[ISN] Two more from NIST
InfoSec News
isn at c4i.org
Thu Jul 8 06:54:21 EDT 2004
http://www.fcw.com/fcw/articles/2004/0705/web-nist-07-07-04.asp
By Florence Olsen
July 7, 2004
Two new publications from the National Institute of Standards and
Technology provide technical help for government agencies and
businesses that are required to protect information systems.
One publication offers a starting point for organizations to
understand basic information security principles. The other gives
technical tips for setting up electronic authentication using
guidelines issued by Office of Management and Budget officials.
The first publication, NIST Special Publication 800-27 Revision A, is
titled "Engineering Principles for Information Technology Security."
The second is NIST SP 800-63, "Electronic Authentication Guideline,"
which defines technical requirements for identity proofing and
registration, identity tokens, authentication protocols and security
assertions.
NIST SP 800-27 Revision A
http://csrc.nist.gov/publications/nistpubs/800-27A/SP800-27-RevA.pdf
NIST SP 800-63
http://csrc.nist.gov/publications/nistpubs/800-63/SP800-63v6_3_3.pdf
More information about the ISN
mailing list