On Tue, Jun 1, 2010 at 9:19 AM, Joel Azcuna <[email protected]> wrote:
> @botp, he must be referring to the admin page/dashboard of the site.
>

ah, salamat Joel.

dapat siguro for cepalco
  1 replace page w something less obvious like /0nly_admins_here
  2 and https
  3 put a warning/info page saying that the partcular page is for
authorized cepalco admins only and all accesses thereafter will be
monitored (para legal)
  4 place a captcha to mitigate script kiddies hammering the auth
  5 fwall level blocking as per application level timeout/failure
setting per ip addr
  6 and lastly, as Arthur has advised, there is no substiture for a
good id+passwd combi
_________________________________________________
Kagay-Anon Linux Users' Group (KLUG) Mailing List
[email protected] (http://lists.linux.org.ph/mailman/listinfo/klug)
Searchable Archives: http://archives.free.net.ph

Reply via email to