Discover Habbo's history
Treat yourself with a Secret Santa gift.... of a random Wiki page for you to start exploring Habbo's history!
Happy holidays!
Celebrate with us at Habbox on the hotel, on our Forum and right here!
Join Habbox!
One of us! One of us! Click here to see the roles you could take as part of the Habbox community!


Page 1 of 2 12 LastLast
Results 1 to 10 of 13
  1. #1
    Join Date
    Dec 2005
    Posts
    724
    Tokens
    0

    Default Creating a security system.

    Ok here is what i'm going to do, i'm going to make a security system.The system will store information, like a online information bank.It will need to be super secure, and totally unhackable.I am going to research what things i will do, all i need is some advice, it wil need a admin panel, IP alert, blocker, user system.Forum, password recovery data purging and maybe some more stuff.

    So post what advice you would give, and some more features.
    Starting webdesign again.

  2. #2
    Join Date
    Mar 2005
    Location
    Leeds
    Posts
    3,423
    Tokens
    0

    Latest Awards:

    Default

    You will need to use SSL dude...

    webopedia.com Word definition: (If you dont know what it means)

    Short for Secure Sockets Layer, a protocol developed by Netscape for transmitting private documents via the Internet. SSL uses a cryptographic system that uses two keys to encrypt data − a public key known to everyone and a private or secret key known only to the recipient of the message. Both Netscape Navigator and Internet Explorer support SSL, and many Web sites use the protocol to obtain confidential user information, such as credit card numbers.By convention, URLs that require an SSL connection start with https: instead of http:.

    Another protocol for transmitting data securely over the World Wide Web is Secure HTTP (S-HTTP). Whereas SSL creates a secure connection between a client and a server, over which any amount of data can be sent securely, S-HTTP is designed to transmit individual messages securely. SSL and S-HTTP, therefore, can be seen as complementary rather than competing technologies. Both protocols have been approved by the Internet Engineering Task Force (IETF) as a standard.
    Last edited by Luckyrare; 24-07-2006 at 08:00 PM.

  3. #3
    Join Date
    Apr 2005
    Location
    South Wales!
    Posts
    3,535
    Tokens
    2,371

    Latest Awards:

    Default

    what about a special pin no. you need to enter to make a payment

  4. #4
    Join Date
    Feb 2006
    Location
    Ontario Canada
    Posts
    4,587
    Tokens
    0

    Latest Awards:

    Default

    ssl zend optimized md5 hash ect....

    .:.:#14:.:. .:.: Impossible Is Nothing :.:. .:.: 845 Rep:.:.
    .:.: Stand up for what is right, even if you stand alone:.:.


  5. #5
    Join Date
    Dec 2005
    Location
    Australia
    Posts
    550
    Tokens
    0

    Default

    I reccomend using private ssl or securing it with the clients ip.

  6. #6
    Join Date
    Mar 2005
    Location
    Leeds
    Posts
    3,423
    Tokens
    0

    Latest Awards:

    Default

    You have no option, if you didnt use SSL people wouldnt use it.

  7. #7
    Join Date
    Dec 2005
    Location
    XX
    Posts
    2,308
    Tokens
    2,015

    Latest Awards:

    Default

    Yeah use ssl, encode the php files (Assuming its php) incase the server is hacked and they get the files. Protect the server with at least 7char long password alphanumeral (Special Chars e.g. @*^%$£""!#~) if possible.
    And MD5.

    That should be a good security system also keep all backups external i.e. on an memory stick and multiple copies, encrypted with passwords

    EDIT: (Case = Person forgot their pass); generate new password on email confirmation with secret question, incase the persons email is hacked.
    Last edited by DMB-Hosting; 24-07-2006 at 09:43 PM.


  8. #8
    Join Date
    May 2006
    Location
    New Zealand
    Posts
    4,452
    Tokens
    0

    Latest Awards:

    Default

    wot u really need is a special website domain- (https://)

    the s in https://
    stands for secure and some 1 has payed alot of money to have a domain like that (over 100GBP)

    i can get you 1 for 150GBP for 1yr but once your site has been set up you have to get it verified before you can get yourself the special domain

    if you try this https://www.boysstuff.co.uk
    it shows that it is secure at the bottom with a closed yellow padlock

    now try this https://www.grabyourgraphic.com
    it dosent work cos it isnt running on a secure server


    also you need a special way or encrypting the data people enter and then uncurupting it when it arrives on the server.

    you will need a very good security database cos if u get hacked and you have credit card numbers on there u r stuffed
    New Zealand Web/Tech News

  9. #9
    Join Date
    Jul 2006
    Location
    Somewhere, I think!
    Posts
    12
    Tokens
    0

    Default

    I guess MD5 would not be suitible for this kind of situation, correct me if I'm wrong.
    Last edited by Beep; 24-07-2006 at 09:59 PM.
    Quote Originally Posted by Quote of the day!
    Guns don't kill people, it's those little holes.
    Quote Originally Posted by Quote of the week!
    I would enjoy my day more if it started later.

  10. #10
    Join Date
    Mar 2005
    Location
    Leeds
    Posts
    3,423
    Tokens
    0

    Latest Awards:

    Default

    Quote Originally Posted by ebayseller1
    stands for secure and some 1 has payed alot of money to have a domain like that (over 100GBP)
    Thats just when SSL is running not a magic domain...

Page 1 of 2 12 LastLast

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •