Sasha,

On Sun, Mar 1, 2009 at 5:27 AM, Alexander Berezhnoy
<alexander.berezh...@gmail.com> wrote:
> Hi Andres, List,
>
> 2009/3/1 Andres Riancho <andres.rian...@gmail.com>:
>> List,
>>
>>    I would like to hear your opinions on how w3af covers WASSEC [0]
>
> How about create a bunch of tasks in the tracker, one per the point in the 
> list.
> A task would include:
>  1) investigation of the compliance
>  2) fix
>
> Then we would assemble and publish a report of compliance.

hehehe, twisted minds think alike ;)
I was thinking the same thing, but I wasn't thinking about a report, I
was thinking about something like a big table like this:

- Section: 1.2.3.4
- Name: HTTP Support
- Supported by w3af: Yes
- Source file: xUrllib.py
- Configuration parameters: ....

- Section: 4.5.6.7
- Name: Basic Authentication
- Supported by w3af: Yes
- Source file: FastHTTPBasicAuthHandler.py
- Configuration parameters: ...

- Section: 4.5.6.8
- Name: Digest Authentication
- Supported by w3af: No - Associated task in tracker : http://..../
- Source file: None
- Configuration parameters: None

This could also be helpful for new contributors, because they would be
able to locate the places where particular things are done. What do
you guys think?

Cheers,

> Sasha.
>
> ////////
>>
>> [0] http://sites.google.com/site/wassec/final-draft
>>
>> Cheers,
>> --
>> Andrés Riancho
>> http://www.bonsai-sec.com/
>> http://w3af.sourceforge.net/
>>
>> ------------------------------------------------------------------------------
>> Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA
>> -OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise
>> -Strategies to boost innovation and cut costs with open source participation
>> -Receive a $600 discount off the registration fee with the source code: SFAD
>> http://p.sf.net/sfu/XcvMzF8H
>> _______________________________________________
>> W3af-develop mailing list
>> W3af-develop@lists.sourceforge.net
>> https://lists.sourceforge.net/lists/listinfo/w3af-develop
>>
>
>
>
> --
> Alexander (Sasha) Berezhnoy, OSCP
> http://sandals-on-my-head.blogspot.com
>



-- 
Andrés Riancho
http://www.bonsai-sec.com/
http://w3af.sourceforge.net/

------------------------------------------------------------------------------
Open Source Business Conference (OSBC), March 24-25, 2009, San Francisco, CA
-OSBC tackles the biggest issue in open source: Open Sourcing the Enterprise
-Strategies to boost innovation and cut costs with open source participation
-Receive a $600 discount off the registration fee with the source code: SFAD
http://p.sf.net/sfu/XcvMzF8H
_______________________________________________
W3af-develop mailing list
W3af-develop@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/w3af-develop

Reply via email to