Solved

Best way to use javascript to pass one value to Ihttphandler

Posted on 2013-12-12
12
272 Views
Last Modified: 2013-12-17
I want to create a javascript to use on another site that will pass one single ID field to a second site's Ihttphandler.

I have tried this:
      $.ajax({
         url: passUrl,
         type: 'POST',
         contentType: 'application/x-www-form-urlencoded; charset=UTF-8',
         data: "ORDER_NO",
         success: function (result) {
            return false;
         }
      });

Open in new window


and this:

      $.getJSON(passUrl + "?OrderNumber=" + "ORDER_NO", function (data) {
      });

Open in new window


But both fail when using Internet Explorer. Any other suggestions I can try? I'm asking in this forum because I'd like to get the perspective of an ASP.NET developer, not a javascript developer.

thanks.
0
Comment
Question by:BobCSD
  • 7
  • 4
12 Comments
 
LVL 7

Expert Comment

by:cstsang
Comment Utility
Just a wild guess:
$.ajax({
         url: passUrl,
         type: 'POST',
         contentType: 'application/x-www-form-urlencoded; charset=UTF-8',
         data: "OrderNumber=ORDER_NO",
         success: function (result) {
            return false;
         }
      });

Open in new window

0
 
LVL 28

Accepted Solution

by:
sammySeltzer earned 500 total points
Comment Utility
Hi,

I am pretty new to ajax myself but from what I have learned so far, when you say another site's httpHandler, do you mean that your ajax is on one domain and the other site is another domain?

If so, ajax does not allow going across domain.

For instance, if your ajax is on http://www.domain1.com/something and the other site is http://www.domain2.com/something, then it won't work due to same origin policy.

I dealt with this situation recently and finally got it resolved.

If my assumption is wrong, then you can try something:


      $.ajax({
         url: passUrl,
         type: 'POST',
         contentType: 'application/x-www-form-urlencoded; charset=UTF-8',
         data: "ORDER_NO",
         success: function (result) {
         location = "pagefromtheOtherSite.aspx?ordernumber=" + ORDER_NO;
            return false;
         }
      });

Open in new window

0
 
LVL 1

Author Comment

by:BobCSD
Comment Utility
Cstsang,

On the retrieval end of the query I could retrieve it either way as a query string parameter:
      context.Response.ContentType = "text/plain"
      Dim param = context.Request.Params("OrderNumber")
 
or as an InputStream:
            Dim json As String = ""
            Using reader = New StreamReader(context.Request.InputStream)
               json = reader.ReadToEnd()
            End Using

So both your way and mine have been tried and work in Chrome, but not in IE since last week.
0
 
LVL 1

Author Comment

by:BobCSD
Comment Utility
sammySeltzer,

>>ajax does not allow going across domain.

This all worked last week and had been working for months until MS did the latest update, so I don't know what happened between now and then. Unless the ecommerce site made changes and broke it, which they are saying they did not.

Plus, this method works great with  Chrome and Firefox, just fails on version IE8, IE10, and IE11. (I didn't try IE9.) All which worked last week.

>>I dealt with this situation recently and finally got it resolved.

How did you resolve it?

thanks.
0
 
LVL 1

Author Comment

by:BobCSD
Comment Utility
I just tried jQuery.post and it fails too. Is that ajax also:

      var data = {
         "OrderNumber": "ORDER_NO"
      };

      jQuery.post(passUrl, data);
0
 
LVL 28

Expert Comment

by:sammySeltzer
Comment Utility
Bob,

If this used to work for you, then it seems like my situation is different from yours.

In my case, which was clearly a case of cross-domain scripting issue, I had to write a proxy Server (asp) to point to the location the ajax was trying to reach and then my ajax points to the proxy to get data and everybody was happy.

But as I stated, if yours used to work before, cross-domain scripting is not your issue *UNLESS* the old server has cross-domain policy in place that allows for cross-domain scripting but has not been ported to the new one.
0
Top 6 Sources for Identifying Threat Actor TTPs

Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

 
LVL 1

Author Comment

by:BobCSD
Comment Utility
I used the MS debugger in IE to see what I could see. I got error:
xmlhttprequest required cross origin resource sharing (cors)

I am going to try adding this to my iHttphandler:

 context.Response.AppendHeader("Access-Control-Allow-Methods", "POST")

I'll let you know how it goes.
0
 
LVL 1

Author Comment

by:BobCSD
Comment Utility
Sammy,

Yeah, I don't know what changed from last week to this week. Something on some server. We host through Rackspace, so I don't know if they turned something off.

I'm going to try the above thing I said and let everyone know.

thanks.
0
 
LVL 28

Expert Comment

by:sammySeltzer
Comment Utility
Yep, so there is same origin /same domain restriction I talked about initially.

I would start by trying to determine, as I indicated, if there is a cross-origin or cross-domain policy in place in old server that should also be in place in the new server.

Some people work around this by turning it off on browser but then this can only be done on firefox as I understand it.
0
 
LVL 1

Author Comment

by:BobCSD
Comment Utility
I don't recall saying anything about old or new server. There is and always has been only the one server. It just stopped working last week.

Adding this still fails:
context.Response.AppendHeader("Access-Control-Allow-Methods", "POST")


I also did check my web.config and found that I already have this.

      <!--allows cross domain cross site script postings from ecommerce
      http://enable-cors.org/server_iis7.html
      -->
      <httpProtocol>
         <customHeaders>
            <add name="Access-Control-Allow-Origin" value="*" />
            <add name="Access-Control-Allow-Headers" value="Origin, X-Requested-With, Content-Type, Accept" />
         </customHeaders>
      </httpProtocol>

Open in new window


Sigh. Still going.
0
 
LVL 28

Expert Comment

by:sammySeltzer
Comment Utility
Sorry, I mistook this statement:

on another site that

to mean another server but the concept is still same though.

http://domain1/something

is different from http://domain2/something and result to good old cross-scripting error but there are more experienced experts on this than me.

I am just speaking of my own experience.
0
 
LVL 1

Author Comment

by:BobCSD
Comment Utility
Thanks!
0

Featured Post

Highfive + Dolby Voice = No More Audio Complaints!

Poor audio quality is one of the top reasons people don’t use video conferencing. Get the crispest, clearest audio powered by Dolby Voice in every meeting. Highfive and Dolby Voice deliver the best video conferencing and audio experience for every meeting and every room.

Join & Write a Comment

Problem Hi all,    While many today have fast Internet connection, there are many still who do not, or are connecting through devices with a slower connect, so light web pages and fast load times are still popular.    If your ASP.NET page …
More often than not, we developers are confronted with a need: a need to make some kind of magic happen via code. Whether it is for a client, for the boss, or for our own personal projects, the need must be satisfied. Most of the time, the Framework…
Internet Business Fax to Email Made Easy - With eFax Corporate (http://www.enterprise.efax.com), you'll receive a dedicated online fax number, which is used the same way as a typical analog fax number. You'll receive secure faxes in your email, fr…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

9 Experts available now in Live!

Get 1:1 Help Now