Protecting secrets and reducing information leakage Course
21 minutes
Course description
Securing configuration and secrets is one of the most important parts of your Laravel app. This course will focus on using the configuration system properly, securing environment secrets and ways to force SSL for your Laravel app. In addition, log filtering and exception handling systems are constructed to reduce the chance of leaking sensitive information.Syllabus
Exception handler configuration
Video - 00:02:00
Configuring Laravel's built-in exception handler to strip out sensitive information.
Log filtering
Video - 00:05:00
How to add filtering to remove sensitive information from log stacks.
Forcing SSL
Video - 00:02:00
If you can't force SSL redirects at the server level, what can Laravel do about it?
Environment and debug impacts
Video - 00:02:00
Trust but verify the impact of environment and debug settings.
Securing secrets and using configuration
Video - 00:08:00
Securely implementing secrets and credentials and accessing application configuration predictably.
Unlock 7 days of free training
- 1,400+ hands-on courses and labs
- Certification practice exams
- Skill assessments
Plans & pricing
Infosec Skills Personal
$299 / year
- 190+ role-guided learning paths (e.g., Ethical Hacking, Threat Hunting)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Custom certification practice exams (e.g., CISSP, Security+)
- Skill assessments
- Infosec peer community support
Infosec Skills Teams
$799 per license / year
- Team administration and reporting
- Dedicated client success manager
-
Single sign-on (SSO)
Easily authenticate and manage your learners by connecting to any identity provider that supports the SAML 2.0 standard.
-
Integrations via API
Retrieve training performance and engagement metrics and integrate learner data into your existing LMS or HRS.
- 190+ role-guided learning paths and assessments (e.g., Incident Response)
- 100s of hands-on labs in cloud-hosted cyber ranges
- Create and assign custom learning paths
- Custom certification practice exams (e.g., CISSP, CISA)
- Optional upgrade: Guarantee team certification with live boot camps