Web Application Security A Project X Course Date: Nov 1 th – 2 nd, 2010 Confidential Material.

Slides:



Advertisements
Similar presentations
Ethical Hacking Introduction. EC-Council Introductions Name Company Affiliation Title / Function Job Responsibility System security related experience.
Advertisements

Presentation: 20 minutes
Presentation: 20 minutes
Course 1561B: Designing a Microsoft ® Windows ® 2000 Directory Services Infrastructure.
SharePoint 2007 Operations Module 1: Introduction.
Case Studies for Projects. Network Audit A brief description of the systems (via fingerprinting, if black box is used) Network perimeter should be described.
Profile-Based Web Intrusion Prevention System by Donovan Thorpe CS526 Fall 2002.
Information Networking Security and Assurance Lab National Chung Cheng University Analysis Console for Intrusion Databases.
Course 1562B: Designing a Microsoft ® Windows ® 2000 Networking Services Infrastructure.
Securing LAMP: Linux, Apache, MySQL and PHP Track 2 Workshop PacNOG 7 July 1, 2010 Pago Pago, American Samoa.
Course 2150A: Designing a Secure Microsoft Windows 2000 Network.
Welcome to the course: Designing and Optimizing Database Solutions with Microsoft® SQL Server® 2008.
Developing Windows® Applications with Microsoft® Visual Studio® 2010
TOPIC 1 – SERVER SIDE APPLICATIONS IFS 234 – SERVER SIDE APPLICATION DEVELOPMENT.
Introduction Name Company Affiliation Title/Function
1 Dr. Fatemeh Ahmadi-Abkenari February Grade Detail Final Exam: 14 Research and Presentation: 6.
Clinic Security and Policy Enforcement in Windows Server 2008.
LINUX Security, Firewalls & Proxies. Course Title Introduction to LINUX Security Models Objectives To understand the concept of system security To understand.
10969A Active Directory® Services with Windows Server® Course 10699A
Course 2072: Administering a Microsoft SQL Server 2000 Database.
Module 0: Introduction Installing and Configuring Windows® 7 Client
Implementing Windows 2000 Clustering. Introduction Name Company Affiliation Title/Function Job Responsibility Clustering and Network Load Balancing Experience.
Data Sources Back End Systems Enterprise Application Integration Data Aggregation Multi- Channel Access Gateway Mobile Middleware EAI Adapters.
Course 2349A: Programming the Microsoft ®.NET Framework with C# (Prerelease)
Course 6420A Fundamentals of Windows Server® 2008 Network and Applications Infrastructure.
Course 6430B Planning for Windows Server® 2008 Servers.
Designing Security for Microsoft® Networks Course 2830B.
Secure Search Engine Ivan Zhou Xinyi Dong. Introduction  The Secure Search Engine project is a search engine that utilizes special modules to test the.
Course 10135A Configuring, Managing, and Troubleshooting Microsoft® Exchange Server 2010.
Course 10233A Designing and Deploying Messaging Solutions with Microsoft® Exchange Server 2010.
Module 7: Firewalls and Port Forwarding 1. Overview Firewall configuration for Web Application Hosting Forwarding necessary ports for Web Application.
CMDB Ticketing Billing Management Systems VIRTUAL MACHINE CLOUDS 12 SQL SERVER 9 PLANS 12 WEBSITE CLOUD 12 MYSQL SERVERS 0 NOTIFICATIONS 0 USER.
Copyright © 2002 Deerfield.com. All Rights Reserved. Deerfield.com Distributor Confidential.
20411B Administering Windows Server® B
Course 2071B: Querying Microsoft ® SQL Server ™ 2000 with Transact-SQL.
Module 6: Managing Client Access. Overview Implementing Client Access Servers Implementing Client Access Features Implementing Outlook Web Access Introduction.
CSCI 3140 Module 6 – Database Security Theodore Chiasson Dalhousie University.
Managing Content with SharePoint 2007 Module 0. Overview  Introduction  About This Course  Course Outline  Using Virtual PC.
