On 9/4/07, syiwabhairawa <[EMAIL PROTECTED]> wrote:
>
>
> saya bukan DBA, jadi gak tahu banyak soal proteksi dari SQL level.
> Tapi dari sisi connectivity, mungkin anda bisa :
> a. menggunakan firewall, dan hanya IP tertentu yang bisa menghubungi
> DB server
> b. menggunakan VPN tunnel antara client dengan DB server
> c. menggunakan DB listener yang bisa dipassword
>
>
nope, cara2 di atas lebih cocok utk mencegah akses langsung ke app/db
server.
sql injection attack tidak perlu akses langsung ke server.
[Non-text portions of this message have been removed]
--
www.itcenter.or.id - Komunitas Teknologi Informasi Indonesia
Gabung, Keluar, Mode Kirim : [EMAIL PROTECTED]
Yahoo! Groups Links
<*> To visit your group on the web, go to:
http://groups.yahoo.com/group/ITCENTER/
<*> Your email settings:
Individual Email | Traditional
<*> To change settings online go to:
http://groups.yahoo.com/group/ITCENTER/join
(Yahoo! ID required)
<*> To change settings via email:
mailto:[EMAIL PROTECTED]
mailto:[EMAIL PROTECTED]
<*> To unsubscribe from this group, send an email to:
[EMAIL PROTECTED]
<*> Your use of Yahoo! Groups is subject to:
http://docs.yahoo.com/info/terms/