|
|
|
ÀÚÁÖ ¹¯´Â Áú¹®
|
|
Read No. 54 article |
2008-02-20 14:54:30 |
|
|
|
|
NickName |
Ç®ºñ´© |
Subject |
ŸȨ¿¡¼ Á¦È¨ÀڷḦ ¹«´ÜÀ¸·Î °¡Á®°¡Áö ¾Ê°Ô ÇÒ·Á¸é? |
|
|
ÀÚ½ÅÀÇ »çÀÌÆ® Æ®·¡ÇÈ °ü¸® ȤÀº, ƯÁ¤ »çÀ¯·Î, ȸ¿ø´ÔÀÇ »çÀÌÆ® ÀÚ·á°¡ ¿ÜºÎ·Î À¯ÃâµÇ
´Â °æ¿ì¸¦ ¹æÁöÇϱâ À§ÇØ ´ÙÀ½°ú °°ÀÌ ÀÛ¾÷À» ÇÏ½Ç ¼ö ÀÖ½À´Ï´Ù.
¾Æ·¡ ¾È³»µÈ ¸µÅ© °ÅºÎ ¼³Á¤Àº, °èÁ¤³» ÀÚ·á°¡ ¿ÜºÎ¿¡ ¸µÅ©µÈ °æ¿ì¿¡ ÇÑÇؼ Àû¿ëÀÌ µË´Ï´Ù.
(ÁÖ) ȸ¿ø´ÔÀÇ È¨ÆäÀÌÁö¿Í ȨÆäÀÌÁö ÇϺΠ°æ·ÎÀÇ Á¢±Ù°ú´Â ¹«°üÇÕ´Ï´Ù.
¾Æ·¡ÀÇ ³»¿ëÀ¸·Î public_html Æú´õ¾È¿¡ .htaccess ÆÄÀÏÀ̸§À¸·Î µî·ÏÇÏ¿© ÁÖ½Ã¸é µË´Ï´Ù.
±âº» .htaccess ÆÄÀÏÀÌ °èÁ¤¿¡ ÀÖ´Ù¸é ÇØ´ç ÆÄÀÏ ÇϺο¡ Ãß°¡·Î ³»¿ëÀ» ½É¾î ÁÖ½Ã¸é µÇ¸ç
¾ø´Ù¸é ÆÄÀÏÀ» »ý¼ºÇÏ¿© ½É¾î ÁÖ½Ã¸é µË´Ï´Ù.
( ¸®´ª½º¿¡¼´Â Á¡À¸·Î ½ÃÀÛÇÏ´Â ÆÄÀÏÀº ¼û±èÆÄÀÏ·Î ÀνÄÇÕ´Ï´Ù.
.htaccess ÆÄÀÏÀº ¼û±è ÆÄÀÏ·Î ¾÷·Îµå½Ã º¸ÀÌÁö ¾ÊÀ» ¼ö ÀÖ½À´Ï´Ù.)
ftp ÇÁ·Î±×·¥ÀÇ È¯°æ¼³Á¤ ºÎºÐ¿¡ ¼û±èÆÄÀÏ º¸±â ¿É¼ÇÀ» È°¼ºÈ ½ÃŲÈÄ¿¡,,
°èÁ¤¿¡ Á¢¼ÓÀ» ÇϽÃÈÄÇì, public_html Æú´õ¾È¿¡ .htaccess ÆÄÀÏÀÌ ÀÖ´Ù¸é ÇØ´ç ÆÄÀÏ¿¡
÷ºÎ¸¦ ÇÏ½Ã¸é µÇ¸ç, ¾øÀ» °æ¿ì .htaccess ÆÄÀϸíÀ¸·Î ³»¿ëÀ» ½ÉÀ¸½Ã¸é µË´Ï´Ù.
