Spring Security 3.1
暫譯: Spring Security 3.1
Robert Winch, Peter Mularien
- 出版商: Packt Publishing
- 出版日期: 2012-12-28
- 售價: $2,030
- 貴賓價: 9.5 折 $1,929
- 語言: 英文
- 頁數: 456
- 裝訂: Paperback
- ISBN: 1849518262
- ISBN-13: 9781849518260
-
相關分類:
Java 相關技術、資訊安全
海外代購書籍(需單獨結帳)
買這商品的人也買了...
-
$420$357 -
$600$510 -
$720$612 -
$520$411 -
$520$411 -
$620$527 -
$680$578 -
$780$663 -
$680$537 -
$680$449 -
$580$493 -
$590$502 -
$520$411 -
$600$540 -
$680$578 -
$450$356 -
$880$695 -
$420$357 -
$860$774 -
$354$336 -
$301區塊鏈 2.0 以太坊應用開發指南
-
$480$408 -
$407Power BI 數據分析:報表設計和數據可視化應用大全
-
$620$490 -
$580$493
相關主題
商品描述
This book demonstrates how to secure your Java applications from hackers using Spring Security 3.1. With plenty of handholding, it takes you step by step through every stage, accompanied by sample code and useful screenshots.
- Learn to leverage the power of Spring Security to keep intruders at bay through simple examples that illustrate real world problems
- Each sample demonstrates key concepts allowing you to build your knowledge of the architecture in a practical and incremental way
- Filled with samples that clearly illustrate how to integrate with the technologies and frameworks of your choice
In Detail
Knowing that experienced hackers are itching to test your skills makes security one of the most difficult and high-pressure concerns of creating an application. The complexity of properly securing an application is compounded when you must also integrate this factor with existing code, new technologies, and other frameworks. Use this book to easily secure your Java application with the tried and trusted Spring Security framework, a powerful and highly customizable authentication and access-control framework.
"Spring Security 3.1" is an incremental guide that will teach you how to protect your application from malicious users. You will learn how to cleanly integrate Spring Security into your application using the latest technologies and frameworks with the help of detailed examples.
This book is centred around a security audit of an insecure application and then modifying the sample to resolve the issues found in the audit.
The book starts by integrating a variety of authentication mechanisms. It then demonstrates how to properly restrict access to your application. It concludes with tips on integrating with some of the more popular web frameworks. An example of how Spring Security defends against session fixation, moves into concurrency control, and how you can utilize session management for administrative functions is also included.
"Spring Security 3.1" will ensure that integrating with Spring Security is seamless from start to finish.
What you will learn from this book
- Understand common security vulnerabilities and how to resolve them
- Implement authentication and authorization
- Learn to utilize existing corporate infrastructure such as LDAP, Active Directory, Kerberos, and CAS
- Integrate with popular frameworks such as Spring, JSF, GWT, Maven, and Spring Roo
- Architect solutions that leverage the full power of Spring Security while remaining loosely coupled
- Implement common scenarios such as supporting existing user stores, user sign up, and supporting AJAX requests
Approach
This practical step-by-step tutorial has plenty of example code coupled with the necessary screenshots and clear narration so that grasping content is made easier and quicker.
Who this book is written for
This book is intended for Java web developers and assumes a basic understanding of creating Java web applications, XML, and the Spring Framework. You are not assumed to have any previous experience with Spring Security.
商品描述(中文翻譯)
這本書展示了如何使用 Spring Security 3.1 來保護您的 Java 應用程式免受黑客攻擊。書中提供了大量的指導,逐步引導您完成每個階段,並附有範例程式碼和有用的截圖。
- 學習利用 Spring Security 的強大功能,通過簡單的範例來防範入侵者,這些範例說明了現實世界中的問題
- 每個範例展示了關鍵概念,讓您能夠以實用和漸進的方式建立對架構的理解
- 充滿範例,清楚說明如何與您選擇的技術和框架進行整合
**詳細內容**
知道經驗豐富的黑客渴望測試您的技能,使得安全性成為創建應用程式時最困難且壓力最大的考量之一。當您必須將這一因素與現有代碼、新技術和其他框架整合時,正確保護應用程式的複雜性會加劇。使用這本書,您可以輕鬆地使用經過驗證的 Spring Security 框架來保護您的 Java 應用程式,這是一個強大且高度可自定義的身份驗證和訪問控制框架。
《Spring Security 3.1》是一個漸進式指南,將教您如何保護您的應用程式免受惡意用戶的攻擊。您將學習如何使用最新的技術和框架,將 Spring Security 乾淨地整合到您的應用程式中,並通過詳細的範例來輔助學習。
這本書圍繞著對一個不安全應用程式的安全審計,然後修改範例以解決審計中發現的問題。
本書首先整合各種身份驗證機制,然後展示如何正確限制對應用程式的訪問。最後提供了一些與更流行的網頁框架整合的建議。還包括了 Spring Security 如何防禦會話固定攻擊的範例,並探討了並發控制以及如何利用會話管理進行管理功能。
《Spring Security 3.1》將確保從頭到尾與 Spring Security 的整合是無縫的。
**您將從這本書中學到什麼**
- 了解常見的安全漏洞及其解決方法
- 實施身份驗證和授權
- 學習利用現有的企業基礎設施,如 LDAP、Active Directory、Kerberos 和 CAS
- 與流行框架如 Spring、JSF、GWT、Maven 和 Spring Roo 整合
- 設計解決方案,充分利用 Spring Security 的強大功能,同時保持鬆散耦合
- 實施常見場景,如支持現有用戶存儲、用戶註冊和支持 AJAX 請求
**方法**
這本實用的逐步教程提供了大量範例程式碼,並配有必要的截圖和清晰的敘述,使得理解內容變得更容易和更快速。
**本書的讀者對象**
這本書是為 Java 網頁開發人員而寫,假設讀者對創建 Java 網頁應用程式、XML 和 Spring Framework 有基本的了解。讀者不需要具備任何 Spring Security 的先前經驗。