|
|
|
|
Student Testimonials |
"Course was useful in providing general overview of ITS/CF/OS security. Second half of day had tons of useful tidbits. Thanks."
"Super knowledgable instructor." |
| |
|
Curriculum Listing
Acrobat Training
Actionscript 3 Training
Acrobat Connect Training
After Effects Training
AJAX Training
Captivate Training
CISSP Training
Contribute Training
ColdFusion Training
CommonSpot Training
CSS Training
Dreamweaver Training
Flash Training
Flex Training
Google Training
JavaScript Training
InDesign Training
JRUN Training
LiveCycle Training
Photoshop Training
Premiere Training
Robohelp Training
SQL Training
Websense Training
XML Training
On-site Customer Locations
Birmingham, AL
Phoenix, AZ
Freemont, CA
Los Angeles, CA
San Francisco, CA
Hartford, CT
Washington, DC
Cape Canaveral, FL
Talahassee, FL
West Palm Beach, FL
Atlanta, GA
Boise, ID
Chicago, IL
Cedar Falls, IA
Baton Rouge, LA
Boston, MA
Newton, MA
Baltimore, MD
Detroit, MI
Kalispell, MT
Kansas City, MO
Raleigh, NC
Ithaca, NY
Melville, NY
New York, NY
Akron, OH
State College, PA
Philadelphia, PA
Pittsburgh, PA
Charleston, SC
Oak Ridge, TN
Austin, TX
Dallas, TX
Houston, TX
Arlington, VA
Reston, VA
Herndon, VA
Hampton, VA
Newport News, VA
Richmond, VA
Seattle, WA
Milwaukee, WI
Instructor Locations
Washington, DC
Atlanta, GA
Chicago, IL
Baltimore, MD
Alexandria, VA
|  |
|
|
|
|
|
 |
|
 |
 | This one-day "RealWorld ColdFusion" seminar covers building secure ColdFusion application servers on the Windows platform, and keeping them secure. You'll learn how to secure the Windows OS, IIS and CF Server, find and eliminate security holes in your application code, and maintain security on your servers. See how attacks work, and how you can defend against them in depth. There are other security courses out there, but none that cover general Windows Internet server security as well as ColdFusion-specific security: from securing the ColdFusion server itself to securing ColdFusion applications and their dependencies. Not only will you learn the steps to security, you'll also learn how to perform those steps efficiently and quickly, and leave with ready-to-use tools and methodologies you can apply immediately. Lower your TCO and your stress with "Securing ColdFusion Servers on Windows"! This is a lecture course - not hands on. |
Price: $495.00 GSA Price: $473.81 | 
|
|
|
Course Prerequisites |
| There are no course prerequisites. |
| |
|
Course Outline |
Unit 1 ? Course Overview
This unit, following the Allaire precedent, provides a general description of the course. It includes an overview of the security ?process?, and the layering approach to security. It ends with a description of the lab materials.
Unit 2 ? The Threat
This unit describes ? and demonstrates - the array of potential attacks and their severity.
- Purposes of attacks
- Types of attacks
- Denial of service
- Impersonation
- Buffer overflows
- Targets of attacks
- Operating system
- IIS
- CGI applications (CF)
- Databases
- Other network devices
- Attack patterns and processes
- Information gathering
- Exploits
- ?Island-hopping?
.
Unit 3 ? Networking and Security Overview
This unit discusses the larger network infrastructure that will surround the web server, and examines different ways the server may be configured to work within that infrastructure.
- Public vs private access
- Security vs convenience
- Microsoft Networking
- DMZs and bastion hosts
Unit 4 ? A Layered Approach to Security
This unit describes in detail the general concepts to securing resources.
- Multiple redundant layers
- Minimizing privileges to the least possible
- Removing unnecessary options
Unit 5? Securing the Operating System
- Overview of Windows NT security
- Server installation checklist
- Building a bastion host
Unit 6 ? Securing IIS
- IIS installation checklist
Unit 7 ? Securing CF Applications
- CF Server configuration
- Changing the service account
- Disabling RDS
- Securing the CF Administrator
- Filtering input within applications
- Code auditing
Unit 8 ? Maintaining Security
- Auditing and monitoring
- Remote console access
- Applying patches and updates
- Monitoring security issues ? public resources
- Dealing with a successful attack
|
|
| Class Schedule |  | | Location | Dates | Instructor | Register |  | No public classes are currently scheduled. Call 1-877-FIG-LEAF for details on upcoming courses. | | Don?t see your city? Call 1-877-FIG-LEAF or email training@figleaf.com for information on upcoming, onsite, and private classes.
|
|
| |
|