• HEXUS
  • HEXUS.tv
  • channel
  • gaming
  • lifestyle
  • trust
  • community
  • ESReality
  • HEXUS.community discussion forumsVisit Corsair.com

    Welcome to the HEXUS.community discussion forums forums.

    You are currently viewing our boards as a guest which gives you limited access to view most discussions and other features. By joining our free community you will have access to post topics, respond to polls and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

    Go Back   HEXUS.community discussion forums > HEXUS.help - buying advice & technical queries > Operating systems & applications > Software and web development

    Software and web development Databases, graphics, programming, scripting and web development.

    Reply
     
    LinkBack Thread Tools
    Old 10-08-2006, 12:11 AM   #1 (permalink)
    Flak Monkey!
     
    Dorza's Avatar
     
    Join Date: Jul 2003
    Location: UK - South Wales
    Posts: 1,762
    Thanks: 36
    Thanked 17 Times in 15 Posts
    Dorza's system
    Effective and usefull things to log about website visitors

    I'm curious to know what sort of information I should be collecting about website visitors. I want to make sure that if things go tats up (i.e my site gets hacked) that I have logged enough useful information about that attacker/would be attacker for somthing to be done about it.

    I have the most obvious things logged like IP, Browser and OS all of which i know can be disguised as something else particularly the IP addy, but what other information should i try to find out about visitors? Is there anything I can do to ensure that the IPs I log are the real IPs of the user and not some proxy. Would logging the page they came from be of any help if something went wrong? I'm talking about implementing this user logging with PHP. I know theres a lot of information I could log about a user through PHP but I'm not sure how much of it is actually useful.


    Last edited by Dorza; 10-08-2006 at 12:17 AM..
    Dorza is offline   Reply With Quote
    Old 10-08-2006, 12:15 AM   #2 (permalink)
    More l33t than dangel
     
    directhex's Avatar
     
    Join Date: Jul 2003
    Location: /dev/urandom
    Posts: 13,337
    Thanks: 27
    Thanked 252 Times in 199 Posts
    directhex's system
    you could log the actual page requests - which would show you what exact URL was used for any URL-based SQL injection type attacks

    directhex is offline   Reply With Quote
    Old 10-08-2006, 12:20 AM   #3 (permalink)
    Flak Monkey!
     
    Dorza's Avatar
     
    Join Date: Jul 2003
    Location: UK - South Wales
    Posts: 1,762
    Thanks: 36
    Thanked 17 Times in 15 Posts
    Dorza's system
    Is that the same as logging what page they came from before they made an impression on one of my pages?

    Dorza is offline   Reply With Quote
    Reply

    Breadcrumb
    Go Back   HEXUS.community discussion forums > HEXUS.help - buying advice & technical queries > Operating systems & applications > Software and web development


    Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
     
    Thread Tools

    Posting Rules
    You may not post new threads
    You may not post replies
    You may not post attachments
    You may not edit your posts

    BB code is On
    Smilies are On
    [IMG] code is On
    HTML code is Off
    Trackbacks are On
    Pingbacks are On
    Refbacks are On
    Forum Jump



    All times are GMT. The time now is 11:54 PM.

    Any representations/statements made on the HEXUS.community discussion forums are the representations/statements of the author i.e. the person/organisation making them. If any such representations/statements are disputed they are a matter between the parties concerned. HEXUS Limited accepts no responsibility for any misrepresentations, inaccurate or false statements made by any person/organisation other than HEXUS Limited employees.
    Powered by vBulletin® Version 3.7.4
    Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
    Content Relevant URLs by vBSEO 3.2.0
    © Copyright 2008 HEXUS® Limited. All rights reserved. Unauthorised reproduction strictly prohibited.