Create successful ePaper yourself
Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.
Why is web security important<br />
Application Layer<br />
Database Layer<br />
Your security “perimeter” has huge<br />
holes at <strong>the</strong> application layer<br />
HTTP<br />
request<br />
(cleartext or<br />
SSL)<br />
Cus<strong>to</strong>m Developed<br />
Application Code<br />
Databases<br />
OS/Platform layer<br />
Network Layer<br />
HTTP reply<br />
(HTML, Javascript,<br />
VBscript, etc)<br />
Firewall<br />
•Windows<br />
•Unix<br />
App Server<br />
Web Server<br />
Hardened OS<br />
•Apache<br />
•IIS…<br />
Firewall<br />
Database<br />
connection:<br />
•ADO,<br />
•JDBC, etc.<br />
We can‟t protect and detect application layer‟s attack with <strong>the</strong> traditional safeguard of<br />
network layer and OS layer (Firewall, ACL, OS hardening, SSL)<br />
image source: www.owasp.org<br />
8