O'Reilly logo

Mashups: Strategies for the Modern Enterprise by J. Jeffrey Hanson

Stay ahead with the world's most comprehensive technology and business learning platform.

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, tutorials, and more.

Start Free Trial

No credit card required

Chapter 6. Applying Proper Techniques to Secure a Mashup

A mashup development model is very open by definition. This openness introduces many new security risks; therefore, security must be a primary concern when developing a mashup infrastructure.

Traditional mechanisms such as firewalls and DMZs are not sufficient for the granularity of access that mashups require for UI artifacts and data. The mashup infrastructure itself must be prepared to deal with issues such as cross-site request forgery (CSRF), AJAX security weaknesses, cross-site scripting, and secure sign-on across multiple domains.

This chapter discusses fundamental security issues that must be addressed when designing and implementing mashup components, processes, and artifacts. ...

With Safari, you learn the way you learn best. Get unlimited access to videos, live online training, learning paths, books, interactive tutorials, and more.

Start Free Trial

No credit card required