*
The moose likes Servlets and the fly likes Website Security Big Moose Saloon
  Search | Java FAQ | Recent Topics | Flagged Topics | Hot Topics | Zero Replies
Register / Login


Win a copy of Murach's Java Servlets and JSP this week in the Servlets forum!
JavaRanch » Java Forums » Java » Servlets
Bookmark "Website Security" Watch "Website Security" New topic
Author

Website Security

Mohnish Khiani
Ranch Hand

Joined: May 17, 2010
Posts: 65
I have made a web site with the help of JSP and servlets.This apllication also makes use of a database to store data.I wish to host it online.My problem is that when i host it on the net the application should be highly secure.....i have no idea about how to go about it....from where do i begin and what all do i need to do to make my website secure.
Kumar Raja
Ranch Hand

Joined: Mar 18, 2010
Posts: 518
    
    2

Mohnish Khiani wrote:I have made a web site with the help of JSP and servlets.This apllication also makes use of a database to store data.I wish to host it online.My problem is that when i host it on the net the application should be highly secure.....i have no idea about how to go about it....from where do i begin and what all do i need to do to make my website secure.


Hi Mohnish,


Your question is too abstract. You can implement security in different ways. Read Implementing security in JEE web applications..


Regards
KumarRaja

Jeanne Boyarsky
internet detective
Marshal

Joined: May 26, 2003
Posts: 30057
    
149

The first step is requirements. How do you want to secure it? User id/password? 2 factor authentication? Do you have different roles? What do you need each to do?


[Blog] [JavaRanch FAQ] [How To Ask Questions The Smart Way] [Book Promos]
Blogging on Certs: SCEA Part 1, Part 2 & 3, Core Spring 3, OCAJP, OCPJP beta, TOGAF part 1 and part 2
Mohnish Khiani
Ranch Hand

Joined: May 17, 2010
Posts: 65
The application is similar to a social networking site.....so it has a database which contains the details of all users...i want to secure the data exchange between the application and the database and i also want the database alone to also be secure....what do i need to do for this?
Vijitha Kumara
Bartender

Joined: Mar 24, 2008
Posts: 3816

.i want to secure the data exchange between the application and the database

Is your application is deployed remotely to the database or you meant the data transfer between a client like browser and the application?
and i also want the database alone to also be secure....

Generally database access is protected by username/password and additionally some firewalls etc.. for network access.


SCJP 5 | SCWCD 5
[How to ask questions] [Twitter]
Ravi Kiran Va
Ranch Hand

Joined: Apr 18, 2009
Posts: 2234

The best option for you to go is using JAAS , for providing authorization and Authentication to your website .

Thanks .


Save India From Corruption - Anna Hazare.
 
It is sorta covered in the JavaRanch Style Guide.
 
subject: Website Security
 
Similar Threads
Need space for JSP and Servlet
Employers and Unemployed techies, pls. visit this
Applet and PHP
Online Version Control System
exclude url-pattern in filter-mapping