Hype alone would have IT executives believe that in coming years service-oriented architectures will be as standard within companies as morning coffee. But network professionals and industry analysts say it won't be that easy, because SOA is something you build, not buy.< . . .. Hype alone would have IT executives believe that in coming years service-oriented architectures will be as standard within companies as morning coffee. But network professionals and industry analysts say it won't be that easy, because SOA is something you build, not buy. "There is no such thing as SOA; it is not a noun, it is a verb, 'service orienting'," says James Kobielus, an analyst with Burton Group. And the verb implies that work needs to be done to service orient applications and networks. Work to define and execute an overall strategy, to train developers, to retrofit existing applications, to implement standards, to build new layers of middleware, to define new levels of management, to devise new security defenses, and to construct methods to track it all. It's all needed because the SOA concept is one in which components, whether they are full applications or single-function code such as a mortgage calculator, can be shared, reused and loosely coupled into composite applications across a distributed network. The link for this article located at nwfusion.com is no longer available. . Excitement surrounds the notion that cloud-based solutions will dominate, yet IT experts caution that the reality is more complex.. Service-Oriented Architecture, Security Practices, Middleware Solutions, Application Design. . LinuxSecurity.com Team
Jim writes, "Worried about Web Application security? https://owasp.org/ has released this excellent 1.67meg document on how to safely write web applications. This paper covers everything you could possibly think of and is worth the read.". . .. Jim writes, "Worried about Web Application security? https://owasp.org/ has released this excellent 1.67meg document on how to safely write web applications. This paper covers everything you could possibly think of and is worth the read." The Open Web Application Security Project (or OWASP pronounced O'WASP) was started in September of 2001. At the time there was no central place where developers and security professionals could learn how to build secure web applications or test the security of their products. At the same time the commercial marketplace for web application started to evolve. Certain vendors were pedaling some significant marketing claims around products that really only tested a small portion of the problems web applications were facing; and service companies were marketing application security testing that really left companies with a false sense of security. OWASP is an open source reference point for system architects, developers, vendors, consumers and security professionals involved in Designing, Developing, Deploying and Testing the security of web applications and Web Services. In short the Open Web Application Securty Project aims to help everyone and anyone build more secure web applications and Web Services. The link for this article located at OWASP Project is no longer available. . OWASP is an essential resource for developers focused on creating secure web applications by promoting a security-first approach throughout development.. Secure Web Development, OWASP Best Practices, Application Security. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.