advanced·20 min·有料

Web Tier Bypasses App Tier

Security review finds the web servers can talk directly to the database — they shouldn't be able to

シナリオ

The customer-facing application is built in three tiers, each on its own subnet: a web tier that talks to the public Internet, an application tier that the web tier talks to for business logic, and a database tier that only the application tier is supposed to reach. A routine security review found that web-tier servers can connect directly to the database tier, completely bypassing the application tier — a serious defense-in-depth violation, since a compromised web server should never be able to touch the database directly.

学習目標

  • acl
  • nftables
  • least privilege

トポロジーと設定

この環境には4台のデバイス(3 Hosts, 1 Router)が含まれます。上記のネットワーキングスキルを設定し、トラブルシューティングします。

カリキュラムのトピック

subnetica© 2026 · 学ぶ、練習する、身につける。
概要FAQプライバシーポリシー利用規約・許容利用ポリシーアクセシビリティcontact@subneti.ca
CCNAはCisco Systems, Inc.の登録商標です。CompTIA Network+およびCompTIA Security+はCompTIA, Inc.の登録商標です。Subneticaは独立系の学習プラットフォームであり、Cisco Systems, Inc.またはCompTIA, Inc.のいずれとも提携、承認、後援の関係にありません。