<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Trehb101.com - Got Geek? &#187; Salami Attack</title>
	<atom:link href="http://www.trehb101.com/index.php/tag/salami-attack/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.trehb101.com</link>
	<description>Information Security : Technology : Project Management : Life</description>
	<lastBuildDate>Thu, 31 Mar 2011 22:23:44 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>CISSP Exam Note (Domain 2: Telecommunications and Networking Security) – Key Concepts and Other Definitions</title>
		<link>http://www.trehb101.com/index.php/2009/12/22/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-key-concepts-and-other-definitions/</link>
		<comments>http://www.trehb101.com/index.php/2009/12/22/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-key-concepts-and-other-definitions/#comments</comments>
		<pubDate>Tue, 22 Dec 2009 14:50:54 +0000</pubDate>
		<dc:creator>TheDon</dc:creator>
				<category><![CDATA[Information Security]]></category>
		<category><![CDATA[Information Systems]]></category>
		<category><![CDATA[CISSP Exam]]></category>
		<category><![CDATA[CISSP Notes]]></category>
		<category><![CDATA[computer security]]></category>
		<category><![CDATA[department of defense]]></category>
		<category><![CDATA[Layered Architecture]]></category>
		<category><![CDATA[Orange Book]]></category>
		<category><![CDATA[OSI model]]></category>
		<category><![CDATA[Protocols]]></category>
		<category><![CDATA[Rainbow Series]]></category>
		<category><![CDATA[Redbook]]></category>
		<category><![CDATA[Salami Attack]]></category>
		<category><![CDATA[TCSEC]]></category>
		<category><![CDATA[TNI]]></category>
		<category><![CDATA[Trusted Computer System Evaluation Criteria]]></category>
		<category><![CDATA[Trusted Network Interpretation]]></category>
		<category><![CDATA[US Government]]></category>

		<guid isPermaLink="false">http://www.trehb101.com/?p=266</guid>
		<description><![CDATA[The Rainbow Series (sometimes known as the Rainbow Books) is a series of computer security standards published by the United States government in the 1980s and 1990s. They were originally published by the U.S. Department of Defense Computer Security Center, and then by the National Computer Security Center.]]></description>
			<content:encoded><![CDATA[<p><strong>Rainbow Series</strong></p>
<p>The Rainbow Series (sometimes known as the Rainbow Books) is a series of computer security standards published by the United States government in the 1980s and 1990s. They were originally published by the U.S. Department of Defense Computer Security Center, and then by the National Computer Security Center.</p>
<p>These standards describe a process of evaluation for trusted systems. In some cases, U.S. government entities (as well as private firms) would require formal validation of computer technology using this process as part of their procurement criteria. Many of these standards have influenced, and have been superseded by, the Common Criteria.<span id="more-266"></span></p>
<p><!--Start CISSP ebook ad--></p>
<table border="0" width="100%">
<tbody>
<tr>
<td bgcolor="#ffcc99">
<h1 style="text-align: center;"><strong>Planning to take the CISSP Exam? </strong></h1>
<h2><strong>Get a copy of my personal notes (300plus pages worth) that I used to pass the exam for only <span class="style1">$25.00</span>.</strong></h2>
<div><strong> </strong></p>
<div class="wp-caption alignleft" style="width: 110px"><strong><strong><a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/"><img title="CISSP Exam Review Notes" src="http://www.trehb101.com/images/entries/CISSP-Review-Notes-PACK-small.png" alt="Click the Add To Cart Button to Purchase" width="100" height="192" /></a></strong></strong><p class="wp-caption-text">Click the Add To Cart Button to Purchase</p></div>
<p><strong>Plus you will also get copies of notes from other CISSPs. </strong></p>
<p><strong>Learn more about this package by visiting this blog entry: <a href="http://www.trehb101.com/index.php/2009/11/18/cissp-review-notes-notes-i-used-to-pass-the-exam/">CISSP REVIEW NOTES I USED TO PASS THE  EXAM. </a></strong></div>
