1. At the exit of the Internet, CISCO Secure PIX535 firewall, an industry-leading firewall, is placed to filter external illegal access and abnormal data packets through flexible rule setting, so as to protect internal servers to the maximum extent; We also filter bad information on the Internet to ensure that Rugao educates people with pure information.
2. Using the virtual local area network technology, the servers in the central computer room of MAN are divided into WEB server, internal office server, MAN management platform server (also called iGuard webpage tamper-proof publishing server), mail server, resource server, VOD video server and e-book server, among which the resource server, VOD video server and e-book server restrict access to Rugao education intranet through IP access control list, which improves the security. The main WEB server and the internal office server are mutually standby, which can quickly resume operation in case of failure or disaster.
3. Every server is installed with genuine Trend Micro online antivirus software to protect the server from viruses.
4. In terms of data storage, the website information database is fully backed up every day, and the server has RAID fault tolerance. At the same time, we will make backups between different computers regularly to ensure the safety of data storage.
5. The website has professional code maintainers and full-time administrators, and professionals are hired to conduct third-party independent tests on code security. The code is safe and reliable, and has the function of preventing injection attacks. At the same time, the website hired a number of part-time supervisors to supervise the website information in time to ensure the healthy and effective content of the website.
6. The backstage of the website adopts a strict multi-layer authority separation management mechanism, and all user passwords are stored in MD5 encryption. Authorized ordinary users in the network manage the contents of the corresponding nodes through background login according to the publishing authority granted to the nodes, and record the login IP, time and other information of the users in detail; Administrator-level users can manage the permissions of ordinary users and directly modify or delete all published information when necessary. At the same time, they can reply to guests' comments and questions on the website as needed, and control whether their contents are published.
7. Restrict the resource server and two VOD video servers from accessing Rugao Education Intranet through IP access control list, which improves the security and reduces the possibility of being attacked. The main WEB server and the internal office server are mutually standby, which can quickly resume operation in case of failure or disaster.
8. In order to do a good job of data backup, this website organizes experts to develop website tamper-proof software and unattended website safe and reliable automatic backup system software. Through the secure channel, the updated files of the website main server and the automatically generated website database files are automatically backed up to the professional backup server, which ensures that the data will not be lost even if the website server has serious faults, and has achieved good results.
9. It has a strict release review mechanism: 1. Information released by department and administrator users after logging in can be released directly. 2. Questions in interactive columns such as "Hot Questions and Answers" are distributed to all functional departments by the office, and the reply contents of each department are released after being audited by the office, and relevant information is displayed at the front desk. 3. All the information and messages added by users and customers have IP address records, which, combined with website visit logs, are convenient to find the source. 4. The person in charge of the department and the school shall review the accuracy of the information uploaded and released by the unit. 5. The office shall supervise and manage the information content and text specification of each uploaded item in the later period, and has the right to make corrections or urge the modification until it is deleted.