305d\u3053\u306b\u8a31\u53ef\u3059\u308b\u5c5e\u6027\u3092\u8ffd\u52a0\u3057\u307e\u3059\u3002<br \/>\nRelaxed\u4ee5\u5916\u306b\u3082\u7d44\u307f\u8fbc\u307f\u306e\u5b9a\u7fa9\u304c\u4f55\u500b\u304b\u7528\u610f\u3055\u308c\u3066\u3044\u307e\u3059\u306e\u3067\u3001\u3069\u306e\u3088\u3046\u306a\u30bf\u30b0\u304c\u8a31\u5bb9\u3055\u308c\u308b\u306e\u304b\u306f\u672c\u5bb6\u306ejsoup\u306e\u3068\u3053\u308d\u3092\u898b\u308c\u3070\u308f\u304b\u308b\u3068\u601d\u3044\u307e\u3059\u3002<\/p>\n<p><<a href=\"http:\/\/jsoup.org\/apidocs\/org\/jsoup\/safety\/Whitelist.html\" title=\"jsoup\" target=\"_blank\">\u30ea\u30f3\u30af<\/a>><\/p>\n<p>\u4e0a\u8a18\u306e\u30af\u30e9\u30b9\u3092\u5229\u7528\u3057\u3066\u7121\u52b9\u306aHTML\u304c\u5165\u529b\u3055\u308c\u305f\u5834\u5408\u306b\u30ab\u30c3\u30c8\u3059\u308b\u3088\u3046\u306b\u3057\u3066\u307f\u307e\u3057\u3087\u3046\u3002<\/p>\n<pre class=\"lang:default decode:true \" title=\"\u7121\u52b9\u306aHTML\u3092\u30ab\u30c3\u30c8\" >    public class News\r\n    {\r\n            [DisplayName(\"\u30bf\u30a4\u30c8\u30eb\")]\r\n            [Required(ErrorMessage = \"{0}\u3092\u5165\u529b\u3057\u3066\u304f\u3060\u3055\u3044\u3002\")]\r\n            public object Title { get; set; }\r\n\r\n            [AllowHtml]\r\n            [DisplayName(\"\u5185\u5bb9\")]\r\n            [Required(ErrorMessage = \"{0}\u3092\u5165\u529b\u3057\u3066\u304f\u3060\u3055\u3044\u3002\")]\r\n            public object Detail { get; set; }\r\n\r\n            [DisplayName(\"\u66f4\u65b0\u65e5\u6642\")]\r\n            [DisplayFormat(DataFormatString = \"{0:yyyy\/MM\/dd}\")]\r\n            [Required(ErrorMessage = \"{0}\u3092\u5165\u529b\u3057\u3066\u304f\u3060\u3055\u3044\u3002\")]\r\n            public DateTime UpdateTime { get; set; }\r\n\r\n\r\n            public void EscapeHtml()\r\n            {\r\n            \tDetail = SecuredHtmlUtility.GetSecuredHtmlFromString(Detail);\r\n            }\r\n    }<\/pre>\n<p>\u3042\u3068\u306f\u4ee5\u4e0b\u306e\u3088\u3046\u306b\u30b3\u30f3\u30c8\u30ed\u30fc\u30e9\u306e\u30a2\u30af\u30b7\u30e7\u30f3\u30e1\u30bd\u30c3\u30c9\u5185\u3067EscapeHtml\u30e1\u30bd\u30c3\u30c9\u3092\u547c\u3073\u51fa\u3057\u3092\u884c\u3048\u3070\u5b8c\u4e86\u3067\u3059\u3002<\/p>\n<pre class=\"lang:default decode:true \" title=\"\u30a2\u30af\u30b7\u30e7\u30f3\u30e1\u30bd\u30c3\u30c9\" >\r\n        [HttpPost]\r\n        public ActionResult InputNews(News inputNews)\r\n        {\r\n            if (ModelState.IsValid)\r\n            {\r\n\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\/\/\u4e0d\u6b63\u306aHTML\u3092\u30ab\u30c3\u30c8\r\n\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000inputNews.EscapeHtml();\r\n\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\u3000\/\/\u7565\r\n            }\r\n\r\n\u3000\u3000\u3000\u3000\u3000\u3000\u3000\/\/\u7565\r\n\t}<\/pre>\n<h3>\u307e\u3068\u3081<\/h3>\n<p>4\u56de\u306b\u5206\u3051\u3066\u30d5\u30a9\u30f3\u30c8\u30b5\u30a4\u30ba\u306a\u3069\u306e\u6307\u5b9a\u304c\u53ef\u80fd\u306a\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u306e\u4f5c\u6210\u3092\u53d6\u308a\u4e0a\u3052\u3066\u304d\u307e\u3057\u305f\u3002<br \/>\n\u307e\u3060\u307e\u3060\u672a\u5b8c\u6210\u306a\u90e8\u5206\u3082\u3042\u308a\u307e\u3059\u306e\u3067\u8272\u3005\u624b\u3092\u52a0\u3048\u3066\u307f\u3066\u304f\u3060\u3055\u3044\u3002<\/p>\n<p><a href=\"http:\/\/168.138.214.208\/?p=32\" title=\"ASP.NET MVC\u3067\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3092\u4f7f\u3046 \u305d\u306e1\">\u305d\u306e1<\/a><br \/>\n<a href=\"http:\/\/168.138.214.208\/?p=47\" title=\"ASP.NET MVC\u3067\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3092\u4f7f\u3046 \u305d\u306e2 \">\u305d\u306e2<\/a><br \/>\n<a href=\"http:\/\/168.138.214.208\/?p=101\" title=\"ASP.NET MVC\u3067\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3092\u4f7f\u3046 \u305d\u306e3 \">\u305d\u306e3<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u306f\u3058\u3081\u306b \u524d\u56de\u307e\u3067\u306bcontenteditable\u5c5e\u6027\u3092\u7528\u3044\u305f\u30c6\u30ad\u30b9\u30c8\u30a8\u30c7\u30a3\u30bf\u3092\u51fa\u529b\u3067\u304d\u308bHTML\u30d8\u30eb\u30d1\u30fc\u306e\u4f5c\u6210\u65b9\u6cd5\u3092\u7d39\u4ecb\u3057\u307e\u3057\u305f\u3002 \u4eca\u56de\u306f\u5b9f\u969b\u306b\u305d\u308c\u306b\u5408\u308f\u305b\u305f\u30b5\u30fc\u30d0\u30fc\u30b5\u30a4\u30c9\u306e\u5b9f\u88c5\u3092\u8aac\u660e\u3057\u307e\u3059\u3002 \u30c7\u30fc &#8230; <\/p>\n","protected":false},"author":1,"featured_media":102,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[5,4,6],"tags":[],"_links":{"self":[{"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/posts\/115"}],"collection":[{"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=115"}],"version-history":[{"count":8,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/posts\/115\/revisions"}],"predecessor-version":[{"id":127,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/posts\/115\/revisions\/127"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=\/wp\/v2\/media\/102"}],"wp:attachment":[{"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=115"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=115"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/nobunobu1717.site\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=115"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}