[Owasp-testing] OWASP Testing Guide v3: introduce section for Web Server Content and Configuration issues

kevin horvath kevin.horvath at gmail.com
Fri May 9 21:23:58 EDT 2008


Matteo,

I would also like to propose that Web Server Content and Web Server
Configuration issues get their own section.  It is touched on briefly
in section "4.2 Information Gathering" of the guide but I think there
are a good amount more things that should be tested on the web server.
 I think there are enough things to test for to have its own section
instead of being lumped in with Information Gathering.

If anyone else has any ideas please let me know.

Kevin M. Horvath
CISSP, CCSP, CEH, GCIH, CCNA


More information about the Owasp-testing mailing list