<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Coding Standard</title>
	<atom:link href="http://www.greebo.net/2008/09/24/coding-standard/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.greebo.net/2008/09/24/coding-standard/</link>
	<description>mostly useless crap from me</description>
	<lastBuildDate>Sun, 21 Feb 2010 00:51:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Big Red</title>
		<link>http://www.greebo.net/2008/09/24/coding-standard/comment-page-1/#comment-19358</link>
		<dc:creator>Big Red</dc:creator>
		<pubDate>Mon, 20 Oct 2008 05:48:15 +0000</pubDate>
		<guid isPermaLink="false">http://www.greebo.net/?p=473#comment-19358</guid>
		<description>http://upsidedowndogs.com/

Wunnerful stuff</description>
		<content:encoded><![CDATA[<p><a href="http://upsidedowndogs.com/" rel="nofollow">http://upsidedowndogs.com/</a></p>
<p>Wunnerful stuff</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: un-excogitate.org &#187; Blog Archive &#187; Secure Software is Sexy</title>
		<link>http://www.greebo.net/2008/09/24/coding-standard/comment-page-1/#comment-19209</link>
		<dc:creator>un-excogitate.org &#187; Blog Archive &#187; Secure Software is Sexy</dc:creator>
		<pubDate>Wed, 08 Oct 2008 04:50:02 +0000</pubDate>
		<guid isPermaLink="false">http://www.greebo.net/?p=473#comment-19209</guid>
		<description>[...] second article was by Andrew van der Stock on the upcoming &#8220;OWASP Top 10 Coding Standard&#8220;. I&#8217;ll only list the 10 topic headlines but I definitely recommend you check out the [...]</description>
		<content:encoded><![CDATA[<p>[...] second article was by Andrew van der Stock on the upcoming &#8220;OWASP Top 10 Coding Standard&#8220;. I&#8217;ll only list the 10 topic headlines but I definitely recommend you check out the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Biggus Reddus</title>
		<link>http://www.greebo.net/2008/09/24/coding-standard/comment-page-1/#comment-19195</link>
		<dc:creator>Biggus Reddus</dc:creator>
		<pubDate>Tue, 07 Oct 2008 21:43:22 +0000</pubDate>
		<guid isPermaLink="false">http://www.greebo.net/?p=473#comment-19195</guid>
		<description>Noddy,

Knowing you&#039;re a bit of a fan of old EK, thought you might find the following interesting:



PE</description>
		<content:encoded><![CDATA[<p>Noddy,</p>
<p>Knowing you&#8217;re a bit of a fan of old EK, thought you might find the following interesting:</p>
<p>PE</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sam</title>
		<link>http://www.greebo.net/2008/09/24/coding-standard/comment-page-1/#comment-19194</link>
		<dc:creator>Sam</dc:creator>
		<pubDate>Tue, 07 Oct 2008 19:37:57 +0000</pubDate>
		<guid isPermaLink="false">http://www.greebo.net/?p=473#comment-19194</guid>
		<description>What an exciting project! And a great start. A couple quick thoughts:

1) What would you say to combining authentication and access control? I see both sides: each section stands on its own, yet they are also closely related. Combining them, though, opens a spot for another section. Not that I know what that section might be yet.

2) As important as I believe a code repository is -- essential! -- we&#039;ll have to demonstrate how it impacts security. Yes, it&#039;s actionable and raises the maturity of the SDLC, but &quot;I [have] never seen secure code without one&quot; isn&#039;t quite enough to use the label &quot;mandatory&quot;. Correlation is not causation. However, because using a source code repository implies some rigor to the SDLC and makes it easy to identify changes to a codebase, it&#039;s not hard to determine the impact.</description>
		<content:encoded><![CDATA[<p>What an exciting project! And a great start. A couple quick thoughts:</p>
<p>1) What would you say to combining authentication and access control? I see both sides: each section stands on its own, yet they are also closely related. Combining them, though, opens a spot for another section. Not that I know what that section might be yet.</p>
<p>2) As important as I believe a code repository is &#8212; essential! &#8212; we&#8217;ll have to demonstrate how it impacts security. Yes, it&#8217;s actionable and raises the maturity of the SDLC, but &#8220;I [have] never seen secure code without one&#8221; isn&#8217;t quite enough to use the label &#8220;mandatory&#8221;. Correlation is not causation. However, because using a source code repository implies some rigor to the SDLC and makes it easy to identify changes to a codebase, it&#8217;s not hard to determine the impact.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: afongen &#187; Summarizing meetings so I don&#8217;t have to!</title>
		<link>http://www.greebo.net/2008/09/24/coding-standard/comment-page-1/#comment-19078</link>
		<dc:creator>afongen &#187; Summarizing meetings so I don&#8217;t have to!</dc:creator>
		<pubDate>Sat, 04 Oct 2008 03:37:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.greebo.net/?p=473#comment-19078</guid>
		<description>[...] 10 Coding Standard. Andrew introduces this in a recent blog post. The idea is to set a minimum standard for what needs to be done to develop secure [...]</description>
		<content:encoded><![CDATA[<p>[...] 10 Coding Standard. Andrew introduces this in a recent blog post. The idea is to set a minimum standard for what needs to be done to develop secure [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>
