{"id":9781,"date":"2017-04-25T09:41:29","date_gmt":"2017-04-25T07:41:29","guid":{"rendered":"https:\/\/ihs.com.tr\/blog\/?p=9781"},"modified":"2020-08-12T16:49:24","modified_gmt":"2020-08-12T14:49:24","slug":"joomla-guvenligini-arttirmanin-6-yolu","status":"publish","type":"post","link":"https:\/\/www.ihs.com.tr\/blog\/joomla-guvenligini-arttirmanin-6-yolu\/","title":{"rendered":"Joomla G\u00fcvenli\u011fini Artt\u0131rman\u0131n 6 Yolu"},"content":{"rendered":"<p><span style=\"font-size: 14pt;\">Joomla bireyler, k\u00fc\u00e7\u00fck ve orta \u00f6l\u00e7ekli i\u015fletmeler, b\u00fcy\u00fck kurulu\u015flar ve geli\u015ftiriciler i\u00e7in a\u00e7\u0131k kaynakl\u0131 bir web sitesi olu\u015fturma arac\u0131 olarak son zamanlarda pop\u00fclaritesini bir hayli artt\u0131rd\u0131. 78 milyon kez indirildi ve \u015fu an milyonlarca web sitesi Joomla ile \u00e7al\u0131\u015f\u0131yor.<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Joomla web siteleri i\u00e7erik y\u00f6netim sistemlerini ve genel olarak interneti zor durumda b\u0131rakan siber sald\u0131r\u0131lardan nasibini al\u0131yor. 2015 ve 2016 y\u0131l\u0131nda Joomla ve WordPress sitelerini vuran sahte jQuery sald\u0131r\u0131lar\u0131nda 4.5 milyon site etkilenmi\u015fti.\u00a0 \u00a0<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Web sitenizi korumak i\u00e7in kod enjeksiyonu sald\u0131r\u0131lar\u0131n\u0131n nas\u0131l i\u015fledi\u011fini t\u00fcm detaylar\u0131yla bilmenize gerek yok. Ancak, temel g\u00fcvenlik \u00f6nlemlerini alarak sitenizin bu ve bunun gibi sald\u0131r\u0131lara hedef olma ihtimalini de azaltm\u0131\u015f olursunuz.<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Web sitenizi ve ziyaret\u00e7ilerinizi korumak i\u00e7in a\u015fa\u011f\u0131da yaz\u0131lanlar\u0131 uygulaman\u0131z sizin yarar\u0131n\u0131za olacakt\u0131r.<\/span><\/p>\n<p><strong><span style=\"font-size: 14pt;\">1- \u0130\u015fe g\u00fcvenlikle ba\u015flay\u0131n<\/span><\/strong><\/p>\n<p><span style=\"font-size: 14pt;\">D\u00fczenli olarak tarama yapan iyi bir antivir\u00fcs hizmeti web sitenizin g\u00fcvenli\u011finin en de\u011ferli par\u00e7alar\u0131ndan biri olacakt\u0131r. Ancak bu hen\u00fcz i\u015fin ba\u015flang\u0131\u00e7 a\u015famas\u0131n\u0131 olu\u015fturacak. G\u00fcvenlik konusunun genel anlamda stratejinizin en \u00f6nemli par\u00e7alar\u0131ndan biri olmas\u0131 gerekiyor. G\u00fcvenlik kapsam\u0131nda tamamen size \u00f6zg\u00fc bir parola, \u00e7ok unsurlu kimlik do\u011frulama ve izinsiz giri\u015f tespit sistemi olmal\u0131. Joomla web sitenizin g\u00fcvenli\u011fi i\u00e7in at\u0131lmas\u0131 gereken ilk ad\u0131m g\u00fcvenlik konusunu ciddiye almak olmal\u0131d\u0131r.<\/span><\/p>\n<p><strong><span style=\"font-size: 14pt;\">2- Joomla\u2019n\u0131z\u0131 ve eklentilerini s\u00fcrekli g\u00fcncelleyin<\/span><\/strong><\/p>\n<p><span style=\"font-size: 14pt;\">T\u00fcm i\u00e7erik y\u00f6netim sistemleri gibi Joomla\u2019n\u0131n da s\u00fcrekli g\u00fcncellenerek g\u00fcvenli\u011finin s\u00fcrd\u00fcr\u00fclmesi gerekir. S\u00fcrekli olarak Joomla\u2019n\u0131n en son s\u00fcr\u00fcm\u00fcn\u00fc kullanmak yeni \u00f6zellikleri kullanmay\u0131 sa\u011flad\u0131\u011f\u0131 gibi, a\u00e7\u0131klar\u0131n tespit edilmesini ve ortadan kald\u0131r\u0131lmas\u0131n\u0131 da kolayla\u015ft\u0131r\u0131r. Ayn\u0131 \u015fey eklentiler i\u00e7in de ge\u00e7erlidir. Eklentiler s\u00fcrekli sald\u0131r\u0131ya u\u011frar, bu nedenle Joomla d\u00fczenli olarak bir <a href=\"https:\/\/docs.joomla.org\/Vulnerable_Extensions_List\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">a\u00e7\u0131kl\u0131 eklentiler listesi<\/a> yay\u0131nlar. Bu listeyi d\u00fczenli olarak kontrol etmekte fayda vard\u0131r.