=============================================
1. ƯÁ¤ µµ¸ÞÀθ¸ Çã¿ëÇÒ¶§
=============================================
# ---------- ³»¿ë (³»¿ëÁß # À¸·Î ½ÃÀÛÇÏ´Â ÁÙÀº ³»¿ë¼³¸í)----------
# ±âÁ¸ .htaccess ÆÄÀÏ¿¡ ÀÖ´Â ³»¿ëÀÔ´Ï´Ù. globals off ·Î ¾²½Ã´Â ºÐÀº
# ¾Æ·¡ ÇÑÁÙÀ» ÁÖ¼®Ã³¸®(#) ÇÏ½Ã¸é µË´Ï´Ù
php_flag register_globals on
SetEnvIF Referer "^$" pass
# ·¹ÆÛ·²ÀÌ ¾ø´Â ȸ¿ø´ÔÀÇ »çÀÌÆ®³» Á÷Á¢ Á¢¼Ó½Ã Çã¿ë
SetEnvIF Referer "http://¾ÆÀ̵ð\.byus\.net" pass
# ȸ¿ø´ÔÀÇ »çÀÌÆ® ¹æ¹®Áß »ý±â´Â ·¹ÆÛ·² Á¢¼Ó Çã¿ë
SetEnvIF Referer "http://(www\.)?abc.com" pass
# µµ¸ÞÀÎÀÌ ÀÖÀº °æ¿ì ȸ¿ø´ÔÀÇ µµ¸ÞÀÎ ¸í(abc.com)À¸·Î Ãß°¡ ÇØ ÁÖ½Ã¸é µË´Ï´Ù.
SetEnvIF Referer "http://(.*\.)?naver.com" pass
# *.naver.com ¿¡¼ ¿À´Â°ÍÀ» Çã¿ëÇÏ°í ½ÍÀ»¶§
<FilesMatch ".\
(gif|jpg|zip|alz|a00|jpeg|GIF|JPG|ZIP|RAR|ALZ|A00|ACE|mp3|MP3|mpeg|MPEG\
|wav|WAV|asf|ASF|wmv|WMV|swf|smi|SMI|SWF|exe|EXE|wma|WMA)$">
# Á¦ÇÑÇÒ ÆÄÀÏ È®ÀåÀÚ¸¦ ÁöÁ¤ [´ë¼Ò¹®ÀÚ ÇÔ²² ÁöÁ¤]
# ù°ÁÙ ³¡¿¡ ¿ª½½·¡½Ã´Â µÎ¹ø° ÁÙÀ» ÇÑÁÙ·Î À̾îÁÖ´Â ¿ªÇÒÀ» ÇϹǷÎ, »èÁ¦ÇϽøé
# ¾ÈµË´Ï´Ù.
Order deny,allow
deny from all
allow from env=pass
# pass ·Î ÁöÁ¤µÈ ÁÖ¼Ò¿Ü¿£ ¸ðµÎ °ÅºÎ
</FilesMatch>
# ¾Æ·¡ ÁÙÀº ƯÁ¤ ÆÄÀÏ¿¡ ´ëÇؼ Çã¿ëÀ» ÇÒ°æ¿ì¿¡ Ãß°¡ÇÏ¿© ÁÖ¸é µË´Ï´Ù.
# *bannder.jpg ÆÄÀÏÀº ¿¹¿Ü·Î Çã¿ëÀ» ÇÏ°í ½ÍÀ»¶§ À§ ±¸¹®¿¡ ÇÔ²² Ãß°¡ÇØ ÁÖ½Ã¸é µË´Ï´Ù.
# À̹ÌÁö´Â Â÷´ÜÇ쵂 ***banner.jpg ÆÄÀÏÀº Çã¿ëÇÒ¶§
<FilesMatch "banner.jpg">
Order allow,deny
allow from all
</FilesMatch>
=============================================
2. ƯÁ¤ µµ¸ÞÀθ¸ Â÷´ÜÇÒ¶§
=============================================
# ---------- ³»¿ë (³»¿ëÁß # À¸·Î ½ÃÀÛÇÏ´Â ÁÙÀº ³»¿ë¼³¸í)----------
# ±âÁ¸ .htaccess ÆÄÀÏ¿¡ ÀÖ´Â ³»¿ëÀÔ´Ï´Ù. globals off ·Î ¾²½Ã´Â ºÐÀº
# ¾Æ·¡ ÇÑÁÙÀ» ÁÖ¼®Ã³¸®(#) ÇÏ½Ã¸é µË´Ï´Ù
php_flag register_globals on
