检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:郑长亮[1] ZHENG Chang-liang(Department of Computer Technology,School of Telecommunications Engineering,Beijing Polytechnic,Beijing 100176)
机构地区:[1]北京电子科技职业学院电信工程学院计算机技术系,北京100176
出 处:《数字技术与应用》2018年第9期187-188,共2页Digital Technology & Application
摘 要:服务器是各项网络服务运行所必须的硬件设备和软件平台,对服务器的安全策略配置能够从全局层面解决整个服务器中的所有web服务的安全问题,既可以节省重复配置的工作量,同时对相似应用的安全策略也避免了重复开发的问题,节省了额外开发的开销;与此同时,这么做还可以集中注意力于核心业务的设计开发,提升系统架构,提高系统开发效率。访问控制技术作为服务器对远程访问自己的用户的首道过滤,从服务器安全的角度来看是非常重要的,也是必不可少的,通过对用户的这次过滤,能够鉴别并防止未授权用户的访问。并通过审计,服务器管理员可以对恶意访问和攻击行为进行进一步的原因探查、责任界定和损失评估,本文重点就以上几个方面进行阐述。The server is the hardware device and software platform necessary for the operation of various network services.The security policy configuration of the server can solve the security problem of all web services in the entire server from a global level,which can save the workload of repeated configuration,and at the same time The application's security strategy also avoids the problem of repetitive development and saves additional development overhead;at the same time,it can focus on the design and development of core business,improve system architecture,and improve system development efficiency.As the first filtering of the server to remotely access its own users,access control technology is very important and necessary from the perspective of server security.Through this filtering of users,it can identify and prevent unauthorized users.access.Through auditing,server administrators can conduct further cause exploration,responsibility definition and loss assessment for malicious access and attack behavior.This article focuses on the above aspects.
关 键 词:数据访问控制 审计技术 授权策略 安全防御 入侵鉴别
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:18.188.100.179