This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Cloud-10 Guidelines

From OWASP
Revision as of 14:02, 1 November 2011 by Vinaykbansal (talk | contribs)

Jump to: navigation, search

1. Development / Environment Setting

a) Developer Access

  1. Jump Server
    1. Multi factor Autch
    2. VPN/Cert based Authc

2. Architecture

  1. Tiering
  2. Communicaiton
    1. between zones
    2. within tiers
    3. ACLs
  3. AuthC/Identity
  4. Encryption
  5. WAF

3. Deployment and Testing

  1. Hardening

4. Operations

  1. Patching