Project

General

Profile

Actions

Feature #21779

closed

Integrate OWASP ESAPI for PHP

Added by Marcus Krause over 14 years ago. Updated about 4 years ago.

Status:
Closed
Priority:
Should have
Assignee:
Category:
-
Target version:
Start date:
2009-12-03
Due date:
% Done:

0%

Estimated time:
PHP Version:
5.2
Tags:
Complexity:
Sprint Focus:
Needs Decision

Description

This is a feature request.

It would be nice to integrate OWASP ESAPI [1] for PHP in TYPO3 Core. ESAPI is "(...) a toolkit that help software developers guard against security-related design and implementation flaws". A nice datasheet that gives a short introduction on ESAPI is available at [2].

Currently, work on ESAPI for PHP [3] is in progress (alpha state). We need to wait until ESAPI is in stable form before starting an integration process.

This RFC is just to not forget about OWASP ESAPI for PHP.

[1] http://www.owasp.org/index.php/Category:OWASP_Enterprise_Security_API#tab=About
[2] http://www.owasp.org/images/8/81/Esapi-datasheet.pdf
[3] http://code.google.com/p/owasp-esapi-php/wiki/Welcome

(issue imported from #M12896)

Actions

Also available in: Atom PDF