°ä²¼¹¦·ò£º2011-05-30
WebGuard£¨ÒÔϼò³ÆWG£©ÊÇGA»Æ½ð¼×ÍøÂçÍÆ³öµÄ»ùÓÚ¶àºË+ASIC¼Ü¹¹µÄ¸ß»úÄÜ¡¢¸ß¿¿µÃסWebÀûÓ÷À»¤Íø¹Ø£¬Ïà¶ÔÓÚÒµ½ç³£¼ûµÄWeb·À»ðǽ²úÆ·£¬WGÓµÓÐÒÔÏÂÌØÉ«Ö°ÄÜ£º
1¡¢¼¯³É·À²¡¶¾Íø¹Ø
ÖйúÍøÕ¾¹¥»÷¶àΪ×Ô¶¯»¯¹¥»÷£¬¶ÔÓÚÕâÖÖ¹¥»÷£¬ÍùÍùÉæ¼°Ä¾Âí²¡¶¾£¬¿¨×¡²¡¶¾£¬¾Í¿¨×¡ÁË×Ô¶¯»¯¹¥»÷¡£²»ÉÙWeb·À»ðǽΪIPS¸Ä×°¶øÀ´£¬Ò²ºÅ³Æ¼ø±ð²¡¶¾£»ÖØÒªµÀÀíÊÇÌØµãÆ¥Å䣬ֻ²é³ÎļþÍ·²¿£¬²»²é³ÎļþÄÚÈÝ£¬¶øWG¶ÔÎļþÄÚÈݽøÐв¡¶¾É¨Ã裬ͬʱ¶ÔHTTP½Ó¼û½øÐÐÄÚÈݼø±ð¡£WGÈ«Ãæ¸²¸ÇICSAÈÏÖ¤³ß¶ÈWildlist£¬¾ß±¸×¨Òµ·À²¡¶¾Ö°ÄÜ¡£
2¡¢ÍøÒ³¹ýºó¸´ÔÖ°ÄÜ
ºÜ¶à¹úÄÚ¿Í»§£¬½ÓÊÜÍøÒ³·À´Û¸ÄÈí¼þµÄÀíÏ룬Æ÷³ÁÍøÕ¾±»´Û¸ÄºóµÄ¸´Ô¡£µ«Ô¸WG¼æ¾ßÊÂǰ·ÀÓùºÍ¹ýºó¸´ÔÖ°ÄÜ£¬Òò¶øWGÖм¯³ÉÁ˾²Ì¬ÍøÒ³¹ýºó¸´ÔÖ°ÄÜ¡£
3¡¢“ÁãÅäÖÔ³õ´ÎÔËÐÓעһվʽ·À»¤
Ŀǰ£¬Êг¡ÉÏ´óÎÞÊý³§ÉÌѡȡ°×Ãûµ¥¹¤×÷·½Ê½£¬Ê¹ÓÃʱ±ØÒªÕë¶Ôÿ¸öÒ³ÃæµÄHTTP¸÷×ֶνøÐÐÅäÖã»¶Ô¿Í»§¼¼ÊõˮƽҪÇó¸ß£¬²»È»ÎÞ·¨²ûÑï³ö²úÆ·¹¦Ð§¡£
WGÕë¶Ô¹úÄÚ³£¼ûµÄ¹¥»÷£¬Ô¤ÖÃÁ˹¥»÷·ÀÓùÕ½Êõ£»É豸ÉÏÏߣ¬ÎÞÐèÅäÖü´¿É·ÀÓù¾ø´óÎÞÊý¹¥»÷£»Í¬Ê±Ò²Ìṩ°×Ãûµ¥Ö°ÄÜ£¬¹©¸ß¼¶¿Í»§Ê¹Óá£
4¡¢¹Ø¼ü×Ö¹ýÂË¡¢ÊÇ·ÇÃûµ¥Ö°ÄÜ
Ô¤·ÀÍøÕ¾ÂÛ̳±»ÉÏ´«·¸·¨·´¶¯ÓßÂÛ£¬»òÍøÒ³±»´Û¸ÄΪ·¸·¨ÓßÂÛ£¬Ö§³Ö¹Ø¼ü×Ö¹ýÂË¡£Í¬Ê±WGϵÁÐÄܽ«È·ÒÔΪ¹¥»÷µÄÔ´IP×Ô¶¯²ÎÓëºÚÃûµ¥£¬²¢ÇÒÌṩ×Ô¶¯½â½û¹¦·ò£¬²»±ØÒªÈκÎÈËΪµÄ²Ù×÷¡£
5¡¢Ðé¹¹WAFÓë·Ö¼¶ÖÎÀí
µ¥Ò»WAFÉ豸֧³Ö¶à¸öÍøÕ¾ÖÎÀíÔ±±ðÀëÅäÖÃÖÎÀí·À»¤Õ½Êõ£¬²¢Ìṩ¶ÀÁ¢µÄ¹¥»÷ÊÂÎñ±¨¾¯¡¢·ÖÎöÈÕÖ¾Ó뱨±í¡£´ËÖ°Äܼ«¶ÈÊʺÏÓµÓп϶¨ÊýÁ¿web ·þÎñÆ÷ȺµÄÆóҵʹÓ㬷½±ãÍøÂçÔËÓªÖÎÀí£¬¼õÇáÉ豸ÖÎÀíÔ±µÄ¹¤×÷Á¿£¬½â¾ö¶à¶àÍøÕ¾Ëù´øÀ´µÄÕ½ÊõÊØ»¤ÓëÖÎÀíµÄÎÊÌâ¡£
6¡¢Webshell¼ì²â¡¢¹ýÂËÓ뱨¾¯
WGÄÜÓÐЧ½øÐÐwebshellµÄ¼ì²â¡¢¹ýÂËÓëÕì²â¡¢¼à¿Ø£¬Ä¿Ç°ÄÜÓÐЧ·ÀÓù4000¶àÖÖwebshell£¬¼´±ãÔÚÍøÕ¾ÒѾ±»Ö²ÈëwebshellµÄÇé¿öÏÂÒ²ÄÜͨ¹ýÕì²â¹ýÂËwebshellÒªÇó²Ù×÷ÌØµãºÍ¹¥»÷ÌØµãÀ´×è¶ÏºÚ¿ÍµÄ¸÷Àà·¸·¨²Ù×÷ºÍ¹¥»÷ÐÐΪ£¬´ïµ½±£»¤web·þÎñÆ÷µÄÖ÷ÕÅ¡£
7¡¢²¿Êð½Ã½Ý¡¢µ¥Ò»
´¿Í¨Ã÷ÔÚÏß²¿Ê𣬼´²å¼´Óã¬×Ô¶¯Éý¼¶£¬ÎÞÐè¸ü¸ÄÍøÂçºÍwebϵͳ¼Ü¹¹£»Ö§³ÖͨÃ÷·´Ïò´úÀíģʽ£¬Ö§³Ö·ÖÎö¶à·WebÁ÷Á¿£¬ÊÊÓ¦·ÖÆçÇøÓòµÄweb·þÎñÆ÷µÄ¼à¿Ø£¬°µ²Øweb·þÎñÆ÷Õ¾µã£¬Ìṩ°²È«ÐÔ¡£