<\/span><\/p>\n<p><img decoding=\"async\" class=\"alignnone wp-image-9782 size-medium\" src=\"https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2017\/03\/joomla-g\u00fcvenli\u011fi-300x169.jpg\" alt=\"joomla g\u00fcvenli\u011fi\" width=\"300\" height=\"169\" srcset=\"https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2017\/03\/joomla-g\u00fcvenli\u011fi-300x169.jpg 300w, https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2017\/03\/joomla-g\u00fcvenli\u011fi-1024x576.jpg 1024w, https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2017\/03\/joomla-g\u00fcvenli\u011fi-1170x663.jpg 1170w, https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2017\/03\/joomla-g\u00fcvenli\u011fi.jpg 1920w, https:\/\/www.ihs.com.tr\/blog\/wp-content\/uploads\/2017\/03\/joomla-g\u00fcvenli\u011fi-585x329.jpg 585w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/p>\n<p><strong><span style=\"font-size: 14pt;\">3- URL\u2019lerinizi yeniden yaz\u0131n<\/span><\/strong><\/p>\n<p><span style=\"font-size: 14pt;\">Arama motoru dostu URL\u2019ler Google s\u0131ralamalar\u0131n\u0131z\u0131 olumlu olarak etkiler. Ayn\u0131 zamanda g\u00fcvenlik bak\u0131m\u0131ndan da ciddi bir katk\u0131 sa\u011flar \u00e7\u00fcnk\u00fc eski URL\u2019ler hackerlara a\u00e7\u0131klara sald\u0131rabilecekleri bilgiler sunabilir. Hackerlar\u0131n geli\u015fmi\u015f Google aramalar\u0131nda g\u00f6r\u00fcnmeyen SEF URL\u2019ler olu\u015fturabilmenizi sa\u011flayan, baz\u0131lar\u0131 \u00fccretli baz\u0131lar\u0131 \u00fccretsiz bir\u00e7ok Joomla <a href=\"https:\/\/extensions.joomla.org\/extensions\/extension\/?searchall=sef&amp;filter%5Btags%5D%5B%5D=&amp;filter%5Bcore_catid%5D=&amp;filter%5Bincludes%5D=&amp;filter%5Bversions%5D=&amp;filter%5Btype%5D=&amp;filter%5Bhasdemo%5D=&amp;filter%5Bnewupdated%5D=&amp;filter%5Bscore%5D=&amp;dir=DESC&amp;limitstart=&amp;controller=filter&amp;view=extension&amp;layout=list&amp;Itemid=145&amp;clearorders=0&amp;clearfilters=1\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">eklentisi <\/a>bulunmakta.<\/span><\/p>\n<p><strong><span style=\"font-size: 14pt;\">4- SSL Sertifikas\u0131 kullan\u0131n<br \/>\n<\/span><\/strong><\/p>\n<p><span style=\"font-size: 14pt;\">SSL web sunucusuyla ziyaret\u00e7inin web taray\u0131c\u0131s\u0131 aras\u0131nda kriptolanm\u0131\u015f bir ileti\u015fim olu\u015fturarak \u00f6zel, hassas veya gizli t\u00fcm bilgilerin \u00e7e\u015fitli siber sald\u0131r\u0131lara maruz kalmadan g\u00fcvenli bir \u015fekilde iletilmesini sa\u011fl\u0131yor. Bir web sitesinde gerekli SSL oldu\u011fu takdirde, web taray\u0131c\u0131s\u0131 ve web sitesinin sunucusu aras\u0131nda gidip gelen t\u00fcm bilgiler kriptolan\u0131r ve bu bilgiyi yaln\u0131zca web sitesinin sahibi g\u00f6rebilir. <a href=\"\/ssl\/rapidssl.html\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">RapidSSL<\/a> ile ba\u015flaman\u0131z m\u00fcmk\u00fcn.