首页|选课管理系统的安全分析与防范研究

选课管理系统的安全分析与防范研究

扫码查看
为了建设信息化校园,开发了一种公共选修课选课管理系统.该系统基于 B/S 三层结构和.NET 技术开发,不仅能满足目前全院师生的选课和管理需求,还能针对穷举攻击、SQL 注入攻击、XSS 跨站攻击和文件上传攻击等常见的Web攻击进行防御和容忍,通过了多次公开测试,在2013年6月进行的全院师生网络选课的考验中表现良好.本文着重研究该系统的安全问题.实践证明,该系统基本性能良好,安全性较好.
A Security Study of Course-selecting and Management System Analysis and Precaution
In order to construct informatizationed college campus, we designed the public Course-selecting and management system of Shantou Polytechnic. The system which based on B/S three layer structure and.NET technology, can not only meet the needs of the students and faculty selection and management on courses, but also can defense and tolerance the exhaustive attack, SQL injection attack, XSS cross-site attack and file upload attacks and other common Web attack, through a number of open test, the good performance of the students and faculty of network course in 2013 June test. This paper studied some security problems of the system, and the practice has showed that the system is of good performance, good safety.

course-selecting and management systemWeb securityWeb attackSQL injection attack

肖建芳、陆深焕、廖华丽

展开 >

汕头职业技术学院 计算机系,广东 汕头 515078

选课管理系统 Web安全 攻击 SQL注入

SZK2013Y07

2013

湖南理工学院学报(自然科学版)
湖南理工学院

湖南理工学院学报(自然科学版)

影响因子:0.259
ISSN:1672-5298
年,卷(期):2013.(3)
  • 3
  • 4