ModSecurity Handbook, Second Edition
Autor Christian Folini, Ivan Risticen Limba Engleză Paperback – 15 iul 2017
Situated between your web sites and the world, web application firewalls provide an additional security layer, monitoring everything that comes in and everything that goes out in real time. They enable you to perform many advanced activities, such as access control, virtual patching, HTTP traffic logging, continuous passive security assessment, and web application hardening. Web application firewalls can be very effective in preventing application security attacks, such as SQL injection, cross-site scripting, remote file inclusion, and others that plague most web sites today.
ModSecurity Handbook covers the following topics, which will help anyone with a web site to run:
- Installation and configuration of ModSecurity
- Detailed guide to writing rules
- IP address, session, and user tracking
- Session management hardening
- Whitelisting, blacklisting, and IP reputation management
- Anomaly scoring and advanced blocking strategies
- Integration with other Apache modules
- Working with predefined rule sets
- Virtual patching and content injection
- Performance considerations
- Writing rules in Lua and extending ModSecurity in C
- Detailed coverage of ModSecurity's numerous directives, variables, transformations, and operators
ABOUT THE AUTHORS
Dr. Christian Folini is a twelve-year veteran of ModSecurity. He is a renowned speaker, teacher, and system engineer who has specialized in securing high-profile web servers. Christian is one of the leaders of the OWASP ModSecurity Core Rule Set project, a key member of the ModSecurity community, program chair of the Swiss Cyber Storm conference, and vice president of Swiss Cyber Experts (a public-private partnership).
Ivan Ristic is a security researcher, engineer, and author, known especially for his contributions to the web application firewall field and development of ModSecurity, an open source web application firewall, and for his SSL/TLS and PKI research, tools and guides published on the SSL Labs web site. His latest project, Hardenize, is a security posture analysis service that makes security fun again. He is the author of three books, Apache Security, ModSecurity Handbook, and Bulletproof SSL and TLS.
Preț: 287.51 lei
Preț vechi: 359.39 lei
-20% Nou
Puncte Express: 431
Preț estimativ în valută:
55.02€ • 56.76$ • 46.57£
55.02€ • 56.76$ • 46.57£
Carte tipărită la comandă
Livrare economică 05-19 martie
Preluare comenzi: 021 569.72.76
Specificații
ISBN-13: 9781907117077
ISBN-10: 1907117075
Pagini: 454
Dimensiuni: 191 x 235 x 25 mm
Greutate: 0.84 kg
Ediția:2. Auflage
Editura: Feisty Duck
ISBN-10: 1907117075
Pagini: 454
Dimensiuni: 191 x 235 x 25 mm
Greutate: 0.84 kg
Ediția:2. Auflage
Editura: Feisty Duck
Notă biografică
Dr. Christian Folini is a partner at netnea AG in Berne, Switzerland. He holds a PhD in medieval history and enjoys defending castles across Europe. Unfortunately, defending medieval castles is not a big business these days, so Christian turned to defending web servers, which he thinks is equally challenging. With his background in humanities, Christian is able to bridge the gap between techies and nontechies. He has more than ten years of experience in this role, specializing in Apache/ModSecurity configuration, DDoS defense, and threat modeling. Christian is a frequent committer to the OWASP ModSecurity Core Rule Set, vice president of Swiss Cyber Experts (a public-private partnership), program chair of the Swiss Cyberstorm conference, and president of the Company of St. George, a well-known historical reenactment group.