RE: IIS 7.5 and OWASP

2012-09-13 Thread Ken Schaefer
itable in some other way. Cheers Ken From: Webster [mailto:webs...@carlwebster.com] Sent: Friday, 14 September 2012 12:46 AM To: NT System Admin Issues Subject: Re: IIS 7.5 and OWASP Thanks Z, appreciate the info. Carl Webster Consultant and Citrix Technology Professional http://www.CarlW

RE: IIS 7.5 and OWASP

2012-09-13 Thread Ziots, Edward
ganization ezi...@lifespan.org From: Tigran K [mailto:tigr...@gmail.com] Sent: Thursday, September 13, 2012 2:53 PM To: NT System Admin Issues Subject: Re: IIS 7.5 and OWASP Edward summed it up really well. Just wanted to add that some of the OWASP top 10 items can not be protected against

Re: IIS 7.5 and OWASP

2012-09-13 Thread Tigran K
hub.com/ironbee/waf-research > > ** ** > > HTH, if you need more information hit me offline. **** > > EZ > > ** ** > > Edward E. Ziots, CISSP, Security +, Network + > > Security Engineer > > Lifespan Organization > > ezi...@lifespan.org*

RE: IIS 7.5 and OWASP

2012-09-13 Thread Ziots, Edward
Glad to assist, Z Edward E. Ziots, CISSP, Security +, Network + Security Engineer Lifespan Organization ezi...@lifespan.org From: Webster [mailto:webs...@carlwebster.com] Sent: Thursday, September 13, 2012 10:46 AM To: NT System Admin Issues Subject: Re: IIS 7.5 and OWASP

Re: IIS 7.5 and OWASP

2012-09-13 Thread Webster
tovall mailto:rich...@gmail.com>> Subject: Re: IIS 7.5 and OWASP I think the OWASP Top 10 is a framework for the web application development process and lifecycle rather than a set of guidelines for the web server itself. If you're trying to demonstrate that an out of the box Citrix pr

Re: IIS 7.5 and OWASP

2012-09-13 Thread Richard Stovall
I think the OWASP Top 10 is a framework for the web application development process and lifecycle rather than a set of guidelines for the web server itself. If you're trying to demonstrate that an out of the box Citrix product adheres to the framework, then I'd imagine you have to get a statement