Http how to prevent the hijacking problem?

  How do I know http hijacked?
  iis7 site monitoring
  to detect whether the site was hijacked, DNS pollution detection, speed detection information site open.
  HTTP-based traffic hijacking, it should be more familiar. Especially for the Web front-end, generally we talk about traffic hijacking, first of all can think of is this. On principle I will not introduce more, basically because the HTTP belong express agreement, any device on the intermediate links, can tamper with the content, leading to traffic hijacking.
  And prevention of hijacking HTTPS
  traffic HTTP hijacking, in addition to a number of programs listed above, in fact, there are many specific programs under the scene. For example, one scheme I have seen Baidu students given the increase in code comments in front of a large section of HTML, an attacker trick resource changes in the comments. But in the end, these programs are unable to withstand the test of time. Ideal solution is to migrate to HTTPS.
  HTTPS-related traffic hijacking
  HTTPS itself is already relatively safe, thanks to the previously mentioned TLS protocol. But it does not mean we can not totally concerned about the safety of HTTPS. During these years HTTPS appeared in, SSL / TLS security issues is actually heard, and here I mention two relatively classic example for everyone to show what security protocol is how insecure.
  Defense HTTPS traffic hijacking
  attempt against SSL / TLS attack actually never stopped, in the future it will not stop there. In addition to the two classic attacks listed above, there are many similar cases. On defense HTTPS traffic hijacking, in addition to using HTTPS, the more critical is the selection of a relatively secure encryption suite.

Guess you like

Origin www.cnblogs.com/xiaokeaia/p/11526967.html