• • 上一篇    下一篇

基于 LAMP 技术的服务器安全配置方案研究

杨大利%朱一凡%马婧雯   

  • 基金资助:
    国家自然科学基金(60973107)

Research on Server Sercurity Configuration Scheme based on LAMP

YANG Da-li%ZHU Yi-fan%MA Jing-wen   

  • About author:北京信息科技大学计算机学院,北京,100101

摘要: 文章通过实验归纳并整理了基于 LAMP 架构的服务器配置策略,实现了通过在服务器上修改 Apache 配置后,Apache 可根据相关配置信息使登录者根据域名访问不同站点的方法,同时也实现了拒绝 IP 地址访问和服务器处理错误返回结果的“伪造”方法。另外文章还总结并研究了服务器安全威胁的成因、攻击流程和应对方案。这些方法将提升服务器安全等级,对中小型服务器防御某些恶意攻击起到重要作用。

Abstract: This article summarize and organize some server policies under the framework of LAMP according to some real experiments. The article realize function of making different user who uses different URL visit different websites erected on one server by setting Apache configuration files. Besides, this method can also be used to deny users who use IP address to visit this website and falsify server error. And this article discuss a way to collect and classify logs to different files. In addition, the article discusses the causes, process and resolution.The method discussed above will be used to prevent server from malicious attacks.