论文部分内容阅读
内网应用安全以及服务器的安全一直是众多中小企业网络管理员所关心的话题,大多数企业服务器上都会运行企业网站,不管是ASP类站点还是PHP类站点,不管是Windows 2000 server还是windows2003,也不管是基于MYSQL的数据库还是access又或是SQL server数据库,我们都可能遇到最为头疼的利用数据库及动态页面语言漏洞而采取的注入攻击。每当出现注入攻击后我们都无法快速定位到底是哪个语句哪条指令出现了问题,注入是不可避免的但是如何才能够做到在第一时间发现漏洞弥补漏洞呢?下面笔者就从个人实际应用出发为各位IT168安全频道的读者介绍如何在服务器上搭建一套防注入系统。
Intranet application security and server security has been the topic of concern for many SME network administrators, most corporate servers will run the corporate website, whether ASP site or PHP site, whether it is Windows 2000 server or windows2003, also Whether it is based on the MYSQL database or access or SQL server database, we may encounter the most headache to take advantage of database and dynamic page language vulnerability to take the injection attacks. Whenever there is an injection attack, we can not quickly locate which statement which instruction has a problem, the injection is inevitable, but how can we be the first time to find vulnerabilities to make up for loopholes? The following from the personal practical application Departure for you IT168 safety channel readers how to set up a server on the anti-injection system.