CS5331 Web Security - Assignment 0

Similar documents
Livezilla How to Install on Shared Hosting By: Jon Manning

CDH installation & Application Test Report

ECT362 Installing Linux Virtual Machine in KL322

OCS Virtual image. User guide. Version: Viking Edition

Tips for getting started! with! Virtual Data Center!

Ad Hoc (Temporary) Accounts Instructions

FAQ. How does the new Big Bend Backup (powered by Keepit) work?

How do I Install and Configure MS Remote Desktop for the Haas Terminal Server on my Mac?

HW9 WordPress & Google Analytics

Introduction. Installation of SE S AM E BARCODE virtual machine distribution. (Windows / Mac / Linux)

CC File Transfer. User Manual

Using. Microsoft Virtual PC. Page 1

(this is being worked on)

Using VirtualBox ACHOTL1 Virtual Machines

Guidance for IA DMM: Connecting Your Computer to FSU Video File Server

MySQL Quick Start Guide

FTP Accounts Contents

Connecting to the School of Computing Servers and Transferring Files

Sentral servers provide a wide range of services to school networks.

educ Office Remove & create new Outlook profile

How do I Install and Configure MS Remote Desktop for the Haas Terminal Server on my Mac?

Installation Guide. Research Computing Team V1.9 RESTRICTED

Quick Start Guide. Hosting Your Domain

DSI File Server Client Documentation

Installing Microsoft Outlook on a Macintosh. This document explains how to download, install and configure Microsoft Outlook on a Macintosh.

Accessing your Staff (N and O drive) files from off campus

It is recommended that you use a clean installation of Lion client before upgrading to Lion Server.

Access the TCNJ Palo Alto Networks VPN using the GlobalProtect VPN client

Using Internet or Windows Explorer to Upload Your Site

Instructions for Setup and Connecting to Department of Education Secure FTP(SFTP) server January 23, 2013

NAS 249 Virtual Machine Configuration with VirtualBox

Campus VPN. Version 1.0 September 22, 2008

OrangeHRM Web Installation Guide for Windows

Personal Virtual Server (PVS) Quick Start Guide

HWS Virtual Private Network Configuration and Setup Mac OS X 12/19/2006

Anchor End-User Guide

Lesson 7 - Website Administration

MySQL quick start guide

Installation Guidelines (MySQL database & Archivists Toolkit client)

owncloud Configuration and Usage Guide

Getting Started with Web Hosting at TechServ

Accessing VirtualBox Guests from Host using SSH, WinSCP and Tunnelling

Accessing the Media General SSL VPN

CONNECTING TO DEPARTMENT OF COMPUTER SCIENCE SERVERS BOTH FROM ON AND OFF CAMPUS USING TUNNELING, PuTTY, AND VNC Client Utilities

SysAidTM Freeware Installation Guide

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

MiraCosta College now offers two ways to access your student virtual desktop.

Rensselaer Union Club Webhosting CPanel Guide

Oracle Solaris Remote Lab User Guide for Release 1.01

TIMETABLE ADMINISTRATOR S MANUAL

Using Virtual Machines

Implementation & Management of Systems Security. Amavax Project. Ethical Hacking Challenge. Group Project By

Installing buzztouch Self Hosted

Installing Windows On A Macintosh Or Linux Using A Virtual Machine

What you will need before beginning this guide

Deploying BitDefender Client Security and BitDefender Windows Server Solutions

1. Installation Overview

How to Backup XenServer VM with VirtualIQ

Setting up a Virtual Private Network (VPN) connection Windows 8

How to use

AJ Matrix V5. Installation Manual

GENERAL FILE TRANSFER GUIDELINES

EZblue BusinessServer The All - In - One Server For Your Home And Business

equate Installation QUICK START GUIDE

Welcome to Collage (Draft v0.1)

EZblue BusinessServer The All - In - One Server For Your Home And Business

AkrutoSync 4.0 User Guide

How to connect to the University of Exeter VPN service

Uploading files to FTP server

Thecus OS6 Step-by-Step Initialization Guide & OS6 Features Overview

Installing Matlab at Home

THE EDINBURGH NAPIER UNIVERSITY WINDOWS VIRTUAL PRIVATE NETWORK (VPN) GUIDE FOR MAC USERS

File Space / Web Space / Database Space - Self-Service Allocation August 2009

How To Install An Org Vm Server On A Virtual Box On An Ubuntu (Orchestra) On A Windows Box On A Microsoft Zephyrus (Orroster) 2.5 (Orner)

Download and Install the Citrix Receiver for Mac/Linux

Install FileZilla Client. Connecting to an FTP server

Expresso Quick Install

VCL Access. VCL provides access to Linux and Windows 7 Virtual Machines. Users will only see those images that they are authorized to access.

Instructions for Accessing the Advanced Computing Facility Supercomputing Cluster at the University of Kansas

This installation guide will help you install your chosen IceTheme Template with the Cloner Installer package.

Kaltura On-Prem Evaluation Package - Getting Started

VMware Horizon FLEX User Guide

MySQL Quick Start Guide

osclass open source classifieds Installation Guide step by step

Drop Shipping. Contents. Overview 2. Quick Tips 3. Basic Setup 4. Drop Ship Options 5. File Pickup Options 6. Messages 8

Access your directories (home directory and shared directories) outside Tilburg University

Upgrading Redwood Engine Software. Version 2.0.x to 3.1.0

FOG Guide. IPBRICK International. July 17, 2013

Installation documentation for Ulteo Open Virtual Desktop

Managed Devices - Web Browser/HiView

EDGETECH FTP SITE CUSTOMER & VENDOR ACCESS

Mac OS X: INSTALLING TUNNELBLICK

Lets Get Started In this tutorial, I will be migrating a Drupal CMS using FTP. The steps should be relatively similar for any other website.

