繁体   English   中英

使用scope_Identity()检索最后插入的ID

[英]Retrieving the last inserted ID using scope_Identity()

我正在尝试使用SCOPE_IDENTITY插入最后一个ID,但出现错误。 我将SQL Server 2012与Visual Studio Express 2013一起使用

这是我的代码

protected void PerformInscription(string sEmail, string sPassword,string sName)
{
    bool buserIdAuthenticated = false;
    string salt = null;
    string passwordHash = pwdManager.GeneratePasswordHash(txtPassword.Text, out salt);

    SqlConnection sqlConnection;
    sqlConnection = new SqlConnection();

    try
    {
        sqlConnection.ConnectionString = sqlDataSource1.ConnectionString;

        string insertStatement = "INSERT INTO [User] "
                                 + "(email, hash, salt, name) "
                                 + "VALUES (@email, @hash, @salt, @name);"
                                 + "SELECT SCOPE_IDENTITY() AS id_user;";

        SqlCommand insertCommand = new SqlCommand(insertStatement, sqlConnection);

        insertCommand.Parameters.Add("@email", SqlDbType.VarChar, 50).Value = sEmail;
        insertCommand.Parameters.Add("@hash", SqlDbType.VarChar, 50).Value = passwordHash;
        insertCommand.Parameters.Add("@salt", SqlDbType.VarChar, 50).Value = salt;
        insertCommand.Parameters.Add("@nom", SqlDbType.VarChar, 50).Value = sName;

        sqlConnection.Open();

        int count = insertCommand.ExecuteNonQuery();

        int User_ID = Convert.ToInt32(insertCommand.Parameters["@id_user"].Value);
        Session["Id_user"] = User_ID;

        insertCommand.Dispose();

        if (count >= 1)
        {
            buserIdAuthenticated = true;                    
            Session["userIdAuthenticated"] = buserIdAuthenticated;
            Response.Redirect("../pages/Welcome.aspx");
        }
    }

    catch (SqlException ex)
    {
        lblMessage.Text = ex.Message;
    }

    finally
    {
        sqlConnection.Close();
    }
  }
}

我想捕获最后一个被定义为自动增量身份的user_id。

这是我得到的错误

System.Data.dll中发生类型'System.IndexOutOfRangeException'的异常,但未在用户代码中处理。

附加信息:此SqlParameterCollection不包含带有ParameterName'@id_user'的SqlParameter。

我决定拆分两个请求。 1个插入和1个选择

    SqlConnection sqlConnection;
    sqlConnection = new SqlConnection();

    try
    {
        sqlConnection.ConnectionString = sqlDataSource1.ConnectionString;

        string insertStatement = "INSERT INTO [User] "
                                 + "(email, hash, salt, name) "
                                 + "VALUES (@email, @hash, @salt, @name)";

        SqlCommand insertCommand = new SqlCommand(insertStatement, sqlConnection);

        insertCommand.Parameters.Add("@email", SqlDbType.VarChar, 50).Value = sEmail;
        insertCommand.Parameters.Add("@hash", SqlDbType.VarChar, 50).Value = passwordHash;
        insertCommand.Parameters.Add("@salt", SqlDbType.VarChar, 50).Value = salt;
        insertCommand.Parameters.Add("@name", SqlDbType.VarChar, 50).Value = sName;

        sqlConnection.Open();

        int count = insertCommand.ExecuteNonQuery();

        insertCommand.Dispose();

        if (count >= 1)
        {
            string selectStatement = "SELECT SCOPE_IDENTITY() AS id_user";
            SqlCommand selectCommand = new SqlCommand(selectStatement, sqlConnection);
            selectCommand.Parameters.Add("@Id_user", SqlDbType.Int, 0, "Id_user");
            int newID = (int)selectCommand.ExecuteScalar();

            int User_ID = Convert.ToInt32(selectCommand.Parameters["@Id_user"].Value);
            Session["Id_user"] = User_ID;

            buserIdAuthenticated = true;                   
            Session["userIdAuthenticated"] = buserIdAuthenticated;
            Response.Redirect("../pages/Bienvenue.aspx");
        }
    }

    catch (SqlException ex)
    {
        lblMessage.Text = ex.Message;
    }

    finally
    {
        sqlConnection.Close();
    }
  }
 }

您不应将查询分为两个查询。 您应该在插入查询中选择/设置结果。

我为您提供了一个示例:

