On 23 Jan 1998 06:29:12 GMT, htsao.bbs@bbs.accsoft.com.au (Phanton)
wrote:
> : 在網頁上要過濾使用者,應該如何做呢??
> Many designers use designing passwords to avoid those.
> Just like membership, clients registrar first, then assign password.
> General speaking, it's not a economic way to do that. Anyway, that's
> the most common way.
Just do some small correction: use 當 "使用" 時是及物動詞. then 後
的主詞不是 client, 所以不能省略. 至於 typo 在此就不說了. "Generally"
speaking, it's not "an" economic way....
事實上 "應該" 沒有比 password 更經濟的做法了, 真的不要給人家用, 最
簡單的辦法就是關站 (可參見前面十二個大鎖的 linux). 至於其他的過濾法,
小弟提出幾個, 還請前輩們不吝指教:
1. 搭配 tcp wrapper 及 identd, 限制來源 ip address 及遠端帳號名稱.
2. 加個 encryption, client 端要有 key 才能讀. 但缺點是 key 可以複製.
3. 再完整一點, 便是利用 CA 的相關工具來做 access control.
--
向各位前輩 say sorry, 錯把這兒當英文版.
以為是遠方的高人....
--
Knight Feng, knight@cs.nthu.edu.tw
Graphics Lab., Department of Computer Science,
National Tsing-Hua University, Taiwan, R.O.C.