Re: [scap_interest] Operational Aspects
"Waltermire, David A." <david.waltermire@nist.gov> Fri, 17 February 2012 02:49 UTC
Return-Path: <david.waltermire@nist.gov>
X-Original-To: scap_interest@ietfa.amsl.com
Delivered-To: scap_interest@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1E96121E8022 for <scap_interest@ietfa.amsl.com>; Thu, 16 Feb 2012 18:49:06 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.06
X-Spam-Level:
X-Spam-Status: No, score=-6.06 tagged_above=-999 required=5 tests=[AWL=0.539, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DZb3MTsu4a8x for <scap_interest@ietfa.amsl.com>; Thu, 16 Feb 2012 18:49:01 -0800 (PST)
Received: from wsget2.nist.gov (wsget2.nist.gov [129.6.13.151]) by ietfa.amsl.com (Postfix) with ESMTP id 4A00421E801C for <scap_interest@ietf.org>; Thu, 16 Feb 2012 18:49:01 -0800 (PST)
Received: from WSXGHUB2.xchange.nist.gov (129.6.18.19) by wsget2.nist.gov (129.6.13.151) with Microsoft SMTP Server (TLS) id 14.1.355.2; Thu, 16 Feb 2012 21:48:40 -0500
Received: from MBCLUSTER.xchange.nist.gov ([fe80::d479:3188:aec0:cb66]) by WSXGHUB2.xchange.nist.gov ([129.6.18.19]) with mapi; Thu, 16 Feb 2012 21:47:04 -0500
From: "Waltermire, David A." <david.waltermire@nist.gov>
To: Adam Montville <amontville@tripwire.com>, kent_landfield <Kent_Landfield@McAfee.com>, "lnunez@c3isecurity.com" <lnunez@c3isecurity.com>
Date: Thu, 16 Feb 2012 21:48:57 -0500
Thread-Topic: [scap_interest] Operational Aspects
Thread-Index: AQHM611pUdMxDo8SrEm/UADfFmLhZ5Y9b7oA//+GooCAA2EKgIAADoWAgAAEZwD//8iRAIAAM5hA
Message-ID: <D7A0423E5E193F40BE6E94126930C4930906BF35C5@MBCLUSTER.xchange.nist.gov>
References: <D7A0423E5E193F40BE6E94126930C4930906BF334F@MBCLUSTER.xchange.nist.gov> <CB62D49B.95A9%amontville@tripwire.com>
In-Reply-To: <CB62D49B.95A9%amontville@tripwire.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Cc: "scap_interest@ietf.org" <scap_interest@ietf.org>
Subject: Re: [scap_interest] Operational Aspects
X-BeenThere: scap_interest@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Discussion List for IETFers interested in the Security Content Automation Protocol \(SCAP\)." <scap_interest.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scap_interest>, <mailto:scap_interest-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/scap_interest>
List-Post: <mailto:scap_interest@ietf.org>
List-Help: <mailto:scap_interest-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scap_interest>, <mailto:scap_interest-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 17 Feb 2012 02:49:06 -0000
I will take you up on that when the time comes. ;-) Dave > -----Original Message----- > From: Adam Montville [mailto:amontville@tripwire.com] > Sent: Thursday, February 16, 2012 6:44 PM > To: Waltermire, David A.; kent_landfield; lnunez@c3isecurity.com > Cc: scap_interest@ietf.org > Subject: Re: [scap_interest] Operational Aspects > > I'd like to contribute to this as well - as much as I can anyway. > > From: "Waltermire, David A." > <david.waltermire@nist.gov<mailto:david.waltermire@nist.gov>> > Date: Thu, 16 Feb 2012 14:02:04 -0500 > To: kent_landfield > <kent_landfield@mcafee.com<mailto:kent_landfield@mcafee.com>>, > "lnunez@c3isecurity.com<mailto:lnunez@c3isecurity.com>" > <lnunez@c3isecurity.com<mailto:lnunez@c3isecurity.com>>, Adam Montville > <amontville@tripwire.com<mailto:amontville@tripwire.com>> > Cc: "scap_interest@ietf.org<mailto:scap_interest@ietf.org>" > <scap_interest@ietf.org<mailto:scap_interest@ietf.org>> > Subject: RE: [scap_interest] Operational Aspects > > We are continuing to work on this and I am very interested in > developing standards in this area. I am currently working on > developing an open source prototype that can be used to evaluate > standardized approaches to this problem. I haven't published the > latest code on this yet, but the original work we started can be found > at: > > http://code.google.com/p/security-automation-content-repository/ > > The companion presentation to Kent's from March can be found here: > > http://scap.nist.gov/events/2011/saddsp/presentations/Security_Automati > on_Content_Repository_Demo.pdf > > Dave > > From: scap_interest-bounces@ietf.org<mailto:scap_interest- > bounces@ietf.org> [mailto:scap_interest-bounces@ietf.org] On Behalf Of > Kent_Landfield@McAfee.com<mailto:Kent_Landfield@McAfee.com> > Sent: Thursday, February 16, 2012 1:46 PM > To: lnunez@c3isecurity.com<mailto:lnunez@c3isecurity.com>; > amontville@tripwire.com<mailto:amontville@tripwire.com> > Cc: