Securing DevOps Show & Tell: Mozilla Laboratory w/ April King

  Рет қаралды 3,405

Securing DevOps

Securing DevOps

Күн бұрын

Пікірлер: 8
@macd7743
@macd7743 2 жыл бұрын
This is completely awesome. Thanks, guys! Great questions from the host, Julian. April, you are awesome! I've learned so much. My web development training program completely ignored this kind of thing (which really irritates me), but the information provided here cleared up a lot. (Admittedly, a good bit was beyond my pay grade!) The only important issue I'm having is understanding where/how this actually gets deployed. If I'm understanding correctly, you are accessing the server through some kind of console (something called nginx?), but I have no idea how to set that up. Is that console just accessing a specific file sitting on the server and making changes to it? What files are the correct server-side files? I know that's probably outside the scope of this video, but it would be helpful to have a little more context about deployment. Also, if a website is static, can we just slap the CSP in the head? Thanks again!
@beljakovinc
@beljakovinc 2 жыл бұрын
Tnx for a lot of useful info. I'm getting slightly different results between your add-on and actual vhost config (CSP evaluator is a little bit more precise honestly), but that observatory link rocks!!! Easier way to get around all the stuff I need to fix.
@FredBlaise
@FredBlaise 5 жыл бұрын
Nice "dot-suffix" trick to bypass the security on add-ons ^^
@HighestRank
@HighestRank 5 жыл бұрын
26:13
@HighestRank
@HighestRank 5 жыл бұрын
"reasonable"? 34:58 What exactly is 'UNreasonable' when it comes to site security, or is this not actual security but only a euphemism to make people jump on a bandwagon due to propaganda? Peer pressure much?
@testtor2714
@testtor2714 2 жыл бұрын
Looks like a girl, sounds like a guy. What is it?
@beljakovinc
@beljakovinc 2 жыл бұрын
Oh, come on, are you here for CSP or to define gender?
@testtor2714
@testtor2714 2 жыл бұрын
@@beljakovinc I'm here to get to know whether this is a woman or a man.
Securing DevOps Show & Tell: Mozilla Sops
27:03
Securing DevOps
Рет қаралды 58 М.
Securing DevOps Show & Tell: Cloudmapper w/ Scott Piper
56:11
Securing DevOps
Рет қаралды 4,4 М.
人是不能做到吗?#火影忍者 #家人  #佐助
00:20
火影忍者一家
Рет қаралды 20 МЛН
How Strong Is Tape?
00:24
Stokes Twins
Рет қаралды 96 МЛН
Building a UI Framework with Ty Overby
1:00:04
Jane Street
Рет қаралды 6 М.
Microservices are Technical Debt
31:59
NeetCodeIO
Рет қаралды 692 М.
Why Isn't Functional Programming the Norm? - Richard Feldman
46:09
DEF CON 32 - The Darkest Side of Bug Bounty - Jason Haddix
32:30
DEFCONConference
Рет қаралды 51 М.
🚀  TDD, Where Did It All Go Wrong (Ian Cooper)
1:03:55
DevTernity Conference
Рет қаралды 572 М.
SQL Injection | Complete Guide
1:11:53
Rana Khalil
Рет қаралды 263 М.
Where Does Bad Code Come From?
42:21
Molly Rocket
Рет қаралды 205 М.
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
TCP/IP for Programmers
3:03:31
Eli the Computer Guy
Рет қаралды 239 М.
人是不能做到吗?#火影忍者 #家人  #佐助
00:20
火影忍者一家
Рет қаралды 20 МЛН