Skip to main content
U.S. Department of Energy
Office of Scientific and Technical Information

Securing your Site in Development and Beyond

Journal Article · · PHP Architect, 17(1):8-13
OSTI ID:1417430

Why wait until production deployment, or even staging and testing deployment to identify security vulnerabilities? Using tools like Burp Suite, you can find security vulnerabilities before they creep up on you. Prevent cross-site scripting attacks, and establish a firmer trust between your website and your client. Verify that Apache/Nginx have the correct SSL Ciphers set. We explore using these tools and more to validate proper Apache/Nginx configurations, and to be compliant with modern configuration standards as part of the development cycle. Your clients can use tools like https://securityheaders.io and https://ssllabs.com to get a graded report on your level of compliance with OWASP Secure Headers Project and SSLLabs recommendations. Likewise, you should always use the same sites to validate your configurations. Burp Suite will find common misconfigurations and will also perform more thorough security testing of your applications. In this session you will see examples of vulnerabilities that were detected early on, as well has how to integrate these practices into your daily workflow.

Research Organization:
Pacific Northwest National Laboratory (PNNL), Richland, WA (US)
Sponsoring Organization:
USDOE
DOE Contract Number:
AC05-76RL01830
OSTI ID:
1417430
Report Number(s):
PNNL-SA-129189
Journal Information:
PHP Architect, 17(1):8-13, Journal Name: PHP Architect, 17(1):8-13
Country of Publication:
United States
Language:
English

Similar Records

NSRC New Hire Orientation: Resources and What to Expect
Technical Report · Wed Feb 16 23:00:00 EST 2022 · OSTI ID:1846117

Energy Saver: Tips on Saving Energy and Money in Your Home
Book · Wed Oct 04 00:00:00 EDT 2017 · OSTI ID:1398871

Los Alamos National Laboratory 4D Database
Conference · Fri May 02 00:00:00 EDT 2014 · OSTI ID:1130767

Related Subjects