[OWASP-GUIDE] Here are the allocations I currently have for Release 2
Mark Curphey
mark at curphey.com
Thu Dec 12 02:08:31 EST 2002
OK gents (and ladies if we have any) here,
Here is my draft list of what we have brewing for Release 2.0 of the
OWASP Guide. I would like to get this out on January 31st when we plan
to launch the Java portal (which is very funky btw).
You can also login and browse the guide tasks at Sourceforge. I want to
get the Sourceforge tasks up to date this weekend so if you have content
assigned but haven't yet given me your Sourceforge ID, please do so ASAP
so I can add you to the task manager. Please also remember to update the
status of your work on the task manager as you do it.
Re-write Chapters 1 and 2 - Mark Curphey
Security in Development Life cycle (including security in dev
methodologies) - Mark Curphey - new chapter after how much security do
you need
Frameworks (security models and components only)
J2EE - Christopher Todd
.NET - Andrew Downum (help from Core SDI team that did .NET code review
from MS)
This maybe new chapter or part of Chapter 5 - TBD
Application Architectures - MVC, Model 1 etc - Chris Todd (Andrew
Jaquith ?) - to be added to chapter 5
Password Recovery Re-write from Chapter 6 - Charles Miller
(should this be a section about user management ?)
Language Security (new chapter)
Java - Christoper Todd
PHP - (not yet taken)
others to be decided
Web Services (new chapter)
SAML - Abe Kang
WS-Security (not yet taken)
SOAP (not yet taken)
XML security (not yet taken)
SSO (new chapter)
Liberty Specification V1 - Abe Kang
.NET Passport (not yet taken)
Take out basic scenarios from chapter 6
Chapter 3 re-write - How much security ...- Sebastien Deleersnyder
Code Samples in Java throughout - Gene McKenna
Note to Gene (can you make some suggestions to the list of examples ?)
Two others volunteered but so far don't have allocations. Adrian
Weismann, Niels Tanis, anyone else ?
Let me know whats missing in anyway at all and suggestions are always
welcome.
Cheers
Mark
More information about the Owasp-guide
mailing list