You are here: hacking technology > invades the examination > Content
Hot Articles
Recommend Articles
New Articles
Invasion examination system: Theory and practice
  Add date: 10/10/2008   Publishing date: 10/10/2008   Hits: 1
Total 6 pages, Current page:1, Jump to page:
 
Is connected since the computer by the network way starts, the network security becomes a major issue, along with the INTERNET development, safety system's request also grows day by day, one of its requests invades the examination system.

  This article is for the purpose of introducing that several kind of common invasion examination system and theory and practice, what needs to point out that this article is an introductive article merely, even if I have recommended many possible systems, before you believe its reliability, should better thorough research they. (NND, died bothersomely I, must knock 4 characters, I will be later called ID. The invasion examination system is IDS: -))

  First, anything invades the examination.

  The invasion examination is refers to the surveillance or in the possible situation, the impediment invasion or attempts to control your system or network resource that kind diligently.

  In brief, its working is this: You have a machine, is connected in the network, perhaps was by Lian Dao INTERNET on, stemming from the understandable reason, you were also willing for to visit by the authorization establishment from the network your system's permission. For instance, you have by Taiwan connect on INTERNET the WEB server, is willing to let the customer, the staff member and the latent customer may visit saves on the WEB server's page.

  However, you do not want these staff member, the customer or other third party visit system without authorization without authorization. For instance, you are not willing the homepage designers' personnel who hires besides the company to be possible to revise store up on machine's page. One of typical procedures is uses the firewall or some kind of authentication system prevents the visit without authorization.

  But, in some situations, the simple use firewall or the authentication system may also break through. The invasion examination by plants the technology like this, it will attempt to the connection without authorization to make the response, even may resist by the part possible invasion.

  Second, why can use ID?

  The following gave has used ID the reason:

  (1) you need to protect your data security and the system, but the fact is under present's INTERNET environment, if you use the ordinary password and the file protection way merely, you are impossible forever to guarantee your data and system's security.

  (2) regarding the protection data, does not have anything to be more important than system's security, wanted such to be connected including the above yours machine INTETNET not to do any protection, even the manager password did not suppose, counted on that this machine is well, that will be simply approaches in the wishful thinking. Similarly, system to core document or authorized database (for instance NT SAM and UNIX /ETC/PASSWORD or /ETC/SHADOW) the protection is also very important.

  (3), in connects INTERNET through the local area network under the environment, will use the firewall or other protective measures frequently, if under the NT environment, if opened the file sharing, or will permit TELNET, this machine on a need better protection, for instance (will belong to TCP/UDP) in the firewall to 137-139 ports, SMB under the agreement NT file sharing will limit, uses SSH to substitute for UNIX under the environment the TELNET connection.

 
Other pages: : 1 * 2 * 3 * 4 * 5 * 6 * Next>>
Prev:php.ini explains in detail

Comment:

Category: Home > invades the examination