Use the following guidelines for input validation:
- Create a comprehensive list of all input fields and input items for the application.
- For each input field or input item, identify the acceptance criteria of the input value, such as types of characters used, and length or size of the input.
- Test each input field or input item with unacceptable values to make sure it is validated correctly in the code.
FedRAMP / Moderate Baseline
*_ SI-10: System And Information Integrity | Information Input Validation *_
The information system checks the validity of [Assignment: organization-defined information inputs].
Imported from SD Elements: https://redhat.sdelements.com/bunits/psse-secure-development/group-3-supporting-and-tooling-offering/openshift-zero-trust-workload-identity-manager/tasks/phase/specifications/311-T519/
- relates to
-
SPIRE-192 Analyse and document to test that input validation is done on all forms of input
-
- Closed
-
- links to