INFORMATION SECURITY UNIX & DB2. Introduction THE OBJECTIVE IS TO DESIGN SECURITY MEASURES FOR A MILITARY SYSTEM SYSTEM RUNNING A DB2 SERVER ON UNIX FOCUS.
19 December 1998EMGnet meeting INRIA Rhône-Alpes1 An Overview of Security Issues in the Web José KAHAN OBLATT W3C/INRIA 19 December 1998.
Course 10174A Configuring and Administering Microsoft ® SharePoint ® 2010.
Course 2279B: Planning, Implementing, and Maintaining a Microsoft ® Windows ® Server 2003 Active Directory ® Infrastructure.
Web Application Development with Active Server Pages David Henson
Course 6292A Installing and Configuring Windows® 7 Client.
Course 2277: Implementing, Managing, and Maintaining a Microsoft ® Windows ® Server 2003 Network Infrastructure: Network Services.
Course 4006A: Time and Task Management Using Microsoft ® Office Outlook ® 2003.
Configuring, Managing and Maintaining Windows Server® 2008 Servers Course 6419A.
Web Security. Introduction Webserver hacking refers to attackers taking advantage of vulnerabilities inherent to the web server software itself These.
Securing Web Access Senior Design III – Spring 2009 Matt Shea.
Web Server Apache PHP HTTP Request User types URL into browser Address resolved if nec. We use directly Most browsers request.
Endpoints Lesson 17. Skills Matrix Endpoints Endpoints provide a reliable, securable, scalable messaging system that enables SQL Server to communicate.
Course 2030: Creating Reporting Solutions Using Microsoft ® SQL Server ™ 2000 Reporting Services.
© 2006, iPolicy Networks, Inc. All rights reserved. Security Technology Correlation Proneet Biswas Sr. Security Architect iPolicy Networks
Web Programming 3(3-0-6) Introduction to interactive, event-driven and dynamic web development; web programming with freeware and commercial tools;
Course 2778A Writing Queries Using Microsoft® SQL Server® 2008 Transact-SQL.
SharePoint 2010 Business Intelligence Module 1: Overview.
Introduction Name Company affiliation Title/function Job responsibility Windows experience Your expectations for the course.
Notes on Introduction CSC 196K In Class Discussion Course Overview Basic concepts of data mining Introduction to data warehousing.
Course 2389B: Programming with Microsoft® ADO.NET
20410D Installing and Configuring Windows Server® 2012 Course 20410D
20761A Querying Data with Transact-SQL.
Module 0: Introduction Installing and Configuring Windows® 7 Client
10982B Supporting and Troubleshooting Windows 10 Course 10982B
Mission-critical performance with Microsoft SQL Server 2016
20341B Core Solutions of Microsoft® Exchange Server 2013.
Security Operations Without Going Blind
Security Operations Without Going Blind
Configuring, Managing and Maintaining Windows Server® 2008 Servers Course 6419A.
Microsoft Virtual Academy
Azure Multi-Factor Authentication Walkthrough
Presentation transcript:

Web Application Security A Project X Course Date: Nov 1 th – 2 nd, 2010 Confidential Material

Introduction Name Shift Title/function Job responsibility Networking and database experience Web application development experience Security Experience Your expectations for the course 2

Rules of Engagement Class hours Building hours Parking Restrooms Meals Phones Messages Smoking Recycling 3

About this course Description Audience Course Prerequisites Course Objectives 4

Course Outline Module 1: Web Application Data Security Overview Module 2: The Web Server Module 3: Common Threats Module 4: Securing The Web Server Module 5: TLS and SSL Module 6: Patches and Security Updates Module 7: Firewalls and Port forwarding Module 8: Ticket Escalation 5

Setup Virtual MachineDescription WAS_Win2K8_FreshWindows Server without IIS WAS_Linux_FreshLinux Server without Apache WAS_SQL08Windows 2k8 with SQL 2008 WAS_MySQLLinux Server with MySQL 6

7