![]() |
ESAPI ProjectDevelopment of the security Framework based on OWASP ESAPI for JSF 2.0 |
This project is a continuation of the bachelor thesis (Master Thesis - Applied Computer Science Albert-Ludwigs-Universität Freiburg im Breisgau - "Development of the Security Framework based on OWASP ESAPI for JSF2.0" by Rakeshkumar Kachhadiya) created in May 2012.
The goal is to improve more security on the ‘File based authorization’ module.
The 'File based authorization' module gives permission to visualize some areas or pages at the presentation layer as per given user rights.
It’s responsible to maintain the user information in the file with their assigned roles but also setting the rendering components false if the accessible user tries to retrieve the page.