Prev | Current Page 76 | Next

Rich Cannings, Himanshu Dwivedi, Zane Lackey, and Alex Stamos

"Hacking Exposed Web 2.0: Web 2.0 Security Secrets and Solutions"

domain variable on the requested page. Namely, if
http://www.foo.com/bar/baz.html had the following in its page,

then http://xyz.foo.com/anywhere.html can send an HTTP request to http://www.foo
.com/bar/baz.html and read its contents.
URL Can I access it? Why or why not?
http://foo.com/index.
html
Yes The protocol and hostname match.
The port is not explicitly stated.
The port is assumed to be 80. Note
that the directories differ. This
directory is / while the other is /bar.
http://foo.com/
cgi-bin/version2/
webApp
Yes The protocol and hostname match.
The port is not explicitly stated.
The port is assumed to be 80. Note
that the directories differ. This
directory is /cgi-bin/version2 while
the other is /bar.
http://foo.com:80/bar/
baz.html
Yes Has almost identical URL. The
HTTP protocol matches, the port is
80 (the default port for HTTP), and
the hostname is the same.
https://foo.com/bar/
baz.html
No The protocols differ. This one uses
HTTPS.
http://www.foo.com/
bar/baz.html
No The hostnames differ. This
hostname is www.foo.com instead of
foo.com
http://foo.com:8080/
bar/baz.html
No The port numbers differ.


Pages:
64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88
perfumy fm Anteny satelitarne apartamenty przy plaży online loan for bad credit rekuperatory