Font Size: a A A

The Design And Application Of A Multi-line Access Server System Based On Proxy-Arp

Posted on:2017-10-11Degree:MasterType:Thesis
Country:ChinaCandidate:Q Y ShanFull Text:PDF
GTID:2348330488959081Subject:Control engineering
Abstract/Summary:PDF Full Text Request
In order to solve the problem of less consideration in web-site programming, vulnerable to attacks from network, poor safety awareness and Frequent replacement of the web-sites management personnel, easily lost of administrative password, the Campus network information center to provide WEB server platform, using IIS virtual host and user privileges configuration to isolate the web-sites; using WEB firewall to block the scans and attacks from malicious users, Bind site administrator login IP address to solve the problem of using free but not safe web editor and the loss of administative password; Using command scripts to detect the WWW service, when WWW service stop exceptional, the script restart service automaticly, improve the service stablity,-Using the free web-site monitoring tools provided by 360 corporation, monitor the service remotely, notice system administrators when the service is unreachable; Providing FTP service to allow web-site administrators to update web-site autonomously; Regularly backup data in remote, improve the data security; Using ACL in access switch to restrict the server's action, protect the server affecting other servers in extreme cases.Using multi-line access policy can improve Internet user's experience when they visit campus network service out of the campus. Aim at the problem of log searching in multi-line access policy based on DNAT and SNAT and the problem of service extension in multi-line access policy based on web reverse proxy. Using the technique of roaming in mobile IPV4, set proxy-arp on the NAT server between the campus network and the CUCC network, set static route on the relevant network equipment, roam the public ip of CUCC to campus internal server area. Configure the CUCC ip and CERNET ip on the same network interface card of the server. Set policy routing in the edge router of campus network, transmit the data from server using CUCC ip to CUCC line and transmit the data from server using CERNET ip to CERNET line. According the practice, the multi-line access policy based on PROXY-ARP is characterised by simply log searching and easy service extension.
Keywords/Search Tags:Web Firewall, Nat, Proxy-arp, Policy Routing, Intelligent Dns
PDF Full Text Request
Related items