Ulteo Open Virtual Desktop Installation

VMware Horizon FLEX User Guide

Marcum LLP MFT Guide

User Manual. User Manual Version

FTP Over SSL (FTPS) Core FTP LE. Installing Core FTP LE"

MATLAB on EC2 Instructions Guide

Connecting to Remote Desktop Windows Users

Transcription:

CS5331 Web Security - Assignment 0 Due : 25 Jan 2016 1 Background The objective of this assignment is to give you a hands-on experience of setting up a virtual machine. This is an INDIVIDUAL assignment and it will count 5 points towards your final grade. 2 Requirements 2.1 Step I: Setup In this assignment, we will give you a virtual machine (VM) disk image file. The virtual machine has the following software installed within for web hosting. Ubuntu 10.04 64-bit version Apache Web Server PHP module MySQL Database Web application package First, you should download this VM image (See Section 3). After that, you should run it using a virtualization software. The username is student and password for the account is student as well. We suggest you to use VirtualBox. Go to this page to download the software. Note: We will not provide PCs for you. You are expected to have your own PC for the course. Your PC should be able to run 64-bit VMs. We do not have/provide 32-bit VMs. 1

Figure 1: UI of secret page 2.2 Step II: Go Find the Secret! After setting up the guest virtual machine, you are supposed to find a secret string located on a secret PHP page. The secret PHP page is located on the guest VM somewhere under /home/student/public html/owncloud folder. The user interface of the secret page is shown in Figure 1. Once you locate the secret PHP page, enter your name and matriculation number. Then, click on the button to reveal the secret string. 2.3 Step III: Access from Host Machine Do make sure that the web application hosted inside your guest VM is accessible simply by web browser running on your host machine. Please take a look at file vm-access.pdf to configure your guest VM for host access. 3 Resources You will be assigned one web application for this assignment. You are required to download your VM disk image file, credential information, and configuration files from the course server. We have enabled FTP on the course server so that you will be able to access these files. To access the resources via FTP, use this URL: ftp://group0@andromeda.d2.comp.nus.edu.sg. The username is group0 and password for the account is group0 as well. The size of the resource that you are going to download is around 5 GB. Thus, you are advised to download them from within SOC network. If you still want to download from outside SOC network, you might want to check this to set up SOC-VPN and this to do SSH tunnelling. 2

Important! O -campus (and even on-campus) download takes excessive time to complete. Do not wait until last minute to finish your assignment. 4 Deliverable and Submission Once you obtain your secret string, take a screenshot of your PC. Your screenshot MUST display both your guest VM and web browser accessing the secret PHP page on your host machine. Figure 2 shows a valid example of a screenshot, except that you don t have to conceal the URL address. Deadline for uploading your screenshot to IVLE is 25 Jan 2016, 11:59pm. Use the following format for your file name : [MAT-No.] Assignment0.[PDF or JPG or PNG]. For example, A4878822X Assignment0.JPG is a valid one. Figure 2: Sample Screenshot 5 Form your group Form your group for subsequent assignments and send an email to the TAs informing about your choice. Each group has exactly 4 members. The email subject should be [CS5331] GROUP MAT1, MAT2, MAT3, MAT4, where MATX is the matriculation number of the group member. Only one group member needs 3

to send this. Group is final and course-long, and can t be changed after Assignment 0. In case you cannot find a group for yourself, or you need more members for your group, the IVLE forum is helpful. If IVLE does not solve your problem, do send an email to the TAs. The TAs will help you form your group. The email subject should be [CS5331] NEEDGROUP MAT NAME, if you are not in any group. [CS5331] NEEDMEMBER MAT1, MAT2... which includes all the existing members in your group so far, if you need more member for your group. Deadline for picking your teammates and emailing to TAs is 28 Jan 2016, 11:59pm. 6 Contact TAs : Shen Shiqi & Loi Luu (cs5331.ta@gmail.com) 7 FAQ 1. How to download the files from FTP? The simplest way to do it would be to use your web browser. Go to ftp://group0@andromeda.d2.comp.nus.edu.sg. After you reach the page, you will be asked for credential information. Use password information that you have got to log into the system. Once you log in, you will be redirected to a folder which contains all resources that you need. Finally, save all those files on your machine. You can also consider trying free FTP client software. FileZilla is one of popular tools for transferring file using FTP. You can download the tool here. Once you run this software, you need to specify the host name (ftp://andromeda.d2.comp.nus.edu.sg) and credential information as well. FileZilla has GUI tool on which you can easily drag files from the server to your machine. It also has versions running on Windows, Linux, and MAC OS. 2. Is the server accessible from outside SOC network? No, it is not. 3. How to download the files from outside SOC network? First, you need to make a VPN connection to SOC network. VPN enables a computer to send and receive data that supposedly be accessible within private network. It extends the private network by giving you a private IP address even when you are not directly connected to the network. Read 4

through this, this, and this on how to set up a VPN connection to SOC network. Once you connected to SOC network using VPN, it should be easier by now. You could just refer back to first FAQ question on how to download the files from andromeda. 4. I cannot access my guest VM s web server from host machine, what should I do? Read vm-access.pdf on how to configure you guest VM for host access. If you are still unable to access VM s web server, you might need to configure the IP address of your web application. Some applications provide an interface to change web application s base URL. Some others might not have such feature, so you might need to modify it directly on their PHP file. 5