Security For Three-Tiered Web Application
Web application protection lies on two levels: the first is the responsibility of the server management, and the second is the responsibility of the programmer of the site (this is the scope of the research). This research suggests developing a secure web application site based on three-...
Main Author: | |
---|---|
Format: | Article |
Language: | English |
Published: |
University of Baghdad
2017-03-01
|
Series: | Ibn Al-Haitham Journal for Pure and Applied Sciences |
Subjects: | |
Online Access: | https://jih.uobaghdad.edu.iq/index.php/j/article/view/225 |
_version_ | 1818270440592769024 |
---|---|
author | Wisal H. Abdulsalam |
author_facet | Wisal H. Abdulsalam |
author_sort | Wisal H. Abdulsalam |
collection | DOAJ |
description |
Web application protection lies on two levels: the first is the responsibility of the server management, and the second is the responsibility of the programmer of the site (this is the scope of the research). This research suggests developing a secure web application site based on three-tier architecture (client, server, and database). The security of this system described as follows: using multilevel access by authorization, which means allowing access to pages depending on authorized level; password encrypted using Message Digest Five (MD5) and salt. Secure Socket Layer (SSL) protocol authentication used. Writing PHP code according to set of rules to hide source code to ensure that it cannot be stolen, verification of input before it is sent to database, and update scripts periodically to close gaps in the site. Using 2Checkout company (2CO), which is trusted international electronic money transfer to allow customers pay money in a secure manner.
|
first_indexed | 2024-12-12T21:10:19Z |
format | Article |
id | doaj.art-e088677751244c86bdca4152b0c3c809 |
institution | Directory Open Access Journal |
issn | 1609-4042 2521-3407 |
language | English |
last_indexed | 2024-12-12T21:10:19Z |
publishDate | 2017-03-01 |
publisher | University of Baghdad |
record_format | Article |
series | Ibn Al-Haitham Journal for Pure and Applied Sciences |
spelling | doaj.art-e088677751244c86bdca4152b0c3c8092022-12-22T00:11:54ZengUniversity of BaghdadIbn Al-Haitham Journal for Pure and Applied Sciences1609-40422521-34072017-03-01282Security For Three-Tiered Web ApplicationWisal H. Abdulsalam Web application protection lies on two levels: the first is the responsibility of the server management, and the second is the responsibility of the programmer of the site (this is the scope of the research). This research suggests developing a secure web application site based on three-tier architecture (client, server, and database). The security of this system described as follows: using multilevel access by authorization, which means allowing access to pages depending on authorized level; password encrypted using Message Digest Five (MD5) and salt. Secure Socket Layer (SSL) protocol authentication used. Writing PHP code according to set of rules to hide source code to ensure that it cannot be stolen, verification of input before it is sent to database, and update scripts periodically to close gaps in the site. Using 2Checkout company (2CO), which is trusted international electronic money transfer to allow customers pay money in a secure manner. https://jih.uobaghdad.edu.iq/index.php/j/article/view/225MD5, PHP, SSL, three-tiered, Web application, 2CO. |
spellingShingle | Wisal H. Abdulsalam Security For Three-Tiered Web Application Ibn Al-Haitham Journal for Pure and Applied Sciences MD5, PHP, SSL, three-tiered, Web application, 2CO. |
title | Security For Three-Tiered Web Application |
title_full | Security For Three-Tiered Web Application |
title_fullStr | Security For Three-Tiered Web Application |
title_full_unstemmed | Security For Three-Tiered Web Application |
title_short | Security For Three-Tiered Web Application |
title_sort | security for three tiered web application |
topic | MD5, PHP, SSL, three-tiered, Web application, 2CO. |
url | https://jih.uobaghdad.edu.iq/index.php/j/article/view/225 |
work_keys_str_mv | AT wisalhabdulsalam securityforthreetieredwebapplication |