Intelligentedu intelligentedu
Free Computer and IT Books 免费的电脑及资讯科技书籍
Translate to EnglishÜbersetzen Sie zum Deutsch/GermanTraduzca al Español/SpanishTraduisez au Français/FrenchTraduca ad Italiano/ItalianTraduza ao Português/Portuguese日本語に翻訳しなさい /Japanese
한국어에게 번역하십시오/Korean中文翻译/Chinese Simplified中文翻译/Chinese Traditionalترجمة الى العربية/ArabicVertaal aan het Nederlands/DutchΜεταφράστε στα ελληνικά/GreekПереведите к русскому/Russian





Blog Roll: 博客滚动:


Top Links: 顶部链接:

December 9, 2005 2005年12月9日

Free ASP.NET Book: Improving Web Application Security免费asp.net书:提高Web应用程序安全性

Here is a free 这里是一个自由 ASP.NET asp.net book in html format, that you can also download as a pdf ebook. 本书的HTML格式,您也可以下载为PDF电子书。 It gives you a solid foundation for designing, building, and configuring secure 它可以让您了坚实的基础设计,建设和配置安全 ASP.NET asp.net Web applications. Web应用程序。 Whether you have existing applications or are building new ones, you can apply the guidance to help you make sure that your Web applications are hack-resilient. 您是否有现有的应用或正在建设新的定居点,您可以申请为指导,以帮助您确保您的Web应用程序是哈克-弹性。 It will help you build hack-resilient applications. 它可以帮助你建立哈克弹性应用。 A hack-resilient application is one that reduces the likelihood of a successful attack and mitigates the extent of damage if an attack occurs. 1哈克弹性的应用是一个减少的可能性,成功的攻击和减轻损害程度,如果一攻击发生。 A hack-resilient application resides on a secure host (server) in a secure network and is developed using secure design and development guidelines. 1哈克弹性的应用驻留在一个安全的主机(服务器)在一个安全的网络和开发使用安全的设计与开发的指导方针。

This book contains guidelines for architecting, designing, building, reviewing, and configuring secure to build hack resilient 这本书包含的指引架构,设计,建设,检讨,并设定安全建设哈克弹性 ASP.NET asp.net Web applications across the application tiers, technology, and servers. Web应用程序的整个应用层,技术,和服务器。 Topics include Threats and Countermeasures; Threat Modeling; security review for architecture, design, code and deployment; Hosting web applications; CAS; securing web, application and database servers; 课题包括威胁和对策;威胁建模;安全审查建筑,设计,代码和部署;托管的Web应用程序;中国科学院;确保网络,应用程序和数据库服务器; ASP.NET asp.net , Enterprise Services (COM+), Web Services, Remoting, and data access (including ,企业服务( COM + ) , Web服务,远程访问,和数据访问(包括 ADO.NET ado.net and SQL Server). 和SQL Server ) 。


Free 自由的 ASP.NET asp.net Book: Improving Web Application Security: Threats and Countermeasures 预订:改善Web应用程序安全:威胁与对策


Download Improving Web Application Security from the 下载改善Web应用程序安全性,从 MS.com ms.com Download Center in .pdf format 下载中心。 PDF格式
Download Size: 6870 KB 下载大小: 6870或


Part I, Introduction to Threats and Countermeasures 第一部分引言的威胁及对策

This part identifies and illustrates the various threats facing the network, host, and application layers. 这部分的识别和说明的各种威胁所面临的网络,主机及应用层。 By using the threat modeling process, you can identify the threats that are relevant to your application. 使用威胁建模过程中,您可以识别的威胁,有关您的申请。 This sets the stage for identifying effective countermeasures. 这集的阶段,确定有效的对策。 This part includes: 这部分包括:


Part II, Designing Secure Web Applications 第二部分,设计安全的Web应用程序

This part provides the guidance you need to design your Web applications securely. 这部分提供了指导,你需要设计您的Web应用程序安全。 Even if you have an existing application, you should review this section and then revisit the concepts, principles, and techniques that you used during your application design. 甚至如果你有一个现存的应用,你应该检讨这部分,然后重新概念,原则和工艺,使用您在您的应用程序的设计。 This part includes: 这部分包括:


Part III, Building Secure Web Applications 第三部分,构建安全Web应用程序

This part helps you to apply the secure design practices and principles covered in the previous part to create a solid and secure implementation. 这部分可以帮助您申请的安全设计的做法和原则涵盖在先前的部分,以创造一个坚实和安全的执行。 You'll learn defensive coding techniques that make your code and application resilient to attack. 您将了解防御性编码技术,使您的代码及应用弹性的攻击。 Chapter 6 presents an overview of the .NET Framework security landscape so that you are aware of the numerous defensive options and tools that are at your disposal. 第6章介绍了概述。 NET Framework安全性景观,使大家都知道的许多防御性的选择和工具,是在您的处置。 Part III includes: 第三部分包括:


Part IV, Securing Your Network, Host and Application 第四部分,确保您的网络,主机及应用

This part shows you how to apply security configuration settings to secure the interrelated network, host, and application levels. 这部分将告诉您如何应用安全配置设置,以确保相互关联的网络,主机及应用的水平。 Rather than applying security randomly, you'll learn the reasons for the security recommendations. 而非套用安全性,随机,你将学到的理由是为安全的建议。 Part IV includes: 第四部分包括:


Part V: Assessing Your Security第五部分:评估您的安全

This part provides you with the tools you need to evaluate the success of your security efforts. 这部分提供您所需的工具,以评估的成功您的安全努力。 It shows you how to evaluate your code and design and also how to review your deployed application, to identify potential vulnerabilities: 它告诉您如何评价您的代码和设计以及如何审查您的部署应用,以找出潜在的弱点:


Checklists 清单

This section contains printable, task-based checklists, which are printable quick-reference sheets to help you turn information into action. 本节包含打印,基于任务的清单,这是打印快速参考表,以帮助您把信息转化为行动。 This section includes the following checklists: 本节包括以下清单:


How To Articles How To文章

This section contains How To articles, which provide step-by-step procedures for key tasks. 本节包含如何的文章,提供按部就班的程序,重点任务。 This section includes the following articles: 本节包含以下条款:

Popularity: 15% [人气: 15 % [ ? ] ]

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages. 分享和享受: 这些图标链接到社会书签网站,读者可以分享和发现新的网页。
  • blogmarks
  • del.icio.us
  • Furl
  • Reddit
  • Shadows
  • YahooMyWeb
  • StumbleUpon
  • Digg
Related Posts: 相关文章:
  • 20 C++ Books and Ebooks 20 C + +的书籍和电子图书
  • 9 Free .NET and Microsoft Technology Books 9自由。 NET和微软的技术书籍
  • Java and Open Source Gaming Development Book Java和开放源代码的游戏开发图书
  • Free Windows Network Security Book免费的Windows网络安全的图书
  • Free Book on Building Secure Web Applications免费书籍就构建安全Web应用程序

  • Filed under:提起下: Free Computer and IT Books免费的电脑及资讯科技书籍 — computer_teacher @ 11:50 pm -c omputer_teacher@下午1 1时5 0分

    No Comments没有评论 »

    No comments yet.没有评论。

    RSS feed for comments on this post. RSS馈送的评论对这个职位。

    Leave a comment留下意见

    You must be您必须 logged in记录在 to post a comment.张贴评论。