29.01.2015 Views

to get the file

to get the file

to get the file

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Why is web security important<br />

Application Layer<br />

Database Layer<br />

Your security “perimeter” has huge<br />

holes at <strong>the</strong> application layer<br />

HTTP<br />

request<br />

(cleartext or<br />

SSL)<br />

Cus<strong>to</strong>m Developed<br />

Application Code<br />

Databases<br />

OS/Platform layer<br />

Network Layer<br />

HTTP reply<br />

(HTML, Javascript,<br />

VBscript, etc)<br />

Firewall<br />

•Windows<br />

•Unix<br />

App Server<br />

Web Server<br />

Hardened OS<br />

•Apache<br />

•IIS…<br />

Firewall<br />

Database<br />

connection:<br />

•ADO,<br />

•JDBC, etc.<br />

We can‟t protect and detect application layer‟s attack with <strong>the</strong> traditional safeguard of<br />

network layer and OS layer (Firewall, ACL, OS hardening, SSL)<br />

image source: www.owasp.org<br />

8

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!