tnc-ba / strongTNC

BYOD TNC Database Management Tool
GNU Affero General Public License v3.0
0 stars 0 forks source link

Security Audit #115

Closed dbrgn closed 10 years ago

dbrgn commented 10 years ago

We should check whether the security of strongTNC can be improved.

This can be done for example by temporarily adding http://django-secure.readthedocs.org/ and running the checks.

Here's a video about Django vs OWASP top 10: https://www.youtube.com/watch?v=sra9x44lXgU

Maybe we could also take a look at https://wiki.mozilla.org/WebAppSec/Secure_Coding_Guidelines.

dbrgn commented 10 years ago

Handled in #285.