|
|
 |
by J. J. Whitmore |
 |
 |
 |
Cited references
-
J. J. Whitmore, Security and e-business: Is There a Prescription? Proceedings, 21st National Information Systems Security Conference, Arlington, VA (October 69, 1998); available at http://csrc.nist.gov/nissc/1998/proceedings/paperD13.pdf.
-
D. Verton, Common Ground Sought for IT Security Requirements, Computerworld 35, No. 11, 8 (March 12, 2001).
-
P. B. Checkland, Systems Thinking, Systems Practice, John Wiley & Sons, Inc., New York (1981).
-
W. R. Cheswick and S. M. Bellovin, Firewalls and Internet Security: Repelling the Wily Hacker, Addison-Wesley Publishing Co., Reading, MA (1994).
-
RFC 1825, Security Architecture for the Internet Protocol (August 1995); available at http://www.ietf.org/rfc.html.
-
Security Architecture for Open Systems Interconnection for CCITT Applications, ITU-T Recommendation X.800/ISO 7498-2 (1991). Obtainable from http://www.itu.int/itudoc/itu-t/rec/x/x500up/x800.html.
-
Information TechnologySecurity TechniquesEvaluation Criteria for IT SecurityPart 1: Introduction and General Model, ISO/IEC 15408-1 (1999); available from http://isotc.iso.ch/livelink/livelink/fetch/2000/2489/lttf_Home/
PubliclyAvailableStandards.htm.
-
Information TechnologySecurity TechniquesEvaluation Criteria for IT SecurityPart 2: Security Functional Requirements, ISO/IEC 15408-2 (1999).
-
Information TechnologySecurity TechniquesEvaluation Criteria for IT SecurityPart 3: Security Assurance Requirements, ISO/IEC 15408-3 (1999).
-
See http://www.commoncriteria.org/protection_profiles/pp.html.
-
Guide for Development of Protection Profiles and Security Targets, ISO/IEC PDTR 15446, available at http://csrc.nist.gov/cc/t4/wg3/27n2449.pdf, pp. 6974.
-
E. Rechtin, Systems Architecting: Creating and Building Complex Systems, Prentice Hall, New York (1991).
-
Committee on Information Systems Trustworthiness, National Research Council, Trust in Cyberspace, National Academy Press, Washington, DC (1999).
-
A. Patel and S. O. Ciardhuain, The Impact of Forensic Computing on Telecommunications, IEEE Communications Magazine 38, No. 11, 6467 (November 2000).
-
Digital Signature Guidelines, American Bar Association (1996), Section 1.35, available from http://www.abanet.org/scitech/ec/isc/dsgfree.html.
-
F. B. Schneider, Enforceable Security Policies, ACM Transactions on Information and System Security 3, No. 1, 3050 (February 2000).
-
P. T. L. Lloyd and G. M. Galambos, Technical Reference Architectures, IBM Systems Journal 38, No. 1, 5175 (1999).
-
H. Johner, S. Fujiwara, A. S. Yeung, A. Stephanou, and J. Whitmore, Deploying a Public Key Infrastructure, Redbook SG24-5512-00, IBM Corporation, http://www.redbooks.ibm.com.
|
 |
|
|