- TalkBack 16 of 30:
- Next »
- « Previous
- Thread View
- Flat View
- Maybe tough but not impossible
-
Prepared statements would help, as would using data access objects which encapsulate and shield all database logic from the developer and the application.
All I'm saying is, there are ways to do enterprise-class computing for the web securely. What definitely not to do is exposing your scripts to the internet, or exposing your webserver to the internet at all. (If you don't understand this, you're probably in the category of the woefully uneducated about basic programming techniques and need to do some studying on network topologies and architectural frameworks and get up to speed with the more advanced programming techniques....)
A setup as you are describing is not used in enterprises. Exposing your cgi-bin to the internet is a very well-known security risk and hosting providers should be aware of these and take measures. Smuggling in code through a clever hack in format strings is still pretty impressive but most of the security holes you mention are well known and dealt with in enterprises.
Many webapps aren't thoroughly tested because of time and money issues. In enterprises this is mandatory.
Besides, who uses Webmin over the internet? I'ld never do that. Only over an intranet or VPN. Just to be on the safe side.
Really, enterprise security is rather good. You wouldn't believe how many hoops you're going through before you're click on a webpage is executed by, say, an airline reservation system or a banking transaction system. There's a reason why these systems generally tend to be slow and expensive. - Posted by: rein8 Posted on: 12/01/05 You are currently: a Guest | Members login | Terms of Use
What do you think?
SponsoredWhite Papers, Webcasts, and Downloads
- Why Isn't Server Virtualization Saving Us More? A Few Small Changes May Dramatically Increase Your Efficiency VMware Companies have rapidly adopted server virtualization over the past few ... Download Now
- The Impact of Virtualization Software on Operating Environments VMware Today's use of virtualization technology allows IT professionals to ... Download Now
- Five Steps to Determine When to Virtualize YourServers VMware Server virtualization isn't just for big companies. Entry-level ... Download Now
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
- Keep Up With The Latest In Document Management with The DocuMentor.
-
Doc delivers the scoop on today's enterprise content management, printer maintenance, and all other issues related to document management. It's the DocuMentor Blog.
- Learn more >>
- The best support in the Linux business
-
If Linux is going to power your mission-critical applications, you'd better have the best support known to business. Novell was rated the top provider of Linux technical support.

- Learn more >>
- Microsoft Dynamics CRM Online - Free Six-Month Trial for Eligible Organizations
-
Microsoft Dynamics CRM Online provides fast online access, simple contact management and better sales performance for a low monthly cost - the best value on the market today.

- Learn more about the free, six-month trial offer>>
-
-
Smart Tech
Expert advice on innovations in healthcare and the green technologies that make it happen.
Find out more
-
Smart Business
Discussion and advice on management issues that revolve around making your world smarter and more useful.
More Smart Advice
-
Smart People
The best and worst moves in the management and strategy trenches.
Learn More







