精華區beta NetSecurity 關於我們 聯絡資訊
On 23 Jan 1998 06:29:12 GMT, htsao.bbs@bbs.accsoft.com.au (Phanton) wrote: > : 在網頁上要過濾使用者,應該如何做呢?? > Many designers use designing passwords to avoid those. > Just like membership, clients registrar first, then assign password. > General speaking, it's not a economic way to do that. Anyway, that's > the most common way. Just do some small correction: use 當 "使用" 時是及物動詞. then 後 的主詞不是 client, 所以不能省略. 至於 typo 在此就不說了. "Generally" speaking, it's not "an" economic way.... 事實上 "應該" 沒有比 password 更經濟的做法了, 真的不要給人家用, 最 簡單的辦法就是關站 (可參見前面十二個大鎖的 linux). 至於其他的過濾法, 小弟提出幾個, 還請前輩們不吝指教: 1. 搭配 tcp wrapper 及 identd, 限制來源 ip address 及遠端帳號名稱. 2. 加個 encryption, client 端要有 key 才能讀. 但缺點是 key 可以複製. 3. 再完整一點, 便是利用 CA 的相關工具來做 access control. -- 向各位前輩 say sorry, 錯把這兒當英文版. 以為是遠方的高人.... -- Knight Feng, knight@cs.nthu.edu.tw Graphics Lab., Department of Computer Science, National Tsing-Hua University, Taiwan, R.O.C.