Christian Wenz: ASP .NET Core Security - Episode 233

Christian Wenz: ASP .NET Core Security - Episode 233

Christian Wenz works as a consultant, trainer, and author with a focus on web technologies and is the author or co-author of over 100 computer books. He regularly contributes to various IT magazines and speaks at conferences around the globe. Christian holds a "Diplom" (the German equivalent of a master's degree) in Computer Sciences, and one in Business Informatics. In his day job, he is one of the founders of the web agency Arrabiata Solutions (http://www.arrabiata.com/) with offices in Munich, Germany, and in London, UK. He also frequently works with development teams to make their applications better performing, more secure, and more reliable.

Topics of Discussion:

[2:51] Has Christian really written over 100 computer books? Christian talks about the books and the high points of technology that he has worked in.

[7:16] What is the OWASP (Open Web Application Security Project) Top 10 list?

[10:33] You always have to be aware that something may go wrong, and have a security mindset.

[12:05] Again and again, make sure that you understand the fundamentals of web app security, because eventually, you will make a mistake in your code.

[12:30] What is insecure design?

[13:43] Christian talks about the enumeration scheme CWE: common weakness enumeration, which basically assigns a number to each risk or attack.

[17:00] How should people be logging into their web sessions now with .NET7?

[18:31] The major mistake you can make these days is to write your own authentication mechanism.

[23:57] What is Christian's favorite mechanism today for securing HTTP web services?

[31:05] What are some of the tools Christian always reaches for, and how do we differentiate between static auditing and dynamically auditing an application?

Mentioned in this Episode:

Clear Measure Way

Architect Forum

Software Engineer Forum

Programming with Palermo — New Video Podcast! Email us programming@palermo.network

Clear Measure, Inc. (Sponsor)

.NET DevOps for Azure: A Developer's Guide to DevOps Architecture the Right Way, by Jeffrey Palermo — Available on Amazon!

Jeffrey Palermo's Twitter — Follow to stay informed about future events!

Architect Tips — Video podcast!

Azure DevOps

Christian Microsoft Profile

ASP.NET Core Security

Christian's Books on Amazon

OWASP

Identity Server

Dependabot

Security Code Scan

Configuring Code Scanning for a Repository

Want to Learn More?

Visit AzureDevOps.Show for show notes and additional episodes.

Avsnitt(386)

Steve Sanderson on Blazor - Episode 106

Steve Sanderson on Blazor - Episode 106

In today's episode, Jeffrey Palermo is joined by Steve Sanderson! Steve is a developer at Microsoft on the ASP.NET team and the inventor of the first version of Blazor. He has worked on web technologi...

14 Sep 202039min

Bob Martin on Agile and Extreme Programming - Episode 105

Bob Martin on Agile and Extreme Programming - Episode 105

In today's episode, Jeffrey Palermo is joined by a really exciting guest; Robert C Martin, better known as Uncle Bob Martin! If you don't already know Bob, he is a software engineer, instructor, and...

7 Sep 202038min

Derek Comartin on Migrating to .NET Core - Episode 104

Derek Comartin on Migrating to .NET Core - Episode 104

This week on the podcast, Jeffrey Palermo is virtually sitting down with Derek Comartin to discuss migrating to .NET Core! Derek Comartin is a software developer with two decades of professional sof...

31 Aug 202036min

Daniel Vacanti on ActionableAgile - Episode 103

Daniel Vacanti on ActionableAgile - Episode 103

In today's episode, Jeffrey Palermo sits down virtually with Daniel Vacanti, the co-founder and CEO of ActionableAgile. Daniel is a 20-year software industry veteran who got his start as a Java Dev...

24 Aug 202037min

Brady Gaster on SignalR and More - Episode 102

Brady Gaster on SignalR and More - Episode 102

This week, Brady Gaster is joining The Azure DevOps Podcast to discuss all things SignalR and beyond. Brady is a Senior Program Manager in the ASP.NET team at Microsoft where he works on SignalR, micr...

17 Aug 202045min

Mike Sigsworth on a Containerized Journey Using .NET Core - Episode 101

Mike Sigsworth on a Containerized Journey Using .NET Core - Episode 101

Joining Jeffrey Palermo today is Mike Sigsworth, a Principal Software Architect at Clear Measure. Mike has been developing for over 20 years (most of that in the .NET space) and an unquenchable curi...

10 Aug 202034min

Richard Hundhausen on Professional Scrum - Episode 100

Richard Hundhausen on Professional Scrum - Episode 100

In today's episode, Jeffrey is joined by a good friend and incredible software engineer and trainer, Richard Hundhausen. Richard helps software organizations and teams deliver better products by und...

3 Aug 202043min

Joe Duffy on Infrastructure as Code - Episode 99

Joe Duffy on Infrastructure as Code - Episode 99

This week's guest is Joe Duffy, the CEO of Pulumi — a venture-backed startup in Seattle whose mission is to help developers and operators get their code to the cloud faster together. Prior to founding...

27 Juli 202037min

Populärt inom Politik & nyheter

p3-krim
rss-krimstad
svenska-fall
rss-viva-fotboll
flashback-forever
motiv
aftonbladet-daily
rss-vad-fan-hande
rss-sanning-konsekvens
aftonbladet-krim
rss-krimreportrarna
olyckan-inifran
rss-frandfors-horna
fordomspodden
dagens-eko
spar
rss-flodet
blenda-2
politiken
rss-klubbland-en-podd-mest-om-frolunda