|
| 网站首页 | 菜鸟学堂 | 电脑故障 | 电脑系统 | 图像设计 | 工具下载 | 图片中心 | 电脑入门 | 菜鸟入门 | 电脑问题 | 硬件知识 | BOIS设置 | 网站更新 |
![]() |
| 您现在的位置: 电脑知识 爱好者 >> 菜鸟学堂 >> 服务器配置 >> 正文 |
电脑知识爱好者 www.cfaninfo.com 帮您成为电脑知识高手为您提供技术信息
|
|||||
|
★★★ 作者:佚名 文章来源:互联网整理 点击数: 更新时间:2008-8-29 7:04:13 |
|
1、合理的配置权限,每个站点均配置独立的internet来宾帐号,限制internet 来宾帐号的访问权限,只允许其可以读取和执行运行网站所需要的程序,只对甲方站点的网站目录有读取和写入权限,禁止访问其它目录,并限制其执行危险的命令,这样就算黑客有办法上传了木马程序到甲方网站目录,也无法执行,更不会对系统造成危害。 3、对网站的代码进行检查,检查是否被黑客放置了网页木马和ASP木马、网站代码中是否有后门程序。 5、对网站代码安全性进行检查,检查是否存在SQL注入漏洞、上传文件漏洞等常见的危害站点安全的漏洞。 【以下内容为电脑知识网站提供英文翻译,未经授权请勿转载】 1, a reasonable allocation of authority, independent of each site are targeting the internet guests account, the account limit internet access to guests, only to allow its implementation and operation can be read by the need to site the procedure only on the website of Party A directory of sites have Read and write access, prohibit access to other directories, and to limit the risk of the implementation of its orders, so even if a hacker to upload a Trojan horse to Party A web directory, and can not be implemented, the system will not cause harm.
2, lower SQL database, SERV-U FTP software applications such as the operation of authority, MSSQL database to delete unnecessary and dangerous storage process, hackers use loopholes to prevent further invasion and to upgrade the competence and, through efficient set up to prevent unknown Overflow attacks. 3, the code of conduct site inspections to check whether the hackers were placed page Trojans and ASP Trojans, whether there is a site code in the backdoor. 4, the server operating system log analysis, check whether the system was compromised, hackers see if the Trojans and the installation of the system to do what changes. 5, the safety code of conduct site inspections to check whether there SQL injection loopholes, upload files and other common hazards loopholes site security loopholes. (PC235.COM Editor: the founding of the PRC) 6, to bear the latest server operating system patches, and installation of a reasonable allocation of common software applications (such as firewalls, antivirus software, databases, etc.) and server software updates for security, stability, good compatibility version. 7, the server operating system for rational allocation and optimization, cancelled out unnecessary system components, Tingdiao the risk of unnecessary services, disable dangerous port, by running the minimum services to achieve maximum security. 8, the common applications of information and tips on port services, to hide and forgery, use of scanning tools to prevent hackers to access server information. Note: The above item only safeguard against windows server operating system platforms. More services involved the installation of software, copyright issues by the client to resolve. Site code only to customers involved in the security code part of the preparation and making changes, not other sites, some of the code revision and preparation.
|
|
|
Copyright © 2007-2008 by www.cfaninfo.com All Rights Reserved
版权所有:电脑知识 爱好者 公司地址:重庆市沙坪坝劳动路坪桥29号 邮 编:400030 网站管理:重庆新鑫科技信息化司 电 话:13752966523 媒体合作、网站建议请联系我们 |