MaHackers akawana mukana kune main mail server yekambani yepasi rose Deloitte. Iyo account account yeserver iyi yakachengetedzwa chete nepassword.
Muongorori akazvimirira wekuAustria David Wind akawana mubairo we$5 yekuona kusaita njodzi papeji yeGoogle intranet login.
91% yemakambani ekuRussia anovanza data rekudonha.
Nhau dzakadai dzinogona kuwanikwa zuva rega rega mumafidhi enhau eInternet. Uhwu humbowo hwakananga hwekuti masevhisi emukati ekambani anofanira kuchengetedzwa.
Uye iyo yakakura iyo kambani, iyo ine vashandi vakawanda uye zvakanyanya kuomarara mukati mayo emukati IT masisitimu, ndipo pakanyanya kudzvanya dambudziko rekuburitswa kweruzivo kune iro. Ndeupi ruzivo rwekufarira kune vanorwisa uye nzira yekudzivirira?
Ndeupi rudzi rweruzivo rwakaburitswa runogona kukanganisa kambani?
- ruzivo pamusoro pevatengi uye kutengeserana;
- ruzivo rwechigadzirwa chehunyanzvi uye kuziva-sei;
- ruzivo nezve vanobatana uye zvakakosha zvinopihwa;
- personal data uye accounting.
Uye kana iwe uchinzwisisa kuti rumwe ruzivo kubva pane iri pamusoro runyorwa runosvikika kubva kune chero chikamu chetiweki yako chete pakuratidzwa kwelogin nepassword, saka iwe unofanirwa kufunga nezve kuwedzera mwero wekuchengetedza data uye kuidzivirira kubva kune isina mvumo.
Huviri-chinhu chechokwadi uchishandisa hardware cryptographic media (tokens kana smart makadhi) yakawana mukurumbira wekuvimbika uye panguva imwechete iri nyore kushandisa.
Isu tinonyora nezve mabhenefiti maviri-chinhu chechokwadi munenge mune yega chinyorwa. Iwe unogona kuverenga zvakawanda pamusoro peizvi mune zvinyorwa pamusoro
Muchinyorwa chino, tinokuratidza mashandisiro aungaita maviri-chinhu chechokwadi kuti upinde mukati mesangano rako remukati portals.
Semuenzaniso, isu tichatora yakanyanya kukodzera modhi yekushandiswa kwemakambani, Rutoken - cryptographic USB chiratidzo.
Ngatitange nekugadzirisa.
Danho 1 - Setup Sevha
Hwaro hwechero sevha ndiyo inoshanda sisitimu. Muchiitiko chedu, iyi iWindows Server 2016. Uye pamwe chete nayo uye mamwe maitiro ekushanda emhuri yeWindows, IIS (Internet Information Services) inoparadzirwa.
IIS iboka remaseva eInternet, kusanganisira webhu server uye FTP server. IIS inosanganisira zvikumbiro zvekugadzira nekugadzirisa mawebhusaiti.
IIS yakagadzirirwa kuvaka webhu masevhisi uchishandisa mushandisi maakaundi anopihwa nedomasi kana Active Directory. Izvi zvinokutendera kuti ushandise iripo mushandisi database.
Π
Windows Server 2016 inouya neIIS vhezheni 10.0 yakavakirwa-mukati.
Kana IIS yaiswa, saka zvese zvinosara ndezvekugadzirisa nemazvo.
Padanho rekusarudza mabasa ekuita, takatarisa bhokisi Basic authentication.
Wobva wapinda Internet Information Services Manager kubatidza Basic authentication.
Uye yakaratidza dura mune iyo webhu server iripo.
Ipapo isu takawedzera saiti link.
Uye sarudza iyo SSL sarudzo.
Izvi zvinopedzisa kuseta server.
Mushure mekupedza nhanho idzi, mushandisi chete ane chiratidzo chine chitupa uye PIN yechiratidzo ndiye achakwanisa kuwana saiti.
