This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "Projects/OWASP Ruby on Rails and friends Security Guide"

From OWASP
Jump to: navigation, search
(Created page with "{{Template:Project About | project_name =OWASP Ruby on Rails and friends Security Guide | project_home_page =OWASP_Ruby_on_Rails_and_friends_Security_Guide | project_descripti...")
 
 
(7 intermediate revisions by 2 users not shown)
Line 1: Line 1:
{{Template:Project About
+
=Main=
| project_name =OWASP Ruby on Rails and friends Security Guide
+
 
| project_home_page =OWASP_Ruby_on_Rails_and_friends_Security_Guide
+
<div style="width:100%;height:105px;border:0,margin:0;overflow: hidden;">[[Image:Low activity.jpg|800px| link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Low_Activity_Projects]] </div>
| project_description =The Ruby on Rails Security Project is the one and only source of information about Rails security topics, and I keep the community up-to-date with blog posts and conference talks in Europe. The Guide and the Project has been mentioned in several Rails books and web-sites.
+
 
| project_license =Creative Commons Attribution ShareAlike License V3.0
+
{| style="padding: 0;margin:0;margin-top:10px;text-align:left;" |-
| leader_name1 =Paolo Perego
+
| valign="top"  style="border-right: 1px dotted gray;padding-right:25px;" |
| leader_email1 =[email protected]
+
 
| leader_username1 =This is the wiki account for the leader
+
==OWASP Ruby on Rails and friends Security Guide==
| mailing_list_name = https://lists.owasp.org/mailman/listinfo/owasp_ruby_on_rails_and_friends_security_guide
+
 
| project_road_map = https://www.owasp.org/index.php/Projects/OWASP_Ruby_on_Rails_and_friends_Security_Guide/Roadmap
+
Real text will be here soon...
}}
+
 
 +
==Description==
 +
 
 +
Real description will be here...
 +
 
 +
==Licensing==
 +
 
 +
OWASP Ruby on Rails and friends Security Guide is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.
 +
 
 +
| valign="top"  style="padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;" |
 +
 
 +
== What is OWASP Ruby on Rails and friends Security Guide? ==
 +
 
 +
OWASP Ruby on Rails and friends Security Guide provides:
 +
 
 +
* an hardening guide for Sinatra, Padrino and Ruby on Rails applications
 +
* tips on how to harden nginx, apache and mod_passenger installations
 +
* ...  
 +
 
 +
== Presentation ==
 +
 
 +
Link to presentation
 +
 
 +
 
 +
== Project Leader ==
 +
 
 +
Paolo Perego ([email protected])
 +
 
 +
 
 +
== Related Projects ==
 +
 
 +
* [[OWASP_ESAPI_Ruby]]
 +
 
 +
 
 +
== Ohloh ==
 +
 
 +
* no ohloh information available right now
 +
 
 +
 
 +
| valign="top"  style="padding-left:25px;width25%;" | 
 +
 
 +
== Quick Download ==
 +
 
 +
Owasp Ruby on Rails and friends security guide is proudly hosted on [https://github.com/OWASP/RoR-and-Friends-Security-Guide github].
 +
 
 +
== Email List ==
 +
 
 +
[https://lists.owasp.org/mailman/listinfo/owasp_ruby_on_rails_and_friends_security_guide Sign up here]
 +
 
 +
== News and Events ==
 +
* [14 May 2014] Migrating Project template and [https://github.com/OWASP/RoR-and-Friends-Security-Guide github repository created]
 +
 
 +
== In Print ==
 +
This project will be purchased as a print on demand book from Lulu.com
 +
 
 +
 
 +
==Classifications==
 +
 
 +
    {| width="200" cellpadding="2"
 +
  |-
 +
  | align="center" valign="top" width="50%" rowspan="2"| [[File:New projects.png|100px|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]]
 +
  | align="center" valign="top" width="50%"| [[File:Owasp-builders-small.png|link=]] 
 +
  |-
 +
  | align="center" valign="top" width="50%"| [[File:Owasp-defenders-small.png|link=]]
 +
  |-
 +
  | colspan="2" align="center"  | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]]
 +
  |-
 +
  | colspan="2" align="center"  | [[File:Project_Type_Files_DOC.jpg|link=]]
 +
  |}
 +
|}
 +
 
 +
=FAQs=
 +
 
 +
; When the guide will be ready?
 +
: I'm planning to start the outline on Summer 2014. I guess a beta will eventually will be ready later in winter '14.
 +
 
 +
 
 +
= Acknowledgements =
 +
==Volunteers==
 +
OWASP Ruby on Rails and friends Security Guide is developed by a worldwide team of volunteers. The primary contributors to date have been:
 +
 
 +
* Paolo Perego
 +
 
 +
==Others==
 +
None at the moment
 +
 
 +
= Road Map and Getting Involved =
 +
As of OWASP Ruby on Rails and friends Security Guid, the priorities are:
 +
* define a checklist about hardening your (apache|nginx)+mod_passenger installation
 +
* define a checklist about hardening your models with popular ORMs (ActiveRecords, Datamapper, ...)
 +
* define a checklist about write a secure Sinatra, Padrino and Ruby on Rails application
 +
 
 +
Involvement in the development and promotion of OWASP Ruby on Rails and friends Security Guide is actively encouraged!
 +
You do not have to be a security expert in order to contribute.
 +
Some of the ways you can help:
 +
* xxx
 +
* xxx
 +
 
 +
 
 +
__NOTOC__ <headertabs />
 +
 
 +
[[Category:OWASP Project]]  [[Category:OWASP_Builders]] [[Category:OWASP_Defenders]]  [[Category:OWASP_Document]]

Latest revision as of 23:16, 2 May 2015

Low activity.jpg

OWASP Ruby on Rails and friends Security Guide

Real text will be here soon...

Description

Real description will be here...

Licensing

OWASP Ruby on Rails and friends Security Guide is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one.

What is OWASP Ruby on Rails and friends Security Guide?

OWASP Ruby on Rails and friends Security Guide provides:

  • an hardening guide for Sinatra, Padrino and Ruby on Rails applications
  • tips on how to harden nginx, apache and mod_passenger installations
  • ...

Presentation

Link to presentation


Project Leader

Paolo Perego ([email protected])


Related Projects


Ohloh

  • no ohloh information available right now


Quick Download

Owasp Ruby on Rails and friends security guide is proudly hosted on github.

Email List

Sign up here

News and Events

In Print

This project will be purchased as a print on demand book from Lulu.com


Classifications

New projects.png Owasp-builders-small.png
Owasp-defenders-small.png
Cc-button-y-sa-small.png
Project Type Files DOC.jpg
When the guide will be ready?
I'm planning to start the outline on Summer 2014. I guess a beta will eventually will be ready later in winter '14.


Volunteers

OWASP Ruby on Rails and friends Security Guide is developed by a worldwide team of volunteers. The primary contributors to date have been:

  • Paolo Perego

Others

None at the moment

As of OWASP Ruby on Rails and friends Security Guid, the priorities are:

  • define a checklist about hardening your (apache|nginx)+mod_passenger installation
  • define a checklist about hardening your models with popular ORMs (ActiveRecords, Datamapper, ...)
  • define a checklist about write a secure Sinatra, Padrino and Ruby on Rails application

Involvement in the development and promotion of OWASP Ruby on Rails and friends Security Guide is actively encouraged! You do not have to be a security expert in order to contribute. Some of the ways you can help:

  • xxx
  • xxx