Currently the website has become an effective communication tool. However, it is essential to have vulnerabilities assessment and penetration testing using specific standards on released websites to the public for securing information. The problems raised in this research are conducting vulnerability testing on the XYZ website to analyze security gaps in the XYZ website, as well as conducting penetration testing on high vulnerabilities found. Testing was conducted using the NIST 800 – 115 Standard through 4 main stages: planning, discovery, attack, and report. Several tools were used: Nmap, OWASP ZAP, Burp Suite, and Foxy Proxy. This research results are presented and analyzed. There were seven vulnerabilities found, one high-level vulnerability, two medium-level vulnerabilities, and four low-level vulnerabilities. At the high level, SQL Injection types are found, at the medium level, Cross-Domains Misconfiguration and vulnerabilities are found, at the low level, Absence of Anti-CSRF Tokens, Incomplete or No Cache-control and Pragma HTTP Header Set, Server Leaks Information via “X-Powered-By” HTTP Response Header Field and X-Content-Type-Options Header Missing are found.
<p>With the need for rapidly growing network services each year; the factors of reliability, availability and quality become extremely critical for organizations, groups, institutions and governments to have in the network services implementation. In this case, several rural governments requires the improvement of its network performance management in establishing their internal and external operation to align with the grand design by the central government in improving citizen’s satisfaction through public service. Testing was done using scenarios for output analysis and packet loss as parameters. The results of the proposed topology obtained a productivity of 541.43 Kbps and a packet loss of 0.07%. While the current topology gets a rate of 421.28 Kbps and packet loss of 0.22%. It can be concluded that the proposed topology is still better than the current topology. The optimization of performance management is based on the FCAPS method which emphasize in the performance monitoring and data analysis with the support of ITILv3 that contains documentation and policy guidance to conduct quality performance management. In addition, performance management activities will occur with processes in the design of ITIL services and existing conditions.<em></em></p>
Yayasan Kesehatan Telkom merupakan organisasi pengelola layanan kesehatan di bawah perusahaan Telekomunikasi Indonesia dan membutuhkan infrastruktur jaringan LAN yang memadai untuk memberikan pelayanan kesehatan. Cisco Three-Layer Hierarchical Model merupakan konsep yang dapat diterapkan dalam merancang infrastruktur jaringan LAN dengan membagi fungsi setiap perangkat jaringan berdasarkan lapisan core, distribution dan access. Network Development Life Cycle (NDLC) digunakan sebagai metode dalam perancangan infrastruktur jaringan LAN karena sifatnya yang berulang dan berkelanjutan untuk pengembangan infrastruktur jaringan suatu organisasi. Tahapan NDLC yang digunakan yaitu tahap Analysis, Design dan Simulation Prototyping. Perancangan infrastruktur jaringan tersebut akan disimulasikan dengan simulator GNS3. Hasil perancangan tersebut diuji dengan pengukuran Quality of Service (QoS) dengan parameter throughput, delay dan packet loss yang dianalisis dengan menggunakan wireshark. Penelitian ini menghasilkan rancangan infrastruktur jaringan LAN Yakes Telkom Bandung untuk memenuhi kebutuhan pengguna jaringan LAN dalam melakukan aktivitas proses bisnis dengan menerapkan redundant link dan QoS yang menghasilkan nilai delay, throughput dan packet loss yang baik sesuai standar ITU-T (The International Telecommunication Union-Telecommunication). Manajemen bandwidth diterapkan sesuai kebutuhan pengguna dan rancangan desain infrastruktur jaringan sesuai perkembangan teknologi informasi saat ini.
scite is a Brooklyn-based organization that helps researchers better discover and understand research articles through Smart Citations–citations that display the context of the citation and describe whether the article provides supporting or contrasting evidence. scite is used by students and researchers from around the world and is funded in part by the National Science Foundation and the National Institute on Drug Abuse of the National Institutes of Health.