Solved

best practice secure web application on server

Posted on 2013-05-20
3
348 Views
Last Modified: 2013-07-30
I am setting up a server for a web application. The server will sit inside our private network but will need to be accessible from outside our firewall with out using a vpn client. What can I do to make sure the server is secure. I will open up port 80 only to the server on the firewall. Anything other advice.

Thanks
0
Comment
Question by:paul_techy
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
3 Comments
 
LVL 4

Accepted Solution

by:
bepsoccer1 earned 167 total points
ID: 39181860
You are correct, just ensure only port 80 is open on the firewall for the web server.  Though, for stronger security you might add SSL/force SSL then you would also, need to open port 443.
0
 
LVL 28

Assisted Solution

by:asavener
asavener earned 167 total points
ID: 39182076
Best practice is to put the web server in a separate (DMZ) subnet from your internal network.

Make absolutely sure that your web server (always!) has all of the latest security patches.  Make absolutely sure that you follow best practices for securing the particular web platform you're using.  (Such as removing sample scripts, only enabling needed services, etc.)
0
 
LVL 3

Assisted Solution

by:ajmehta
ajmehta earned 166 total points
ID: 39182190
If you know the inbound IP addresses (not dynamic), I would highly suggest limiting connections to those IPs
0

Featured Post

Free Webinar: AWS Backup & DR

Join our upcoming webinar with experts from AWS, CloudBerry Lab, and the Town of Edgartown IT to discuss best practices for simplifying online backup management and cutting costs.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Rogue RDP Connections 5 61
Error after upgrade of 3850s 15 54
Set Static IP of machine without console access 1 53
FTP servers in Windows 2008 3 55
I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
Many of the companies I’ve worked with have embraced cloud solutions due to their desire to “get out of the datacenter business.” The ability to achieve better security and availability, and the speed with which they are able to deploy, is far grea…
This tutorial will walk an individual through locating and launching the BEUtility application to properly change the service account username and\or password in situation where it may be necessary or where the password has been inadvertently change…
Both in life and business – not all partnerships are created equal. As the demand for cloud services increases, so do the number of self-proclaimed cloud partners. Asking the right questions up front in the partnership, will enable both parties …

733 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question