Products

Solutions

Resources

Partners

Community

Blog

About

QA

Ideas Test

New Community Website

Ordinarily, you'd be at the right spot, but we've recently launched a brand new community website... For the community, by the community.

Yay... Take Me to the Community!

Welcome to the DNN Community Forums, your preferred source of online community support for all things related to DNN.
In order to participate you must be a registered DNNizen

HomeHomeOur CommunityOur CommunityCommunity Membe...Community Membe...Hey Dude, IHey Dude, I've just hacked your site
Previous
 
Next
New Post
12/2/2010 12:17 PM
 
Untitled 3

"Hey Dude, I've just hacked your site"

Logo PKP

How would you like to hear someone say that after crashing your site? And what would your answer be? PortalKeeper : the first complete firewall for DotNetNuke apps.

Why a firewall for DNN? Because just like you, we have clients who have critical data on their sites and require a 24-7 service. And in case of an attack, patches from Microsoft will always come too late.

What's the scope? A rule-based application analyzes every entering request on your site. A bunch of boolean expressions will filter them and do nothing in 99% of the cases. But when an anomaly is matched, PortalKeeper module takes immediate action: reject the request, redirect to an error page, send an alert to admins, log an event, disconnect the user... Whatever protects your portal efficiently.

Why should I care? Because unless your network is down, you can be attacked. Because hackers love Microsoft platforms. Because you did a great job building DNN sites and don't want them down. Because no other module provides such extensive protection. Because there might be another security breach tomorrow. And because your clients deserve the best service.

How much does it cost? Not a penny if you get the FREE version (coming soon) which will guaranty minimal protection against Denial of Service, Multiple connexions, cross site scripting... For custom protection on critical portals, you should get the STANDARD $100 licence here.

What am I waiting for? Good question, Dude...

Buy Me!

Snowcovered

 Aricie

Features

Look & Feel

Engine rules

A rule is made of conditions that trigger various actions when matched.
Default rules provided:

  1. Denial of Service protection (DoS)
  2. Critical accounts protection against social engineering attacks
  3. Warning email in case of simultaneous connections from the same user
  4. Super User backdoor
  5. Geographically Limited registration
  6. Warning message for IE6 users
  7. Etc...

Example: Hide login button so that unauthorized IP addresses cannot log in


Denial of Service rule


PKP Condition


Denial of Service action


Condition provider


Action provider

 

Conditions

These elements define the conditions to be matched by the client request to trigger the rule.
Conditions are boolean operations which depend on:

  1. Client source condition based on 5 types of sources:
    1. Country
    2. IP address
    3. Session
    4. Path to the page
    5. URL
  2. Portal alias condition
  3. Membership condition
  4. Request Caps condition
  5. Multiple connection
  6. Dynamic expression

You can create your own condition providers

Actions

These elements define the actions to be performed when above condition is matched.

  1. Multiple Action
  2. Log Off
  3. Redirect
  4. Request Denial
  5. Log Event
  6. Auto Login
  7. Customize Environment

You can create your own action providers

Error customization

Personalize error page after HTTP status

Recovery string

Oops! Just locked yourself out of your own site? This string allows you to log back in and reconfigure PortalKeeper properly

Thomas Chailland
Sales & Marketing - Aricie
 
Previous
 
Next
HomeHomeOur CommunityOur CommunityCommunity Membe...Community Membe...Hey Dude, IHey Dude, I've just hacked your site


These Forums are dedicated to discussion of DNN Platform and Evoq Solutions.

For the benefit of the community and to protect the integrity of the ecosystem, please observe the following posting guidelines:

  1. No Advertising. This includes promotion of commercial and non-commercial products or services which are not directly related to DNN.
  2. No vendor trolling / poaching. If someone posts about a vendor issue, allow the vendor or other customers to respond. Any post that looks like trolling / poaching will be removed.
  3. Discussion or promotion of DNN Platform product releases under a different brand name are strictly prohibited.
  4. No Flaming or Trolling.
  5. No Profanity, Racism, or Prejudice.
  6. Site Moderators have the final word on approving / removing a thread or post or comment.
  7. English language posting only, please.
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out
What is Liquid Content?
Find Out