透過您的圖書館登入
IP:18.227.72.114
  • 學位論文

安全的網頁伺服系統設計

A Secured Web Server System Design

指導教授 : 孫郁興
若您是本文的作者,可授權文章由華藝線上圖書館中協助推廣。

摘要


一般網頁上下傳都是以作業系統經由電腦的RJ-45進出,若系統受到駭客程式控制,則網頁內容易被更換。駭客易利用作業系統的漏洞,經由RJ-45外流使用者資料或執行遠端監控。資料庫隱碼的漏洞可輸入特定隱碼命令來攻擊資料庫。 防治網頁內容被更換的釜底抽薪之法,可使用純嵌入式無作業系統的架構,達到防治網頁被置換的缺陷。系統架構若完全斷離PC網路RJ-45的進出口,則可完全截斷駭客遠端遙控的路徑。本文針對HTTP與HTTPS協定提出強化的Text Index IP CBC(TIIC)演算法則,此法則可使HTTP與HTTPS在更加安全的網路環境下運作。運用監控過濾隱碼的作為,將影響資料庫安全的特殊隱碼過濾掉,則使資料庫隱碼攻擊手法失效,進而維護資料庫的安全。 基於上述防禦的理念,初步驗證本論文所提出[防治網頁內容被更換][截斷駭客遠端遙控的路徑] [TIIC演算法則] [運用監控過濾隱碼的作為]的安全網頁伺服器架構設計是可實現的。

並列摘要


Based on the general concept, the Web up load and down load is via the traditional computer RJ-45 interface. If the system is controlled and injected by hacker then the Web page is very easy to be changed by Hacker. The hole leakage of the general operation system the data string can be easily remote control and monitored by RJ-45 interface. Prevent the web page contents to be changed by Hacker, in this paper, we propose a solution to strictly using the embedded system with the non operation system environment to conduct. This proposed structure can prevent the web page damaged by Hacker underling unkonw defect methods. Rearranged the path of the internet packet go through the intermediate embedded structure which cut out the regular PC computer RJ-45 path. This paper proposed a novel Text Index IP CBC (TIIC) method to protect the HTTP and HTTPS protocols, this new scheme allows HTTP and HTTPS to operate in a more secure internet network environment. This non regular method may cut off the Hacker remote control and monitor. Based on the proposed protect scheme and structure design, we are successfully verified this new structure design and worked at all.

參考文獻


(1) 硬底子達人網: http://www.17inda.com/html/3/article-211.html
(2) 北京瑞星資訊技術官方網站:http://it.rising.com.cn/info/2011-09-29/10221.html
(3) 微軟漏洞
(4) 博飛訊科技:http://www.epoch.com.tw/new%20hardware/PC/techart1.htm
(5) iThome:http://www.ithome.com.tw/itadm/article.php?c=51851

延伸閱讀