<br \/>\n<\/span><\/p>\n<p><strong><span style=\"font-size: 14pt;\">5- \u0130zinleri do\u011fru \u015fekilde ayarlay\u0131n<\/span><\/strong><\/p>\n<p><span style=\"font-size: 14pt;\">Bir web sitesindeki dizinler ve dosyalar farkl\u0131 ki\u015filer taraf\u0131ndan okunabilecek, yaz\u0131labilecek ve \u00e7al\u0131\u015ft\u0131r\u0131labilecek \u015fekilde ayarlanabilir. Web sitesi sahipleri veya y\u00f6neticileri genellikle dosya ve dizin yazma iznine sahip tek ki\u015fi olmal\u0131d\u0131r. PHP\u2019ye yazma iznine ise kimse sahip olmamal\u0131d\u0131r. 777\u2019ye ayarlanm\u0131\u015f dosya izinleri herkesin dosyalar\u0131 istedi\u011fi \u015fekilde okuyabilmesini ve de\u011fi\u015ftirebilmesini sa\u011flar. Tavsiye edilen ayarlar dizinler i\u00e7in 755, dosyalar i\u00e7in 644, PHP i\u00e7in 444\u2019t\u00fcr.<\/span><\/p>\n<p><strong><span style=\"font-size: 14pt;\">6- \u0130yi bir host se\u00e7in<\/span><\/strong><\/p>\n<p><span style=\"font-size: 14pt;\">\u00c7o\u011fu KOB\u0130 ve birey i\u00e7in web hosting firmas\u0131 tercihi yaparken en \u00f6nemli husus maliyettir. Ayda 2 dolar gibi c\u00fczi bir miktardan ba\u015flay\u0131p \u00e7oklu site \u00e7\u00f6z\u00fcmleri i\u00e7in 12 dolara kadar \u00e7ok say\u0131da hosting paketi bulunmaktad\u0131r. 7\/24 \u00fccretsiz destek alabilece\u011finiz <a href=\"https:\/\/www.ihs.com.tr\/web-hosting\/joomla-hosting.html\" target=\"_blank\" rel=\"noopener noreferrer\">Joomla hosting<\/a> paketini tercih edebilirsiniz.<br \/>\n<\/span><\/p>\n<p><span style=\"font-size: 14pt;\">Joomla site y\u00f6neticileri i\u00e7in <a href=\"https:\/\/docs.joomla.org\/Joomla_Administrators_Security_Checklist\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">g\u00fcvenlik kontrol listesi <\/a>gibi bir\u00e7ok faydal\u0131 belge de yay\u0131nl\u0131yor. Bu belgelere de d\u00fczenli olarak g\u00f6z atmak mutlaka faydal\u0131 olacakt\u0131r.<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Joomla bireyler, k\u00fc\u00e7\u00fck ve orta \u00f6l\u00e7ekli i\u015fletmeler, b\u00fcy\u00fck kurulu\u015flar ve geli\u015ftiriciler i\u00e7in a\u00e7\u0131k kaynakl\u0131 bir web sitesi olu\u015fturma arac\u0131 olarak son zamanlarda&hellip;<\/p>\n","protected":false},"author":3,"featured_media":9783,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-9781","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-haberler"],"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9781","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/comments?post=9781"}],"version-history":[{"count":5,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9781\/revisions"}],"predecessor-version":[{"id":13677,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/posts\/9781\/revisions\/13677"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/media\/9783"}],"wp:attachment":[{"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/media?parent=9781"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/categories?post=9781"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.ihs.com.tr\/blog\/wp-json\/wp\/v2\/tags?post=9781"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}