[ISN] Two more from NIST

From: InfoSec News (isn@private)
Date: Thu Jul 08 2004 - 03:54:21 PDT


http://www.fcw.com/fcw/articles/2004/0705/web-nist-07-07-04.asp

By Florence Olsen 
July 7, 2004 

Two new publications from the National Institute of Standards and
Technology provide technical help for government agencies and
businesses that are required to protect information systems.

One publication offers a starting point for organizations to
understand basic information security principles. The other gives
technical tips for setting up electronic authentication using
guidelines issued by Office of Management and Budget officials.

The first publication, NIST Special Publication 800-27 Revision A, is
titled "Engineering Principles for Information Technology Security."  
The second is NIST SP 800-63, "Electronic Authentication Guideline,"  
which defines technical requirements for identity proofing and
registration, identity tokens, authentication protocols and security
assertions.


NIST SP 800-27 Revision A 
http://csrc.nist.gov/publications/nistpubs/800-27A/SP800-27-RevA.pdf

NIST SP 800-63 
http://csrc.nist.gov/publications/nistpubs/800-63/SP800-63v6_3_3.pdf



_________________________________________
Help InfoSec News with a donation: http://www.c4i.org/donation.html



This archive was generated by hypermail 2.1.3 : Thu Jul 08 2004 - 06:37:33 PDT