Please consider the latest edition.
-
Introduction
-
Chapter 1 The Web Security Landscape
- Web Security in a Nutshell
- The Web Security Problem
- Credit Cards, Encryption, and the Web
- Firewalls: Part of the Solution
- Risk Management
-
-
User Safety
-
Chapter 2 The Buggy Browser: Evolution of Risk
- Browser History
- Data-Driven Attacks
- Implementation Flaws: A Litany of Bugs
-
Chapter 3 Java and JavaScript
- Java
- JavaScript
- Denial-of-Service Attacks
- JavaScript-Enabled Spoofing Attacks
- Conclusion
-
Chapter 4 Downloading Machine Code with ActiveX and Plug-Ins
- When Good Browsers Go Bad
- Netscape Plug-Ins
- ActiveX and Authenticode
- The Risks of Downloaded Code
- Is Authenticode a Solution?
- Improving the Security of Downloaded Code
-
Chapter 5 Privacy
- Log Files
- Cookies
- Personally Identifiable Information
- Anonymizers
- Unanticipated Disclosure
-
-
Digital Certificates
-
Chapter 6 Digital Identification Techniques
- Identification
- Public Key Infrastructure
- Problems Building a Public Key Infrastructure
- Ten Policy Questions
-
Chapter 7 Certification Authorities and Server Certificates
- Certificates Today
- Certification Authority Certificates
- Server Certificates
- Conclusion
-
Chapter 8 Client-Side Digital Certificates
- Client Certificates
- A Tour of the VeriSign Digital ID Center
-
Chapter 9 Code Signing and Microsoft's Authenticode
- Why Code Signing?
- Microsoft's Authenticode Technology
- Obtaining a Software Publisher's Certificate
- Other Code Signing Methods
-
-
Cryptography
-
Chapter 10 Cryptography Basics
- Understanding Cryptography
- Symmetric Key Algorithms
- Public Key Algorithms
- Message Digest Functions
- Public Key Infrastructure
-
Chapter 11 Cryptography and the Web
- Cryptography and Web Security
- Today's Working Encryption Systems
- U.S. Restrictions on Cryptography
- Foreign Restrictions on Cryptography
-
Chapter 12 Understanding SSL and TLS
- What Is SSL?
- TLS Standards Activities
- SSL: The User's Point of View
-
-
Web Server Security
-
Chapter 13 Host and Site Security
- Historically Unsecure Hosts
- Current Major Host Security Problems
- Minimizing Risk by Minimizing Services
- Secure Content Updating
- Back-End Databases
- Physical Security
-
Chapter 14 Controlling Access to Your Web Server
- Access Control Strategies
- Implementing Access Controls with <Limit> Blocks
- A Simple User Management System
-
Chapter 15 Secure CGI/API Programming
- The Danger of Extensibility
- Rules To Code By
- Specific Rules for Specific Programming Languages
- Tips on Writing CGI Scripts That Run with Additional Privileges
- Conclusion
-
-
Commerce and Society
-
Chapter 16 Digital Payments
- Charga-Plates, Diners Club, and Credit Cards
- Internet-Based Payment Systems
- How to Evaluate a Credit Card Payment System
-
Chapter 17 Blocking Software and Censorship Technology
- Blocking Software
- PICS
- RSACi
-
Chapter 18 Legal Issues: Civil
- Intellectual Property
- Torts
-
Chapter 19 Legal Issues: Criminal
- Your Legal Options After a Break-In
- Criminal Hazards That May Await You
- Criminal Subject Matter
- Play it Safe . . .
- Laws and Activism
-
-
Appendixes
-
Appendix A Lessons from Vineyard.NET
- Planning and Preparation
- IP Connectivity
- Commercial Start-Up
- Ongoing Operations
- Conclusion
-
Appendix B Creating and Installing WebServer Certificates
- Downloading and Installing Your Web Server
- Apache-SSL
-
Appendix C The SSL 3.0 Protocol
- History
- SSL 3.0 Record Layer
- SSL 3.0 Protocols
- SSL 3.0 Handshake
- SSLeay
-
Appendix D The PICS Specification
- Rating Services
- PICS Labels
-
Appendix E References
- Electronic References
- Paper References
-
-
Colophon
- Title:
- Web Security and Commerce
- By:
- Simson Garfinkel, Gene Spafford
- Publisher:
- O'Reilly Media
- Formats:
-
- Safari Books Online
- Print Release:
- June 1997
- Pages:
- 506
- Print ISBN:
- 978-1-56592-269-3
- | ISBN 10:
- 1-56592-269-7
Our look is the result of reader comments, our own experimentation, and feedback from distribution channels. Distinctive covers complement our distinctive approach to technical topics, breathing personality and life into potentially dry subjects. The fish featured on the cover of Web Security & Commerce is a whale shark. Sharks have lived on the Earth for over 300 million years, and populate all the oceans of the world (as well as some freshwater lakes and rivers). They are related to skates and rays, differing from ordinary bony fish in having a cartilaginous skeleton that makes their bodies unusually flexible. Unlike bony fish, sharks give birth to live young, in small litters.
A common misconception about sharks is that they need to keep swimming at all times. While they do need to move their fins constantly in order to stay afloat, many species of sharks like to rest on the bottom of the ocean floor.
Sharks make excellent predators because of their well-developed sensory system (not to mention their big, sharp teeth). They have excellent eyesight and an unusually keen sense of smell; they are known to be able to locate prey from a single drop of blood. Sharks can also sense electrical currents in the water indicating the presence of other fish. They retain several rows of teeth, which roll outward to replace those that are lost.
The whale shark, on the other hand, is a kinder, gentler shark. Whale sharks (Rhinocodon typus) have a large flat head, a wide mouth, and tiny teeth. As a filter feeder, they feed primarily on plankton and small fish. They have distinctive spotted markings on their fins and dorsal sides. Whale sharks are so named because of their size: they may weigh more than 18 metric tons and measure up to 60 feet long. They are the largest species of fish alive today.
Whale sharks live in tropical and temperate seas. They pose little or no risk to humans. In fact, whale sharks are considered a particular treat to divers, since they are impressive in size but are slow-moving and not aggressive. Edie Freedman designed the cover of this book, using a 19th-century engraving from the Dover Pictorial Archive. The cover layout was produced with Quark XPress 3.3 using the ITC Garamond font.
The inside layout was designed by Edie Freedman and Nancy Priest and implemented in FrameMaker 5.0 by Mike Sierra. The text and heading fonts are ITC Garamond Light and Garamond Book. The illustrations that appear in the book were created in Macromedia Freehand 5.0 by Chris Reilley. This colophon was written by Linda Mui.
