WebApp Sec mailing list archives

RE: web application access control research


From: "Gunter" <gunter () technicalinfo net>
Date: Wed, 23 Apr 2003 08:46:51 +0100

Hi Andy,

Try out the following two papers:
"Custom HTML Authentication" -
http://www.technicalinfo.net/papers/CustomHTMLAUthentication.html
"Web-based Session Management" -
http://www.technicalinfo.net/papers/WebBasedSessionManagement.html

Cheers,

Gunter


-----Original Message-----
From: absmith () cerias purdue edu [mailto:absmith () cerias purdue edu] 
Sent: 22 April 2003 23:47
To: webappsec () securityfocus com
Subject: web application access control research




All,



Besides the OWASP Guide, can anyone point me to papers/articles that
deal 

with the issues of access control of web applications?



I am looking to do a survey paper on this topic.  Basically, I am
looking 

for references that talk about access control in regards to web 

applications: current trends, research, tools, software, ideas, etc.



Any help would be great.  Thanks in advance!



- Andy



Current thread: