原创 SqlParameter 事务 批量数据插入

时间:2023-03-09 20:03:53
原创 SqlParameter 事务 批量数据插入

不错,很好,以后防注入批量事务提交虽然麻烦点研究了几个小时,但不会是问题了

  SqlCommand cmd;
HelpSqlServer helps = new HelpSqlServer();
//定义SqlParameter数组
SqlParameter[] param = new SqlParameter[]; protected void Page_Load(object sender, EventArgs e)
{
var strsql = "";
for (int i = ; i < ; i++)
{
strsql += "insert into Questions(PID) values";
strsql += "(@PID" + i + ");"; param[i] = new SqlParameter("@PID" + i + "", SqlDbType.UniqueIdentifier);
param[i].Value = Guid.NewGuid(); } using (SqlConnection conn = new SqlConnection(HelpSqlServer.ConnectionString))
{
cmd = new SqlCommand(strsql, conn); conn.Open();
SqlTransaction transaction = conn.BeginTransaction(); cmd.Transaction = transaction;
foreach (SqlParameter para in param)
{
cmd.Parameters.Add(para);
} try
{
cmd.ExecuteNonQuery();
transaction.Commit();
}
catch
{
transaction.Rollback();
}
} }