This lesson offers a defenses overview and how to make a more secure configuration in either web server configuration settings or in programmatic settings. Including: Web Server Configuration o Disable directory indexing/directory browsing (IIS, Apache) o Secure settings in web application configuration file (web xml, ibm-web-ext.xml) Programmatic Settings o Secure XML Parser settings o Addresses XXE Injection and Access control Participants receive samples of these codes and learn how to build parsers.

Secure Coding