# www.abc.com °ú abc.com À» Â÷´ÜÇÏ°í ½ÍÀ»¶§
SetEnvIF Referer "http://(www\.)?abc\.com" block
# *.abc.com ¸ðµÎ Â÷´ÜÇÏ°í ½ÍÀ»¶§
SetEnvIF Referer "http://(.*\.)?abc.com" block
<FilesMatch ".\
(gif|jpg|zip|alz|a00|jpeg|GIF|JPG|ZIP|RAR|ALZ|A00|ACE|mp3|MP3|mpeg|MPEG\
|wav|WAV|asf|ASF|wmv|WMV|swf|smi|SMI|SWF|exe|EXE|wma|WMA)$">
# Á¦ÇÑÇÒ ÆÄÀÏ È®ÀåÀÚ¸¦ ÁöÁ¤ [´ë¼Ò¹®ÀÚ ÇÔ²² ÁöÁ¤]
# ù°ÁÙ ³¡¿¡ ¿ª½½·¡½Ã´Â µÎ¹ø° ÁÙÀ» ÇÑÁÙ·Î À̾îÁÖ´Â ¿ªÇÒÀ» ÇϹǷÎ, »èÁ¦ÇϽøé
# ¾ÈµË´Ï´Ù.
Order allow,deny
allow from all
deny from env=block
# block ·Î ÁöÁ¤µÈ ÁÖ¼Ò¿Ü¿£ ¸ðµÎ Çã¿ë
</FilesMatch>
=============================================
3. ƯÁ¤ ¾ÆÀÌÇǸ¸ Â÷´ÜÇÏ°í ½ÍÀ»¶§
=============================================
# ---------- ³»¿ë (³»¿ëÁß # À¸·Î ½ÃÀÛÇÏ´Â ÁÙÀº ³»¿ë¼³¸í)----------
# ±âÁ¸ .htaccess ÆÄÀÏ¿¡ ÀÖ´Â ³»¿ëÀÔ´Ï´Ù.
php_flag register_globals on
Order allow,deny
# ±âº» ¸ðµç ¾ÆÀÌÇÇ Çã¿ë [ÇÊÈ÷ ±âÀç]
allow from all
# ƯÁ¤ ¾ÆÀÌÇÇ Â÷´Ü (¿©±â¼ ºÎÅÍ´Â ¿É¼ÇÀÔ´Ï´Ù. ¿¹Á¦)
deny from 111.111.111.111
# ƯÁ¤ ¾ÆÀÌÇÇ ´ë¿ª Â÷´Ü (111.111.111.* ¸ðµÎÂ÷´Ü)
deny from 111.111.111.0/24
# ƯÁ¤ ¾ÆÀÌÇÇ ´ë¿ª Â÷´Ü (111.111.*.* ¸ðµÎÂ÷´Ü)
deny from 111.111.0.0/16
=============================================
4. ƯÁ¤ ¾ÆÀÌÇǸ¸ Çã¿ëÇÏ°í ½ÍÀ»¶§
=============================================
# ---------- ³»¿ë (³»¿ëÁß # À¸·Î ½ÃÀÛÇÏ´Â ÁÙÀº ³»¿ë¼³¸í)----------
# ±âÁ¸ .htaccess ÆÄÀÏ¿¡ ÀÖ´Â ³»¿ëÀÔ´Ï´Ù.
php_flag register_globals on
Order deny,allow
# ±âº» ¸ðµç ¾ÆÀÌÇÇ ºñÇã¿ë [ÇÊÈ÷ ±âÀç]
deny from all
# ƯÁ¤ ¾ÆÀÌÇÇ Çã¿ë (¿©±â¼ ºÎÅÍ´Â ¿É¼ÇÀÔ´Ï´Ù. ¿¹Á¦)
allow from 111.111.111.111
# ƯÁ¤ ¾ÆÀÌÇÇ ´ë¿ª Çã¿ë (111.111.111.* ¸ðµÎÇã¿ë)
allow from 111.111.111.0/24
# ƯÁ¤ ¾ÆÀÌÇÇ ´ë¿ª Çã¿ë (111.111.*.* ¸ðµÎÇã¿ë)
allow from 111.111.0.0/16
|
|
Page Loading [ 0.03 Sec ]
SQL Time [ 0 Sec ]
|
|
|