Sasha, On Sun, Mar 1, 2009 at 5:27 AM, Alexander Berezhnoy <alexander.berezh...@gmail.com> wrote: > Hi Andres, List, > > 2009/3/1 Andres Riancho <andres.rian...@gmail.com>: >> List, >> >> I would like to hear your opinions on how w3af covers WASSEC [0] > > How about create a bunch of tasks in the tracker, one per the point in the > list. > A task would include: > 1) investigation of the compliance > 2) fix > > Then we would assemble and publish a report of compliance.
hehehe, twisted minds think alike ;) I was thinking the same thing, but I wasn't thinking about a report, I was thinking about something like a big table like this: - Section: 1.2.3.4 - Name: HTTP Support - Supported by w3af: Yes - Source file: xUrllib.py - Configuration parameters: .... - Section: 4.5.6.7 - Name: Basic Authentication - Supported by w3af: Yes - Source file: FastHTTPBasicAuthHandler.py - Configuration parameters: ... - Section: 4.5.6.8 - Name: Digest Authentication - Supported by w3af: No - Associated task in tracker : http://..../ - Source file: None - Configuration parameters: None This could also be helpful for new contributors, because they would be able to locate the places where particular things are done. What do you guys think? Cheers, > Sasha. > > //////// >> >> [0] http://sites.google.com/site/wassec/final-draft >> >> Cheers, >> -- >> Andrés Riancho >> http://www.bonsai-sec.com/ >> http://w3af.sourceforge.net/ >> >> ------------------------------------------------------------------------------ >> Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA >> -OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise >> -Strategies to boost innovation and cut costs with open source participation >> -Receive a $600 discount off the registration fee with the source code: SFAD >> http://p.sf.net/sfu/XcvMzF8H >> _______________________________________________ >> W3af-develop mailing list >> W3af-develop@lists.sourceforge.net >> https://lists.sourceforge.net/lists/listinfo/w3af-develop >> > > > > -- > Alexander (Sasha) Berezhnoy, OSCP > http://sandals-on-my-head.blogspot.com > -- Andrés Riancho http://www.bonsai-sec.com/ http://w3af.sourceforge.net/ ------------------------------------------------------------------------------ Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA -OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise -Strategies to boost innovation and cut costs with open source participation -Receive a $600 discount off the registration fee with the source code: SFAD http://p.sf.net/sfu/XcvMzF8H _______________________________________________ W3af-develop mailing list W3af-develop@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/w3af-develop