Saturday, June 22, 2013

TODO: ESAPI, Spring Security, Tomcat




Java Security:
http://docs.redhat.com/docs/en-US/JBoss_Enterprise_Application_Platform/5/html/Security_Guide/chap-Java_EE_Security_Manager.html

http://java.sun.com/developer/onlineTraining/Programming/JDCBook/appA.html

http://onjava.com/onjava/2007/01/03/discovering-java-security-requirements.html

http://www.techrepublic.com/article/java-security-policies-and-permission-management/6178805



Spring

CROSS SITE REQUEST FORGERY AND OAUTH2


http://java.dzone.com/tips/pathway-acegi-spring-security-
http://forum.springsource.org/showthread.php?93561-Remote-authentication-over-HTTP-Basic-Auth

JOSSO - Java Open Single Sign-On Project HomeJOSSO is an Open Source Internet SSO solution for rapid and standards-based (SAML) Internet-scale Single Sign-On implementations, allowing secure Internet access to the Web-based applications or services of customers, suppliers, and business partners.





tomcat
http://www.kopz.org/public/documents/tomcat/jaasintomcat.html


Implementing Ajax Authentication using jQuery, Spring Security and HTTPS
Java Web Application Security - Part I: Java EE 6 Login Demo
Java Web Application Security - Part II: Spring Security Login Demo
Java Web Application Security - Part III: Apache Shiro Login Demo
Java Web Application Security - Part IV: Programmatic Login APIs
Java Web Application Security - Part IV: Programmatic Login APIs


ESAPI
https://lists.owasp.org/pipermail/owasp-esapi/2009-September/000883.html


ESAPI-Spring Authenticator







No comments:

Post a Comment