Home > Software Quality Tips > Application Security Book Excerpts > Internet Site Security -- Chapter 12: Developing Secure Internet Applications
Software Quality Tips:
EMAIL THIS
 TIPS & NEWSLETTERS TOPICS 

APPLICATION SECURITY BOOK EXCERPTS

Internet Site Security -- Chapter 12: Developing Secure Internet Applications


Jacob Carlson, Ken Green and Erik Schetina
07.03.2006
Rating: --- (out of 5)


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   



Internet Site Security
By Jacob Carlson, Ken Green, Erik Schetina
Published by Addison-Wesley
ISBN: 0672323060; Published: 3/8/2002; Copyright 2002; Pages: Final; Edition: 1

Click here for more information or to buy the book


As a registered member of SearchSoftwareQuality.com, you're entitled to a complimentary copy of Chapter 12 of Internet Site Security written by Jacob Carlson, Ken Green and Erik Schetina and published by Addison Wesley.

"Chapter 12: Developing Secure Internet Applications" explains how programming errors affect an application's security. The authors bring together the most common coding and development mistakes and present best-practice solutions to those mistakes.



Internet Site Security

Book description:
In this book you'll learn all the fundamental techniques and technologies needed to develop a secure connection to the Internet. Before selecting a firewall, VPN or intrusion detection system, you must define exactly what your information assets are, who needs to get to them and what the external and internal threats to those assets are. Internet Site Security walks you through the process of assessing your Internet environment and developing the procedural and technical policies required to protect your critical information and network resources.

After helping you develop an information security program, this book details the technologies required to implement network and server security measures. You will learn about the real-world details (and "gotchas") of firewalls, virtual private networks, authentication and intrusion detection. You'll then put the pieces together using several architectures suitable for the enterprise and for small business networks.

Finally, the book examines the common mistakes that custom Internet application developers often make and provides solutions that all software developers should know to ensure that their code can weather the harsh environment of the Internet.

>> Read Chapter 12: Developing Secure Internet Applications.

>> Buy the book





Rate this Tip
To rate tips, you must be a member of SearchSoftwareQuality.com.
Register now to start rating these tips. Log in if you are already a member.




Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Application Security Book Excerpts
InfoSecurity 2008 Threat Analysis, Chapter 4: XSS Theory
Google Hacking for Penetration Testers, Volume 2: Chapter 6, Locating Exploits and Finding Targets
Ajax Security -- Chapter 6, Transparency in Ajax Applications
Fuzzing: Brute Force Vulnerability Discovery -- Chapter 12, Fuzzing Frameworks
Cross Site Scripting Attacks: XSS Exploits and Defense -- Chapter 5, Advanced XSS Attack Vectors
Static Analysis as Part of the Code Review Process -- Chapter 3, Secure Programming with Static Analysis
Security Metrics: Replacing Fear, Uncertainty, and Doubt -- Chapter 3, Application Security Metrics
Forms Authentication -- Chapter 5, Professional ASP.NET 2.0 Security, Membership, and Role Management
Securing JavaServer Faces Applications -- Chapter 15, JavaServer Faces: The Complete Reference
Hacking for Dummies -- Chapter 16, Web applications

Hiring, mentoring and training for software projects
Project managers cannot rely on generalizations
Readers speak out about U.S. IT labor shortage
Is there really an IT labor shortage in the U.S.?
How to deal with a difficult team member
The six hats of project management
Project management tools and strategies: Team building and managing basics
Time for colleges, managers to focus on software testing
What kind of person makes a good automated tester?
Project management: How to compose a project team
Certification pros and cons: Readers speak out

Building security into the SDLC (Software development life cycle)
Application security enters uncharted regions
How to prevent XPath injection
Developers get bigger role in software quality, security
InfoSecurity 2008 Threat Analysis, Chapter 4: XSS Theory
How to prevent anti-DNS pinning attacks
Java application security features and measures
Microsoft's Michael Howard: Security must be a part of every application
How to get developers to buy into software security
Password recovery with .NET 2.O using C#
How to address security during requirements gathering

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
Project Management Professional (PMP)  (SearchSoftwareQuality.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

DISCLAIMER: Our Tips Exchange is a forum for you to share technical advice and expertise with your peers and to learn from other enterprise IT professionals. TechTarget provides the infrastructure to facilitate this sharing of information. However, we cannot guarantee the accuracy or validity of the material submitted. You agree that your use of the Ask The Expert services and your reliance on any questions, answers, information or other materials received through this Web site is at your own risk.

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2006 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts