Security

Description

This session covers SugarCRM security policies for how security incidents are handled. Additionally we will go more in depth around the different countermeasures which are in place in the Sugar code base and how to properly leverage them for your customizations and integrations.

Topics

  • Security Incident handling
    • Life cycle
    • Tooling
  • Input validation framework
    • Configuration
    • Validator constraints
    • Customizations
  • CSRF Tokens
    • Modify actions
    • Customizations
  • Best practices
    • XSS
    • CSRF
    • SQL Injection
    • Path traversal

Details

  • Presenter: Jelle Vink
  • Duration: 1 hour
  • Target Audience: Sugar Develop Intermediate/Advanced