News Feed
Jobs Feed
Sections




News Archive
Looking for more information on how to do PHP the right way? Check out PHP: The Right Way

Lars Strojny's Blog:
Security "to go"?
May 21, 2008 @ 12:53:55

In this new post to his blog today, Lars Strojny looks to clear up some of the confusion that might be forming around the term "intrusion detection", more specifically, related to projects like PHP-IDS.

PHP-IDS is an intrusion detection tool on the application level. Application firewalls know about a certain protocol and its structure (e.g. HTTP) and inspect the protocol to detect attack patterns. Some of them are even capable of learning from usual request signatures and enforcing rules based on the learned data. There are various commercial products to achieve application firewalling. PHP-IDS does the same for free and sits directly on the webserver in the scope of the application.

He recommends it as a good supplement to the hardening you've already done for your server (you have hardened it, haven't you?) to help keep you and your data safe from prying eyes.

0 comments voice your opinion now!
security application level phpids protect harden


blog comments powered by Disqus

Similar Posts

Juozas Kaziukenas' Blog: Dependencies management in PHP projects

Ole Markus With's Blog: Experimenting with uWSGI and its PHP plugin

Web & PHP Magazine: Issue #4 Published - "Safe and Secure"

PHP Security Consortium: SecurityFocus Summaries Posted

SitePoint PHP Blog: PHP Security - Dumb Users or Dumb APIs?


Community Events











Don't see your event here?
Let us know!


composer application series security opinion symfony2 unittest overview language hhvm package install hack framework code facebook podcast component introduction release

All content copyright, 2014 PHPDeveloper.org :: info@phpdeveloper.org - Powered by the Solar PHP Framework