Re: Secure OS Thoughts

From: Anne & Lynn Wheeler (lynn_at_garlic.com)
Date: 08/30/03


Date: Sat, 30 Aug 2003 03:52:51 GMT

dsr@Florence.edu writes:
> You could use google to search for terms such as "red black" emission
> security etc. pretty much SOP for sensitive installations.

merged security glossary at:
http://www.garlic.com/~lynn/secure.htm

sources listed at
http://www.garlic.com/~lynn/index.html#glosnote

from above:
Security: Terms merged from: AFSEC, AJP, CC1, CC2, CC21 (CC site),
CIAO, FCv1, FIPS140, IATF V3 (IATF site), IEEE610, ITSEC, Intel,
JTC1/SC27 (sc27 site), KeyAll, MSC, NIST 800-37, NCSC/TG004, NIAP, NSA
Intrusion, NSTISSC/CNSS, online security study, RFC1983, RFC2504,
RFC2647, RFC2828, TCSEC, TDI, TNI, and misc. Updated 20021108 with
terms from CIAO. Updated 20021205 with terms from 800-37 glossary.

some random information assurance references
http://www.sharp-ideas.net/ia/information_assurance.htm
http://www.thei3p.org/
http://www.thei3p.org/documents/analyses/Context_and_Pervasive_Issues_V1.0s.pdf
http://www.commoncriteria.org/
http://csrc.nist.gov/sec-cert/
http://www.nstissc.gov/html/library.html
http://www2.ni.din.de/sixcms/list.php?page=nani_redirect&alias=sc27
http://www.iatf.net/
http://www.ciao.gov/
http://niap.nist.gov/
http://csrc.nist.gov/publications/drafts.html
http://csrc.ncsl.nist.gov/publications/nistpubs/800-7/node276.html
http://www.nsa.gov/selinux/

-- 
Anne & Lynn Wheeler | http://www.garlic.com/~lynn/ 
Internet trivia 20th anv http://www.garlic.com/~lynn/rfcietff.htm


Relevant Pages

  • Re: How to automatic send an e-mail when an event occurs?
    ... CyberCop combines packet analysis with assessment of the event logs, ... environment, including security profiles, account groups, time and subnets. ... KSM is unable to terminate the intrusion or take actions such as logging ... As Windows NT and Windows 2000 are more fully deployed in environments ...
    (microsoft.public.windows.server.general)
  • RE: Centralized Logs for IDS
    ... farm9 Managed Security Solutions ... Subject: Centralized Logs for IDS ... Tivoli Intrusion Manager ...
    (Focus-IDS)
  • RE: False Positives (Definitions White Paper)
    ... False Positives: A user's guide to making sense of IDS alarms ... Robert Graham - Internet Security Systems ... INTRUSION PREVENTION: READY FOR PRIME TIME? ...
    (Focus-IDS)
  • RE: A basic Question from a new bie!!
    ... The GCIA is for GIAC Certified Intrusion Analysts. ... There are also other kinds of reports for firewall, Unix, Windows, etc. ... NIST Computer Security Incident Handling Guide ... > Get better spam protection with Yahoo! ...
    (Security-Basics)
  • Looking for VDS beta testers
    ... I'm looking for a larger segment of beta testers for my newest security ... Exposé (it is a network change detection system that works in ... conjunction with network vulnerability scanners to let you build ... INTRUSION PREVENTION: READY FOR PRIME TIME? ...
    (Focus-IDS)