This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Difference between revisions of "Projects/OWASP Ruby on Rails and friends Security Guide"
From OWASP
(Created page with "{{Template:Project About | project_name =OWASP Ruby on Rails and friends Security Guide | project_home_page =OWASP_Ruby_on_Rails_and_friends_Security_Guide | project_descripti...") |
|||
Line 1: | Line 1: | ||
− | { | + | =Main= |
− | | | + | |
− | + | <div style="width:100%;height:160px;border:0,margin:0;overflow: hidden;">[[File:OWASP_Project_Header.jpg|link=]]</div> | |
− | + | ||
− | + | {| style="padding: 0;margin:0;margin-top:10px;text-align:left;" |- | |
− | + | | valign="top" style="border-right: 1px dotted gray;padding-right:25px;" | | |
− | + | ||
− | | | + | ==OWASP Ruby on Rails and friends Security Guide== |
− | + | ||
− | | | + | Real text will be here soon... |
− | + | ||
+ | ==Description== | ||
+ | |||
+ | Real description will be here... | ||
+ | |||
+ | ==Licensing== | ||
+ | |||
+ | OWASP Ruby on Rails and friends Security Guide is free to use. It is licensed under the http://creativecommons.org/licenses/by-sa/3.0/ Creative Commons Attribution-ShareAlike 3.0 license], so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar license to this one. | ||
+ | |||
+ | | valign="top" style="padding-left:25px;width:200px;border-right: 1px dotted gray;padding-right:25px;" | | ||
+ | |||
+ | == What is OWASP Ruby on Rails and friends Security Guide? == | ||
+ | |||
+ | OWASP Ruby on Rails and friends Security Guide provides: | ||
+ | |||
+ | * an hardening guide for Sinatra, Padrino and Ruby on Rails applications | ||
+ | * tips on how to harden nginx, apache and mod_passenger installations | ||
+ | * ... | ||
+ | |||
+ | |||
+ | == Presentation == | ||
+ | |||
+ | Link to presentation | ||
+ | |||
+ | |||
+ | |||
+ | |||
+ | == Project Leader == | ||
+ | |||
+ | Paolo Perego (thesp0nge@owasp.org) | ||
+ | |||
+ | |||
+ | == Related Projects == | ||
+ | |||
+ | * [[OWASP_ESAPI_Ruby]] | ||
+ | |||
+ | |||
+ | == Ohloh == | ||
+ | |||
+ | * no ohloh information available right now | ||
+ | |||
+ | |||
+ | | valign="top" style="padding-left:25px;width:200px;" | | ||
+ | |||
+ | == Quick Download == | ||
+ | |||
+ | * Link to page/download | ||
+ | |||
+ | == Email List == | ||
+ | |||
+ | https://lists.owasp.org/mailman/listinfo/owasp_ruby_on_rails_and_friends_security_guide | ||
+ | |||
+ | == News and Events == | ||
+ | * [14 May 2014] Migrating Project template | ||
+ | |||
+ | == In Print == | ||
+ | This project will be purchased as a print on demand book from Lulu.com | ||
+ | |||
+ | |||
+ | ==Classifications== | ||
+ | |||
+ | {| width="200" cellpadding="2" | ||
+ | |- | ||
+ | | align="center" valign="top" width="50%" rowspan="2"| [[File:New projects.png|100px|link=https://www.owasp.org/index.php/OWASP_Project_Stages#tab=Incubator_Projects]] | ||
+ | | align="center" valign="top" width="50%"| [[File:Owasp-builders-small.png|link=]] | ||
+ | |- | ||
+ | | align="center" valign="top" width="50%"| [[File:Owasp-defenders-small.png|link=]] | ||
+ | |- | ||
+ | | colspan="2" align="center" | [[File:Cc-button-y-sa-small.png|link=http://creativecommons.org/licenses/by-sa/3.0/]] | ||
+ | |- | ||
+ | | colspan="2" align="center" | [[File:Project_Type_Files_DOC.jpg|link=]] | ||
+ | |} | ||
+ | |||
+ | |} | ||
+ | |||
+ | =FAQs= | ||
+ | |||
+ | ; When the guide will be ready? | ||
+ | : I'm planning to start the outline on Summer 2014. I guess a beta will eventually will be ready later in winter '14. | ||
+ | |||
+ | |||
+ | = Acknowledgements = | ||
+ | ==Volunteers== | ||
+ | OWASP Ruby on Rails and friends Security Guide is developed by a worldwide team of volunteers. The primary contributors to date have been: | ||
+ | |||
+ | * Paolo Perego | ||
+ | |||
+ | ==Others== | ||
+ | None at the moment | ||
+ | |||
+ | = Road Map and Getting Involved = | ||
+ | As of OWASP Ruby on Rails and friends Security Guid, the priorities are: | ||
+ | * define a checklist about hardening your (apache|nginx)+mod_passenger installation | ||
+ | * define a checklist about hardening your models with popular ORMs (ActiveRecords, Datamapper, ...) | ||
+ | * define a checklist about write a secure Sinatra, Padrino and Ruby on Rails application | ||
+ | |||
+ | Involvement in the development and promotion of OWASP Ruby on Rails and friends Security Guide is actively encouraged! | ||
+ | You do not have to be a security expert in order to contribute. | ||
+ | Some of the ways you can help: | ||
+ | * xxx | ||
+ | * xxx | ||
+ | |||
+ | |||
+ | |||
+ | =Project About= | ||
+ | {{:Projects/OWASP_Ruby_on_Rails_and_friends_Security_Guide}} | ||
+ | |||
+ | __NOTOC__ <headertabs /> | ||
+ | |||
+ | [[Category:OWASP Project]] [[Category:OWASP_Builders]] [[Category:OWASP_Defenders]] [[Category:OWASP_Document]] |