Web site by black generally refers to the site is injected Trojan or black chain, inject a variety of methods, there are SQL injection, there are Web site permissions injected and so on. The author takes IIS as an example to explain how to prevent the Web site from being hacked by some measures.
1, open the IIS Information Services Manager, under the "Web site" option to set the Site Directory--Properties, the site directory data and upload set to not write, execute permissions set to None (see Figure 2).
2, the IIS Web site in the home directory of "script resource Access", "Write", "directory Browsing" and record access options such as the selection of removal, right-click the site Directory---properties into the interface, as shown in the following figure:
Figure 1
3. Set the "Execute permission" of all directory files on the website to pure script (except data and upload files), as shown in the following figure:
Figure 2
4, through the above simple settings that complete the site permissions of the security settings, we can through the http://webscan.360.cn to detect the following:
Safety test Results
Note: This applies to Discuz, Phpwind, Dedecms, and most other open source programs as long as you are using a Web site created by IIS.
This article original from http://www.45fan.com/a/luyou/590.html, reprint should indicate the source!