How do rub to prevent the website being hijacked

  Why own privacy and data access behavior will suddenly be "stolen"? Why did the wrong domain name, only to go on a fishing website? User data leakage, flow hijacking, and other security events page tamper-prone how to do? This is because your domain name was hijacked, resulting in a jump site. Then the domain name after the robbery as well do it, how to prevent domain name has been hijacked?
  Must first learn to check for problems when operating with IIS7 website is entirely possible early detection monitoring sites have not been hijacked, once discovered the first time, to remedy much more convenient.
  How to prevent domain hijacking?
  1, set up a complex password for domain name registrars and registries using the email and changed frequently. Use a separate DNS services, but also need the password these settings. Taking care not to use the same user name and password in a number of important registration.
  2, regularly check your account information domain name, the domain name whois information, see the event manager, cleaning up suspicious files Web outlets exist. Website site every day to check whether there is expected outside the page. Detailed examination of the site outside the chain index and information be sure to check clearly abnormal.
  3, configure the Web site folder permissions and file operations. Windows network Caozuoxitong, use the super administrator privileges to the Web site files and folders permissions configuration, the majority is set to read permission, write permission be used with caution, if you can not get super administrator privileges, such programs *** can not take root, domain hijacked possible will be able to reduce a lot.
  4, update the domain name set to the locked state is not allowed to modify the record by the DNS service's website, the use of this method, you need to do domain name resolution must be done by service providers, timeliness is poor.
  5, delete unnecessary services running on the DNS server, such as FTP.
  6, strengthen anti-SQL injection site functions, SQL injection is a feature of the use of SQL statements to write the contents of a database, in order to gain permission to the method.
  7, use transaction signatures for zone transfers and regional digital signature updates.
  8, using a firewall service on the network perimeter and DNS server. Restrict access to those ports / DNS services required functions.
  A domain name is a vital business website URL, if the domain name hijacked, your website will also receive a certain extent, may affect the normal user experience, the user is directed to a fake website and thus can not browse the Web normally. A large amount of user domain was hijacked after bad influence will continue to expand, users may be lured to fake websites to log and other operations lead to the disclosure of private data. So be sure to check domain name hijacked measures, so as not to do it again after the domain name was hijacked remedies, time-consuming.

Guess you like

Origin blog.51cto.com/14470319/2425586