<p style="text-align: center;" align="center"><strong>CLICK BELOW TO MAKE YOUR PURCHASE NOW. </strong></p>
<p style="text-align: center;" align="center"><strong><object><form method="post"  action=""  style="display:inline" onsubmit="return ReadForm(this, true);"><input type="submit" value="Add to Cart" /><input type="hidden" name="product" value="CISSP Review Notes Package" /><input type="hidden" name="price" value="25.00" /><input type="hidden" name="product_tmp" value="CISSP Review Notes Package" /><input type="hidden" name="addcart" value="1" /></form></object></strong></p>
<p style="text-align: center;" align="center">All Purchases are securely processed through Paypal. Once you click the button please check your shopping cart at the upper right hand side of the page to complete your order.</p>
<p style="text-align: center;" align="center"><strong>IMPORTANT NOTICE: </strong></p>
<p style="text-align: center;" align="center">I  MANUALLY REVIEW ALL ORDERS. SO ONCE YOU PURCHASE THE PRODUCT, THERE  WILL BE SOME DELAY ON YOU RECEIVING AN E-MAIL FROM ME WITH THE LINK TO  THE DOWNLOAD AREA OF THE PRODUCT. YOU WILL GET A RESPONSE FROM ME  WITHIN 24-48 HOURS.</p>
</td>
</tr>
</tbody>
</table>
<p><!--End CISSP ebook ad--></p>
<p>The books have nicknames based on the color of its cover. For example, the Trusted Computer System Evaluation Criteria was referred to as &#8220;The Orange Book.&#8221; In the book entitled Applied Cryptography, security expert Bruce Schneier states of NCSC-TG-021 that he &#8220;can&#8217;t even begin to describe the color of [the] cover&#8221; and that some of the books in this series have &#8220;hideously colored covers.&#8221; He then goes on to describe how to receive a copy of them, saying &#8220;Don&#8217;t tell them I sent you.&#8221;</p>
<p>(Source: http://en.wikipedia.org/wiki/Rainbow_Series)</p>
<ul>
<li>Redbook – Trusted Network Interpretation (TNI)<strong> </strong></li>
<li>Time and technological changes lessen the      relevancy of the TNI to contemporary networking<strong> </strong></li>
<li>Deals with technical issues outside the scope of      the Orange Book with regards to networks<strong> </strong></li>
<li>Redbook interprets the Orange Book<strong> </strong></li>
</ul>
<p><strong>Orange Book – </strong>Trusted Computer Security Evaluation Criteria</p>
<ul>
<li>A document published by the US Department of Defense which contains criteria used for evaluating the degree of security in a networked system. It characterizes security from D (the minimum) to A1 (very secure). Most OPERATING SYSTEMS and NETWORK OPERATING SYSTEMS are classified at the C2 level. It is also known as the Orange Book and is often abbreviated to TCSEC.</li>
</ul>
<p><strong>TNI Evaluation Classes</strong></p>
<ul>
<li>D – Minimal protection</li>
<li>C – Discretionary protection</li>
<li>C1 – Discretionary Security Protection</li>
<li>C2 – Controlled Access protection</li>
<li>B – Mandatory</li>
<li>B1 – Labeled Security</li>
<li>B2 – Structured</li>
<li>B3 – Security Domains</li>
</ul>
<p><strong>Protocols – </strong>a standard set of rules that determines how computers communicate with each other across networks despite their differences</p>
<p><strong>Layered architecture &#8211; </strong>An architecture in which data moves from one defined level of processing to another. Communications protocols are a primary example (i.e the OSI model)</p>
<ul>
<li>Shows how communication should take place</li>
<li>Clarify the general functions of a communication      process</li>
<li>To break down complex networking processes into      more manageable sub-layers</li>
<li>Using industry standard interfaces enables      interoperability</li>
<li>To change the features of one layer without      changing the code in every layer</li>
<li>Easier troubleshooting</li>
</ul>
<p><strong>Salami Attack – </strong>a series of minor computer crimes that are part of a larger crime</p>
]]></content:encoded>
			<wfw:commentRss>http://www.trehb101.com/index.php/2009/12/22/cissp-exam-note-domain-2-telecommunications-and-networking-security-%e2%80%93-key-concepts-and-other-definitions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