第一种方法是使用select返回单个值

private void Method1()
{
    string sEmail = "test@test.com";
    string passwordHash = "#$@#$@!#@$$@#!#@$!#@$!";
    string salt = "????";
    string sName = "John";

    using (SqlConnection sqlConnection = new SqlConnection(_connectionString))
        try
        {
            sqlConnection.Open();

            string insertStatement = "INSERT INTO [User] "
                                        + "(email, hash, salt, name) "
                                        + "VALUES (@email, @hash, @salt, @name)"

                                        + "SELECT SCOPE_IDENTITY()";

            using (SqlCommand insertCommand = new SqlCommand(insertStatement, sqlConnection))
            {

                insertCommand.Parameters.Add("@email", SqlDbType.VarChar, 50).Value = sEmail;
                insertCommand.Parameters.Add("@hash", SqlDbType.VarChar, 50).Value = passwordHash;
                insertCommand.Parameters.Add("@salt", SqlDbType.VarChar, 50).Value = salt;
                insertCommand.Parameters.Add("@name", SqlDbType.VarChar, 50).Value = sName;


                int userId = Convert.ToInt32(insertCommand.ExecuteScalar());
                Trace.WriteLine("User created with id: " + userId);
            }
        }

        catch (SqlException ex)
        {
            Trace.WriteLine(ex.Message);
            //lblMessage.Text = ex.Message;
        }
}

第二种方法是定义输出参数,这样您就可以返回多个值。

private void Method2()
{
    string sEmail = "test@test.com";
    string passwordHash = "#$@#$@!#@$$@#!#@$!#@$!";
    string salt = "????";
    string sName = "John";

    using (SqlConnection sqlConnection = new SqlConnection(_connectionString))
        try
        {
            sqlConnection.Open();

            string insertStatement = "INSERT INTO [User] "
                                        + "(email, hash, salt, name) "
                                        + "VALUES (@email, @hash, @salt, @name)"

                                        + "SET @user_id = SCOPE_IDENTITY()";

            using (SqlCommand insertCommand = new SqlCommand(insertStatement, sqlConnection))
            {

                insertCommand.Parameters.Add("@email", SqlDbType.VarChar, 50).Value = sEmail;
                insertCommand.Parameters.Add("@hash", SqlDbType.VarChar, 50).Value = passwordHash;
                insertCommand.Parameters.Add("@salt", SqlDbType.VarChar, 50).Value = salt;
                insertCommand.Parameters.Add("@name", SqlDbType.VarChar, 50).Value = sName;

                insertCommand.Parameters.Add("@user_id", SqlDbType.Int).Direction = ParameterDirection.Output;

                insertCommand.ExecuteNonQuery();

                int userId = Convert.ToInt32(insertCommand.Parameters["@user_id"].Value);
                Trace.WriteLine("User created with id: " + userId);
            }
        }

        catch (SqlException ex)
        {
            Trace.WriteLine(ex.Message);
            //lblMessage.Text = ex.Message;
        }
}

最好的办法是,如果查询是静态的,请将这些查询放入存储过程中。 这样可以加快查询速度。

如评论中所述:

string insertStatement = "INSERT INTO [User] "
                                 + "(email, hash, salt, name) "
                                 + "VALUES (@email, @hash, @salt, @name);"
                                 + "SELECT @id_user = SCOPE_IDENTIY();";

应该 :

string insertStatement = "INSERT INTO [User] "
                                 + "(email, hash, salt, name) "
                                 + "VALUES (@email, @hash, @salt, @name);"
                                 + "SELECT SCOPE_IDENTITY() AS id_user;";

查看SCOPE_IDENTIYSCOPE_IDENTITY之间的区别。

并注意对SELECT语句语法的更新。

暂无
暂无

声明:本站的技术帖子网页,遵循CC BY-SA 4.0协议,如果您需要转载,请注明本站网址或者原文地址。任何问题请咨询:yoyou2525@163.com.

 
粤ICP备18138465号  © 2020-2024 STACKOOM.COM