You are here: hacking technology > network management > Content
Hot Articles
Recommend Articles
New Articles
Reduces the server the possible method which overflows
  Add date: 10/08/2008   Publishing date: 10/08/2008   Hits: 3
Total 6 pages, Current page:1, Jump to page:
 
The overflow is the mistake which time the procedure designer design's insufficiency brings, the overflow is also is the operating system, the application software forever pain. Attacks repeatedly in the hacker today which, the system crack emerges one after another incessantly, anybody cannot guarantee that the operating system system, the application procedure is not overflowed. Since the overflow is inevitably, and is also low using the overflow attack's threshold, has certain computer foundation people to be possible to complete an overflow using the tool. This way, the computer system is in momentarily in the danger which overflows, specially shoulders the heavy responsibility the server, if is overflowed seeps that consequence is been inconceivable. We cannot sit waiting for death, do for the network management personnel, should rain silk Liao not complete the guard work, the possibility which overflows is fallen lowly to the server.
  An anything is the overflow:
  The overflow is the hacker uses operating system's crack, has developed one kind of procedure specially, after adding the corresponding parameter movement, may obtain your computer to have the manager qualifications domination, you the thing which can move on your computer he may achieve completely, was equal to that your computer was his.
  How do two servers overflow should against:
  1st, must have the uneven patch:
  The completely biggest possibility fires off system's crack patch; The MicrosoftWindowsServer series's server system may renew the service to open automatically, then lets the server in some time section which assigns connect Microsoft the Update website to carry on the patch automatically the renewal. If the server has for safety forbidden to public network exterior connection, may use Microsoft the WSUS service the net to carry on the promotion.
  2nd, service minimum:
  The least services were equal to that the biggest security, stops the system service which as well as the application procedure all do not need, maximum limit falls the bottom server to attack the coefficient. Before for instance, the time period NDS overflow, caused many servers to hang. Actually if a WEB kind of server does not have usefully to the DNS service time, may stop greatly the DNS service, such DNS overflow did not constitute to your server any threatens.
  3rd, port filtration:
  Starts the TCP/IP port's filtration, only opens server commonly used TCP like 21, 80, 25, 110, 3389 and so on ports; If the safety requirements rank high spot may the UDP port closure, if after certainly like this, the flaw was like exterior is not continually convenient on the server has connected, here suggested that everybody sealed UDP with IPSec. Only permits the TCP agreement, the UDP agreement as well as the RDP agreement in agreement screening and so on essential uses the agreement then; Other useless is not open.
  4th, system firewall:
  Begins using the IPSec strategy, carries on the safe authentication for server's connection, adds on the double insurance to the server. Seals some dangers the port, such as: 135 145 139 445 as well as the UDP foreign connection and so on, as well as to reads through carries on the encryption with only with to have trusting relationship IP or the network carries on communication and so on. Forbids UDP through IPSec or not the commonly used TCP port's foreign visit may very effectively against bounce class wooden horse.

 
Other pages: : 1 * 2 * 3 * 4 * 5 * 6 * Next>>
Prev:How teaches you to fix the wireless local area network router ARP attack breakdown Next:Hacker Web attack ten big resistance method

Comment:

Category: Home > network management