RE: Sources of network security templates or designs

2010-06-29 Thread Sean Donelan
On Sat, 26 Jun 2010, Tomas L. Byrnes wrote: While the DISA STIGs are probably the archetype, you have to start with whatever the sponsoring or certifying authority uses, if you need to pass some audit later. True, but even sponsoring and certifying authorities need to get information from some

RE: Sources of network security templates or designs

2010-06-26 Thread Tomas L. Byrnes
While the DISA STIGs are probably the archetype, you have to start with whatever the sponsoring or certifying authority uses, if you need to pass some audit later. Those almost always reference NIST docs: http://www.nist.gov/itl/publications.cfm?defaultSearch=false&authorlist= &keywords=&topics=3

Re: Sources of network security templates or designs

2010-06-26 Thread jul
http://www.team-cymru.org/ReadingRoom/Templates/ Sean Donelan wrote on 24/06/10 02:45: > While every network designer/architect with an emphasis on security has > his or her favorite design templates, I'm wondering what public sources > do people start with? > >Cisco SAFE and other published

RE: Sources of network security templates or designs

2010-06-24 Thread Sean Donelan
On Thu, 24 Jun 2010, Chris Gravell wrote: You start with all of them once you have a good understanding of the underlying protocols. There is no cheat-sheet. I wasn't asking for the cheat-sheet. I was asking for what do you include in the catagory of "all of them."

RE: Sources of network security templates or designs

2010-06-24 Thread Chris Gravell
You start with all of them once you have a good understanding of the underlying protocols. There is no cheat-sheet. -Original Message- From: Sean Donelan [mailto:s...@donelan.com] Sent: Thursday, June 24, 2010 2:45 AM To: nanog@nanog.org Subject: Sources of network security templates or