This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of ".NET Security for Architects"
From OWASP
(→Articles & Projects) |
|||
(12 intermediate revisions by the same user not shown) | |||
Line 1: | Line 1: | ||
{| align="right" class="wikitable" | {| align="right" class="wikitable" | ||
|- | |- | ||
− | ! .NET | + | ! OWASP .NET Quick Reference |
|- | |- | ||
| | | | ||
+ | *[[OWASP Code Review Project]]<br /> | ||
*[[OWASP Testing Guide]]<br /> | *[[OWASP Testing Guide]]<br /> | ||
|- | |- | ||
Line 12: | Line 13: | ||
===Areas of Concern=== | ===Areas of Concern=== | ||
− | *Application Lifecycle | + | *[[.NET Application Lifecycle | .NET Application Lifecycle]] |
− | *Conceptual Architecture | + | *[[.NET Conceptual Architecture | Conceptual Architectures for .NET Web Applications and Services]] |
− | * | + | *[[.NET Identity Metasystem | Identity and Trust Architectural Concerns in .NET]] |
− | * | + | *[[.NET Threat Modeling | Security Requirements & Threat Modeling]] |
− | * | + | *[[.NET Design Review | Design Review and Checklists]] |
− | * | + | *[[Separating Roles - Build Systems and Software Promotion]] |
− | * | + | *[[Data Loss Prevention Concerns]] |
− | ===Articles=== | + | ===Articles & Projects=== |
[http://msdn2.microsoft.com/en-us/library/yedba920.aspx ASP.NET Security Architecture] | [http://msdn2.microsoft.com/en-us/library/yedba920.aspx ASP.NET Security Architecture] | ||
Line 35: | Line 36: | ||
[http://en.wikipedia.org/wiki/WS-%2A Web Service Specifications] | [http://en.wikipedia.org/wiki/WS-%2A Web Service Specifications] | ||
+ | |||
+ | [http://www.codeplex.com/WCFSecurity Security Guidance for Windows Communication Foundation] | ||
===References=== | ===References=== | ||
Line 48: | Line 51: | ||
===Tools=== | ===Tools=== | ||
+ | [http://www.microsoft.com/downloads/details.aspx?familyid=59888078-9daf-4e96-b7d1-944703479451&displaylang=en Microsoft Threat Analysis & Modeling v2.1.2] |
Latest revision as of 03:47, 16 May 2008
OWASP .NET Quick Reference |
---|
[hide]
.NET Security for Architects
Security concerns must be addressed at the architectural level. This section is to provide tools and guidance for the .NET architect.
Areas of Concern
Articles & Projects
Security Guidance for Windows Communication Foundation
References
International Association of Software Architects
Patterns and Practices Security Wiki
Microsoft Security Development Lifecycle 3.2