Skip to content

Instantly share code, notes, and snippets.

View Liullen's full-sized avatar

Liullen Liullen

  • Taipei, Taiwan
View GitHub Profile
@Liullen
Liullen / GPO.md
Last active August 29, 2015 14:08
@Liullen
Liullen / XSSFilter.java
Created November 3, 2014 02:47
Java 簡單的 XSS Solution (透過 Filter)
import java.io.IOException;
import javax.servlet.Filter;
import javax.servlet.FilterChain;
import javax.servlet.FilterConfig;
import javax.servlet.ServletException;
import javax.servlet.ServletRequest;
import javax.servlet.ServletResponse;
import javax.servlet.http.HttpServletRequest;
  1. 下載 CadSaveAsPdf.txt
  2. CadSaveAsPdf.txt 重新命名為 CadSaveAsPdf.exe
  3. CadSaveAsPdf.exe 複製到 C:\ (若 C:\CadSaveAsPdf.exe 已經存在, 則覆蓋掉)
  4. 將任意一個 dwg 檔案複製到 C:\ 下, 重新命名為 1.dwg (若 C:\1.dwg 已經存在就省略這步驟)
  5. 打開命令提示字元 (Windows+R 打開執行視窗, 輸入 cmd 送出)
  6. 輸入指令 cd C:\ enter 送出
  7. 輸入指令 CadSaveAsPdf.exe "C:\1.dwg" "C:\1.pdf" enter 送出
  8. 若正確應該會開始轉檔, 有問題則應該會在命令提示字元顯示錯誤訊息

###在 Tomcat 關閉已被證實不安全的 SSLv3 protocol, 並改用__TLS__

  1. 修改檔案Tomcat7\conf\server.xml
  2. <connector> 增加 attribute: sslEnabledProtocols="TLSv1,TLSv1.1,TLSv1.2" , 並拿掉 cipher 中非 TLS 的項

###修改前

    <Connector port="443" protocol="HTTP/1.1" SSLEnabled="true"
               maxThreads="150" scheme="https" secure="true"
               clientAuth="false" sslProtocol="TLS"
			   keystoreFile="tomcat.keystore" keystorePass="intumit"
@Liullen
Liullen / temp.md
Last active August 29, 2015 14:07
Supported versions:
 SSLv3 TLSv1.0 TLSv1.1 TLSv1.2
Deflate compression: no
Supported cipher suites (ORDER IS NOT SIGNIFICANT):
  SSLv3
     RSA_WITH_RC4_128_MD5
     RSA_WITH_RC4_128_SHA
     RSA_WITH_3DES_EDE_CBC_SHA
 DHE_RSA_WITH_3DES_EDE_CBC_SHA
(function() {
theLength = $j('#selGroup').get(0).length;
for (var i = 0; i<theLength; i++) {
$j('#selGroup').val(i);
addSelectedGroup();
}
})();
set dd=%date:~8,2%
set mm=%date:~5,2%
set yyyy=%date:~0,4%
set mydate=%yyyy%%mm%%dd%
REM 依照實際 7-Zip 的安裝路徑
set 7Z_HOME=C:\Program Files\7-Zip
REM tomcat 與 AP 安裝路徑
<Connector protocol="org.apache.coyote.http11.Http11Protocol"
port="443"
maxHttpHeaderSize="8192"
maxThreads="150"
minSpareThreads="25"
maxSpareThreads="75"
enableLookups="false"
disableUploadTimeout="true"
acceptCount="100"
scheme="https"
set dd=%date:~8,2%
set mm=%date:~5,2%
set yyyy=%date:~0,4%
set mydate=%yyyy%%mm%%dd%
7za.exe a -tzip D:\backup\bk_%mydate%.zip ${要壓縮備份的目錄}
@Liullen
Liullen / check.js
Last active August 29, 2015 14:05 — forked from anonymous/check.js
document.form1.attachment.onchange =function () {
var ext = this .value.split( '.').pop();
if (/^(bat|exe)$/.test(ext)) {
alert('Sorry, 我不支援 bat 和 exe 哦');
this .value = '' ;
}
}