Defending against Web site attacks, choosing a good server is critical

Source: Internet
Author: User

Web Server protection is undoubtedly a hot topic. With the development of technology, people expect more and more convenience, and server Web application becomes the carrier of mainstream business system. The value of data stored on the web in a business-critical system has attracted the attention of attackers, and online vulnerabilities inWeb vulnerabilities and attacks have lowered the threshold for attacks and made attacks blind and random. such as the use of googlehacking principle of bulk search and application of known vulnerabilities, as well as SQL annotations and hanging horses. But for important Web applications, such as operators or financial departments, it's always interesting for hackers to keep track of them.

 

Site suffered from DDoS, CC attacks generally show: The site is a serious switch, access to the site can not open, or open the prompt "Server unavailable", the situation is still the same after the refresh, the server remote difficulty, remote connection desktop is very card, or Remote Desktop into the black screen. Some users can barely connect to the remote Desktop, but the operation is difficult, the CPU is 100%, the memory occupancy rate is also high, the server is in a state of paralysis.


if traditional "big and safe" security products can withstand most of the attacks from tools, then targeted attacks are powerless. and high-anti- CDN is the demand for high-end professional security products, which is the inevitable trend of market demand.

For this reason the sharp network Yang Jia (Q2880968324) summed up a set of effective defense plan for everyone to refer to the use.


The basic method of CDN defense against DDoS .

 

1. Ensure the security of the server system

 

First, ensure that the server software does not have any vulnerabilities to prevent attackers from invading. Make sure the server is using the latest system with security patches. Remove unused services on the server and close unused ports. For servers running on the site, make sure they are hitting the latest patches, with no security holes.

 

2, hide the server real IP

 

Server front-end plus CDN transfer (Waf shield machine, Web site guard, accelerated music, domain forwarding, etc.), if the funds are rich, can buy high shield, used to hide the server's real IP , the domain name is resolved using the CDN IP , and all the resolved subdomains use the CDN IP address. Also, other domain names deployed on the server cannot use real IP parsing, all of which are addressed using a CDN .

 

In addition, in order to prevent the server from sending information to leak IP, the most common is that the server does not use the Send mail function, if you want to send mail, can be sent through a third-party agent (such as Sendcloud), so IP is the proxy IP.

 

in short, as long as the server does not disclose the real IP, Large-volume DDOS attacks can not pass through the CDN shield wall. CDN Defense is required for users to steadily develop their business. High-efficiency, stable,7x24 -hour online protection, providing customers with the perfect solution.

Defending against Web site attacks, choosing a good server is critical

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.