Side note, cross-bank, CDN bypassed it-side note

Side note

What is the side note?

To put it simply, aside notes, understood from its literal meaning, means: inject from the side. Side note, we can understand multiple sites on the same server. When setting up web sites, many times due to cost and other reasons, we will set up multiple web sites on a server, and then distinguish the website through the host header, so that different web sites can be accessed through different domain names.

Take IIS6.0 as an example, when setting up a web site, you can specify the root directory of the site, and then add the corresponding information in the host header settings to achieve multiple web sites, which can be accessed normally on the same port.

Many servers on the public Internet are directly under a certain drive letter, set as the absolute directory of the web site, and then create a folder corresponding to the domain name under the directory to distinguish. There may be hundreds of sites on a server.

IP Reverse Query

You can get its related IP address by pinging the domain name, and then get the domain name it annotated by IP address backcheck.
By querying the IP through the following URL, you can find out how many domain name addresses are bound to this IP:

http://tool.chinaz.com/Same/
http://dns.aizhan.com/
http://www.11best.com/ip/

But when we get a webshell site webshell can be taken to another site yet , is not the case, we have no authority, that is, whether there is a directory ultra vires, or depending on the settings of the other middleware rights
cause The root cause of directory overriding is that the permissions are not set , and the default permissions are used (operating system permissions are improperly configured)

		一般情况下需要给它配置一个权限很低的账号
		另一方面,每一个站点都要有不同账号,这些账号不应该在同一个组中,账号之间不能相互访问
		要注意读写分离的思想,也就是执行和写入权限,只给一个,这样比较安全
Published 117 original articles · praised 11 · visits 6453

Guess you like

Origin blog.csdn.net/weixin_43079958/article/details/105568270