Tinokuyeuchidza zvakare kuti maererano
Zvino ngatienderere mberi nekumisikidza komputa yemushandisi. Anofanirwa kugadzirisa mabhurawuza aachashandisa kubatanidza kune akachengetedzwa mawebhusaiti.
Danho 2 - Kumisikidza komputa yemushandisi
Kuti zvive nyore, ngatifungei kuti mushandisi wedu ane Windows 10.
Ngatifungeiwo kuti ane kit yakaiswa
Kuisa seti yevatyairi isarudzo, sezvo kazhinji rutsigiro rwechiratidzo ruchasvika kuburikidza neWindows Update.
Asi kana izvi zvikasaitika kamwe kamwe, ipapo kuisa seti yeRutoken Drivers yeWindows kunogadzirisa matambudziko ese.
Ngatibatanidzei chiratidzo kune komputa yemushandisi uye tivhure Rutoken Control Panel.
Mune tab Zvitupa Tarisa bhokisi riri padivi pechitupa chinodiwa kana chisina kutariswa.
Nekudaro, isu takaona kuti chiratidzo chiri kushanda uye chine chitupa chinodiwa.
Mabhurawuza ese kunze kweFirefox anogadziriswa otomatiki.
Iwe haufanirwe kuita chero chinhu chakakosha navo.
Zvino vhura chero browser uye isa kero yekushandisa.
Saiti isati yatakura, hwindo rinovhurika rekusarudza chitupa, uyezve hwindo rekuisa chiratidzo chePIN kodhi.
Kana Aktiv ruToken CSP yakasarudzwa seyakagadzika crypto mupi wemudziyo, ipapo rimwe hwindo rinovhurika kuisa iyo PIN kodhi.
Uye chete mushure mekubudirira kuipinda mubrowser iyo webhusaiti yedu ichavhura.
Kune Firefox browser, mamwe marongero anofanirwa kuitwa.
Mubrowser yako sarudza Zvakavanzika uye Chengetedzo... Muchitsauko Zvitupa kudzvinyirira Chidziviriro Chishandiso... Hwindo richavhurika Kutarisira mudziyo.
Dzvanya Download, ratidza zita Rutoken EDS uye nzira C:windowssystem32rtpkcs11ecp.dll.
Ndizvozvo, Firefox ikozvino inoziva kubata chiratidzo uye inobvumidza iwe kupinda musaiti uchiishandisa.
Nenzira, pinda uchishandisa chiratidzo kune mawebhusaiti inoshandawo paMacs muSafari, Chrome uye Firefox browser.
Iwe unongoda kuisa Rutoken kubva pawebhusaiti
Iko hakuna chikonzero chekugadzirisa Safari, Chrome, Yandex uye mamwe mabhurawuza; iwe unongoda kuvhura saiti mune chero yeaya mabhurawuza.
Iyo Firefox bhurawuza inogadziridzwa ingangoita senge muWindows (Settings - Yepamberi - Zvitupa - Chengetedza zvishandiso). Chete nzira yekuraibhurari ndiyo yakasiyana zvishoma /Library/Akitv Co/Rutoken ECP/lib/librtpkcs11ecp.dylib.
zvakawanikwa
Isu takakuratidza maitiro ekumisikidza maviri-chinhu chechokwadi pamawebhusaiti uchishandisa cryptographic tokens. Senguva dzose, isu taisada imwe software yeiyi, kunze kwemaraibhurari eRutoken system.
Iwe unogona kuita maitiro aya nechero yako yemukati zviwanikwa, uye iwe unogona zvakare kuchinjika kumisikidza mapoka evashandisi anozokwanisa kuwana saiti, senge chero kupi zvako muWindows Server.
Uri kushandisa imwe OS kune server?
Kana iwe uchida kuti isu tinyore nezve kumisikidza mamwe masisitimu anoshanda, zvino nyora nezvazvo mumashoko kune chinyorwa.
Source: www.habr.com