How do u test any "web-site" as a secure site...? or How do
you
test the security of a web-site...?
Answers were Sorted based on User's Feedback
Answer / umesh kr
Any web site is a secure website after doing some following
steps:-
IF user is loggen in and now copy tht URL aftr login..
..and then paste it to another tab to tht same browser...If
it ask for doing login again then tht website is perfectly
secure...
If not then tht website is not secured...
| Is This Answer Correct ? | 6 Yes | 0 No |
Answer / shankar.majji
1. Valid and invalid log-in.
2. limits defined for the no.of tries.
3. Log file is generated or not.
4. any querries are not acceptable on databases without
authorization.
5. application should be accessible for only valid users.
| Is This Answer Correct ? | 6 Yes | 1 No |
Answer / the deep
If the site invloves Credit card transactions we should see
that the SSL is active i.e to use HTTPS for such pages
| Is This Answer Correct ? | 1 Yes | 0 No |
Answer / narendra
using
X-SS method
URL injection/SQL injection
Cookies
| Is This Answer Correct ? | 2 Yes | 1 No |
Answer / chaitanya
It should allow only the Valid Users. And should not allow
the Unauthorised users. And the sessions should expire
properly.
| Is This Answer Correct ? | 1 Yes | 1 No |
It should allow autharised user with valid user name and
password.It should not allowed authorised user invalid user
name and password.It should not allowed unautharised
person.
| Is This Answer Correct ? | 1 Yes | 1 No |
Answer / sm
I can able to test this scenario based on the users system
allwoing.Whether system accepting valid users or not
| Is This Answer Correct ? | 0 Yes | 1 No |
Can anybody tell me that in real time how cookies testing is actually done.(kindly specify the steps). its very urgent
Provide an Example with ‘High severity and low priority’ and ‘Low severity and High priority’.
Test Director is use only for bug tracking or another purpose.
please answer, What is the Gap Analysis?
Where we save the bugs?
the interviwer ask ,why u r choose testing field means how can i say the answer for this one friend tell me
If a bug has high severity then usually that is treated as high priority,then why do priority given by test engineers/project managers and severity given by testers?
What is the procedure of manual testing?
what is vss
Please let us know With out GUI features how to test the application
what is review and walkthrough?
What do u mean by Positive and Negative testing & whatz r the diff's between them .Can anyone explain with an example .