Archive for June, 2002

This document sets out to describe technical components, people processes and management issues that are needed to design, build and maintain a secure web application. It includes requirements for architects and designers building common things like password reset systems, session management mechanisms and input filtering as well as architectural guidance. [OWASP]

Two web services security toolkits

VordelSecure
Quadrasis
Both products look pretty interesting and I hope to get to the whitepapers on the websites fairly soon.

Two essays on web services security

Interim (pre WS-Security/SAML) implementation of web services authentication by Greg Reinacker
Usefulness of using WS-Security by Justin Rudd

« Prev - Next »