Re: Is OpenBSD + PF accredited or certified in any way ?

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Brad Tilley
Date: Tuesday, February 2, 2010 - 12:15 pm

On Tue, 02 Feb 2010 18:09 +0000, "Bayard Bell" <buffer.g.overflow@googlemail.com> wrote:

Common Criteria - http://www.iso15408.net - has largely replaced ITSEC and others. Like some other ISO standards, you may have to purchase a copy. I would say that CC makes some people feel good, but does little in the way of real Security. Microsoft Windows XP is EAL4 certified when configured certain ways. I think the certification process can be very narrowly focused on a few parts of the system so the vendor can say, "Look at this component of our OS, but not those" or "Certify our OS when configured a certain way". 

It's a costly process too and takes awhile to complete. I'm not sure any open source OS is certified. For proft, vendor backed Linux distributions (RHEL) may be as they have the time and money to waste on it and TrustedBSD makes reference to CC, but I don't think it's certified.

Brad
 
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Re: Is OpenBSD + PF accredited or certified in any way ?, Marco Peereboom, (Mon Feb 1, 4:41 pm)
Re: Is OpenBSD + PF accredited or certified in any way ?, Matthew Szudzik, (Mon Feb 1, 4:59 pm)
Re: Is OpenBSD + PF accredited or certified in any way ?, Brad Tilley, (Tue Feb 2, 12:15 pm)
Re: Is OpenBSD + PF accredited or certified in any way ?, Martin Schröder, (Tue Feb 2, 12:29 pm)
Re: Is OpenBSD + PF accredited or certified in any way ?, Marco Peereboom, (Tue Feb 2, 12:36 pm)
Re: Is OpenBSD + PF accredited or certified in any way ?, Janne Johansson, (Wed Feb 3, 4:52 am)
Re: Is OpenBSD + PF accredited or certified in any way ?, Martin Schröder, (Wed Feb 3, 3:10 pm)
Re: Is OpenBSD + PF accredited or certified in any way ?, Henning Brauer, (Fri Feb 12, 2:55 am)