|
Level 1 Table of Contents
SECURE. NET INTRODUCTION
SECURE .NET OVERVIEW
- OVERVIEW
- INTRODUCTION
- SECURITY MEASURES OVERVIEW
- DEPLOYMENT CONCEPTS
- SUMMARY
METADATA AND REFLECTION
- OVERVIEW
- VIEWING METADATA
- REFLECTION
- SUMMARY
SECURE CODING
- OVERVIEW
- SECURITY BASICS
- User Authentication
- Object-Based Access Control
- THREAT MODEL
- SUMMARY
Level 2 Table of Contents
- OVERVIEW
- SIGNING BASICS
- SYMMETRIC ALGORITHM
- ASYMMETRIC ALGORITHM
- SIGNING DATA
- SUMMARY
Level 3 Table of Contents
- OVERVIEW
- SECURITY POLICY
- CODE GROUP
- SECURITY POLICY LEVEL
- POLICY LEVELS COMBINED
- CODE GROUP ATTRIBUTES
- MODIFYING SECURITY POLICY
- POLICY TOOL
- SECURITY OPERATIONS
- IMPERATIVE SECURITY OPERATIONS
- DECLARATIVE SECURITY OPERATIONS
- DECLARATIVE SECURITY CHECK
- PERMISSION REQUESTS
- BEST PRACTICES
- SUMMARY
Level 4 Table of Contents
- OVERVIEW
- ROLE-BASED SECURITY
- PRINCIPAL AND IDENTITY OBJECTS
- ROLE-BASED SECURITY WITH PERMISSION OBJECTS
- SUMMARY
Level 5 Table of Contents
ISOLATED STORAGE
- OVERVIEW
- ISOLATED STORAGE BASICS
- USING ISOLATED STORAGE
- SUMMARY
CREATING AN ASSEMBLY
- OVERVIEW
- SINGLE-FILE AND MULTIFILE ASSEMBLIES
- PRIVATELY DEPLOYED AND SHARED ASSEMBLIES
- SUMMARY
OVERVIEW
- OVERVIEW OF DEPLOYMENT
- SETUP PROJECT
- SUMMARY
Level 6 Table of Contents
ASSEMBLY BINDING AND CONFIGURATION
- OVERVIEW
- BASICS
- CONFIGURATION FILE SYNTAX
- POLICY CONFIGURATION FILES
- SUMMARY
INTRODUCTION TO WEB SECURITY
- OVERVIEW
- SECURE WEB APPS
- IMPLEMENTING SECURITY
- SUMMARY
Level 7 Table of Contents
VALIDATING USER INPUT
- OVERVIEW
- USER INPUT
- USER INPUT ATTACKS
- PERFORMING VALIDATION
- MINIMUM INFO FOR USERS
- SUMMARY
SECURING WEB PAGES
- OVERVIEW
- ASP.NET AUTHENTICATION
- WINDOWS-BASED AUTHENTICATION
- FORMS-BASED AUTHENTICATION
- SUMMARY
Level 8 Table of Contents
- OVERVIEW
- INTERNET INFORMATION SERVICES
- OVERVIEW
- WEB CLIENT AUTHENTICATION
- SUMMARY
OVERVIEW
- PROTECTING WEB APPLICATION FILES
- SETTING FILE ACLS
- BEST PRACTICES
- SUMMARY
SECURING MICROSOFT SQL SERVER
- OVERVIEW
- SQL SERVER SECURITY
- SQL ROLE-BASED SECURITY
- SECURING SQL SERVER COMMUNICATIONS
- SQL INJECTION ATTACKS
- SQL SECURITY REVIEW
- SUMMARY
Level 9 Table of Contents
PROTECTING COMMUNICATION
- OVERVIEW
- DIGITAL CERTIFICATES
- SSL/TLS SECURITY PROTOCOLS
- USING INTERNET PROTOCOL SECURITY
- SUMMARY
WEB APPLICATIONS
- OVERVIEW
- WEB APPLICATIONS
- SECURITY TEST PLAN
- SECURITY TESTING
- SUMMARY
BEST PRACTICES OVERVIEW
- ENHANCEMENTS
- CRYPTOGRAPHY
- TESTING WEB APP SECURITY
- USER INPUT
- GENERAL GOOD PRACTICES
- CRITICAL BEST PRACTICES
|