Trivadis Navigator
Trivadis BlogStart
Leistungsangebot
Kompetenzen
Training
News & PR
Events
Über Trivadis
Login
Join
Sign in
Options
Email Blog Author
RSS for posts
OK
Tags
Apache
Canonicalization
Eclipse
Java
JCrypTool
RCP
Security
XML
XML Security
XML Signature
XPath
Home
»
Dominik Schadow
Dominik Schadow
This blog is a mirror of http://blog.xml-sicherheit.de
RSS for posts
Subscribe via RSS
Sort by:
Most Recent
|
Most Views
|
Most Comments
Excerpt View
|
Full Post View
Dominik Schadow
Integrating Jenkins build results into JIRA issues
Posted
10 months ago
by
Dominik Schadow
After linking Subversion (or Git) with JIRA , the build server looks like a worthwhile target too. Aim of the JIRA integration for Jenkins is to link JIRA issues with the resulting build artifact and to answer the question "Which build contains the...
Dominik Schadow
Get ready for the Java Forum Stuttgart 2012
Posted
11 months ago
by
Dominik Schadow
July 5th 2012 is coming closer, and with that the Java Forum Stuttgart as well as my (German) session Sichere Software vom Java-Entwickler . This session will give you some ideas and recommendations for all of the problems and risks mentioned in the current...
Dominik Schadow
Security is every developer’s job
Posted
over 1 year ago
by
Dominik Schadow
In one of his latest blog posts published in the OWASP feed , Dinis Cruz points out, that secure development and application security itself must be invisible to developers. I can’t completely agree to that. On one side, Dinis is right: The frameworks...
Dominik Schadow
EGit 1.1 pushes only the active branch by default
Posted
over 1 year ago
by
status
As it turns out, there is already a fix in EGit 1.1 for the unexpected EGit behavior I described here and here . The new default for EGit 1.1 is to only push the active branch via Push to Upstream in case there is no explicit default spec. More is...
Dominik Schadow
EGit pushes all local branches when no explicit RefSpec is found - Update
Posted
over 1 year ago
by
status
As it turns out, some parts of yesterdays' post are not correct: The description of the behavior I expect was OK, but EGit behavior is not correct at all. Have a close look at the Git push spec and the sentence in bold: The special refspec : (or...
Dominik Schadow
EGit pushes all local branches when no explicit RefSpec is found
Posted
over 1 year ago
by
status
Cloning a Git repository with EGit 1.0 and no further configuration causes some unexpected behavior. The moment you clone a repository, say from GitHub , everything is set up for you, and you are ready to push and pull. And since you fully adopted the...
Dominik Schadow
My session at the Java Forum Stuttgart
Posted
over 2 years ago
by
status
My session for the upcoming Java Forum Stuttgart , Push up your code - next generation version control with (E)Git , was accepted! May session takes place at 12:15 p.m. (D4). As you can probably guess, it is about Git, especially about the Eclipse version...
Dominik Schadow
Eye on EclipseCon 2009
Posted
over 4 years ago
by
status
EclipseCon 2009 is over, and is has been great! A lot of things to learn, and even more people to meet. This was my first EclipseCon, and it couldn't have been any better! Monday started with some great tutorials: Building Commercial-Quality...
Dominik Schadow
A whole bunch of new XML Security working drafts
Posted
over 4 years ago
by
status
The W3C XML Security Working Group has released eight first public working drafts last week, from updated XML Encryption 1.1 and XML Signature 1.1 specifications to even some new ones. Among others, these drafts include revisions to XML Signature and...
Dominik Schadow
Best Practices für XML Signatures
Posted
over 4 years ago
by
status
Das W3C hat vor einigen Tagen unter http://www.w3.org/TR/2008/WD-xmldsig-bestpractices-20081114/ eine Sammlung von 16 Best Practices für die digitalen Signaturen mit XML veröffentlicht. Noch ist es ein Working Draft (d.h. Kommentare sind bei der Working...
Dominik Schadow
Eclipse RCP Cross Platform Builds
Posted
over 4 years ago
by
Dominik Schadow
6
Comments
Wer Rich Clients auf Basis der Eclipse Rich Client Platform (RCP) entwickelt, wird früher oder später mit zwei Problemen bzw. Anforderungen konfrontiert werden: zum einen stehen im Rich Client wesentlich weniger Plug-ins zur Verfügung als in Eclipse ...
Dominik Schadow
XML Security Tools
Posted
over 4 years ago
by
Dominik Schadow
0
Comments
Die bekannte Eclipse Web Tools Platform bekommt Zuwachs: die XML Security Tools werden zukünftig Teil des WTP Incubator Projekts sein. Der bereits akzeptierte Proposal findet sich im Eclipse Wiki . Die XML Security Tools werden auf meinem XML-Security...
Dominik Schadow
JCrypTool 1.0 Milestone 2
Posted
over 4 years ago
by
Dominik Schadow
0
Comments
Das JCrypTool Team hat heute den Milestone 2 der neuen Kryptografie eLearning Plattform freigegeben. Die Software steht für die Betriebssysteme Linux, Mac und Windows auf der SourceForge Projektseite zum Download bereit. Der Source Code ist ebenfalls...
Dominik Schadow
XPath Injection
Posted
over 4 years ago
by
Dominik Schadow
0
Comments
Angriffsmöglichkeiten auf XML gibt es Reihenweise: von XML Document Size/Width/Depth Attacks über Wellformedness-based Paser Attacks bis hin zu diversen Injections . Allgemein bekannt sind nur relativ wenige dieser Angriffe. Oftmals ist übrigens nicht...
Dominik Schadow
XML Signature Syntax and Processing (Second Edition) verfügbar
Posted
over 4 years ago
by
Dominik Schadow
0
Comments
Etwas mehr als sechs Jahre nach der ersten Version hat das W3C am 10. Juni die XML Signature Syntax and Processing (Second Edition) als Recommendation freigegeben. Die aus meiner Sicht wichtigsten Änderungen habe ich bereits vor einiger Zeit gepostet...
Dominik Schadow
7. XML Signaturworkshop
Posted
over 4 years ago
by
Dominik Schadow
0
Comments
Vom 19. bis 20. Mai 2008 fand der 7. XML Signaturworkshop an der FH Hagenberg (Österreich) statt. Gut zehn Sessions drehten sich rund um XML Security, SOA und Web Service Security und mögliche Angriffe auf die XML Sicherheit. Insgesamt war spürbar, dass...
Dominik Schadow
Canonical XML Version 1.1 verfügbar
Posted
over 5 years ago
by
Dominik Schadow
0
Comments
Die unter anderem für XML Digitale Signaturen wichtige Empfehlung Canonical XML ist unter http://www.w3.org/TR/xml-c14n11/ in ihrer finalen überarbeiteten Version 1.1 verfügbar (seit dem 2. Mai 2008). Und auch wenn es die Version 1.1 andeuten mag, Canonical...
Dominik Schadow
XML Signature Syntax and Processing (Second Edition) fast fertig
Posted
over 5 years ago
by
Dominik Schadow
1
Comments
Am 26. März hat die XML Security Specifications Maintenance Working Group die XML Signature Syntax and Processing (Second Edition) als Proposed Edited Recommendation freigegeben. Also eine Stufe vor der endgültigen Empfehlung. Und da sich erfahrungsgemäß...
Page 1 of 1 (18 items)