scap_interest@ietf.org<mailto:scap_interest@ietf.org> > Subject: Re: [scap_interest] Operational Aspects > > I see the topic of Content Repository interfaces as very important item > that really should be worked here. We have been talking about this > topic for over two years now as you both are aware. I am including the > presentation that was given at SCAP Winter Developer Days last March > that may help frame the issues. > > Kent Landfield > Director Content Strategy, Architecture and Standards > > McAfee | An Intel Company > 5000 Headquarters Dr. > Plano, Texas 75024 > > Direct: +1.972.963.7096 > Mobile: +1.817.637.8026 > Web: www.mcafee.com<http://www.mcafee.com/> > > From: Luis Nunez > <lnunez@c3isecurity.com<mailto:lnunez@c3isecurity.com>> > Date: Thu, 16 Feb 2012 11:54:21 -0600 > To: Adam Montville > <amontville@tripwire.com<mailto:amontville@tripwire.com>> > Cc: Kent Landfield > <kent_landfield@mcafee.com<mailto:kent_landfield@mcafee.com>>, > "scap_interest@ietf.org<mailto:scap_interest@ietf.org>" > <scap_interest@ietf.org<mailto:scap_interest@ietf.org>> > Subject: Re: [scap_interest] Operational Aspects > > Since you mentioned "NVD" also known as the National Vulnerability > Database. I think at some point the IETF will be helpful in creating a > protocol to communicate with these content repositories. Last I > counted was 7 content repositories. > In no particular order and I am sure there are more out there. > > -SecPod > -Novell > -NVD > -IT Security Database > -Debian > -Altx-soft > > -ln > > > On Feb 14, 2012, at 5:18 PM, Adam Montville wrote: > > Fair enough. Just throwing things against the wall as they come to > mind. > Adam > From: kent_landfield > <kent_landfield@mcafee.com<mailto:kent_landfield@mcafee.com><mailto:ken > t_landfield@mcafee.com><mailto:kent_landfield@mcafee.com%3e>> > Date: Tue, 14 Feb 2012 15:32:38 -0600 > To: Adam Montville > <amontville@tripwire.com<mailto:amontville@tripwire.com><mailto:amontvi > lle@tripwire.com><mailto:amontville@tripwire.com%3e>>, > <scap_interest@ietf.org<mailto:scap_interest@ietf.org><mailto:scap_inte > rest@ietf.org><mailto:scap_interest@ietf.org%3e>> > Subject: Re: [scap_interest] Operational Aspects Adam, We have more > than enough on our plate with the specification / I-D work. Let's see > if we can deal with this in a more appropriate forum. I do not see this > as that forum. My 2cents... Thanks. > Kent Landfield > Director Content Strategy, Architecture and Standards McAfee | An Intel > Company > 5000 Headquarters Dr. > Plano, Texas 75024 > Direct: +1.972.963.7096 > Mobile: +1.817.637.8026 > Web: www.mcafee.com<http://www.mcafee.com/> > From: Adam Montville > <amontville@tripwire.com<mailto:amontville@tripwire.com><mailto:amontvi > lle@tripwire.com><mailto:amontville@tripwire.com%3e>> > Date: Tue, 14 Feb 2012 15:12:51 -0600 > To: > "scap_interest@ietf.org<mailto:scap_interest@ietf.org><mailto:scap_inte > rest@ietf.org><mailto:scap_interest@ietf.org%3e>" > <scap_interest@ietf.org<mailto:scap_interest@ietf.org><mailto:scap_inte > rest@ietf.org><mailto:scap_interest@ietf.org%3e>> > Subject: [scap_interest] Operational Aspects While we're all bantering > about on security automation, there's another side to the story. Are > there any operational concerns we might address within a WG should one > be formed? For example, we have, in the United States, NVD hosting a > repository of information. CCE identifiers are moderated and assigned > by an operational process. As new enumerations are published and new > types of content are conceived, it's easy to imagine the need for some > operational standardization. > Should we consider standardizing some of these processes, and if so > would the WG we seek to establish be the appropriate place for that > work? > Regards, > Adam W. Montville | Security and Compliance Architect > Direct: 503 276-7661 > Mobile: 360 471-7815 > TRIPWIRE | Take CONTROL > http://www.tripwire.com > _______________________________________________ > scap_interest mailing list > scap_interest@ietf.org<mailto:scap_interest@ietf.org><mailto:scap_inter > est@ietf.org> > https://www.ietf.org/mailman/listinfo/scap_interest > _______________________________________________ > scap_interest mailing list > scap_interest@ietf.org<mailto:scap_interest@ietf.org> > https://www.ietf.org/mailman/listinfo/scap_interest > > > ________________________________ > No virus found in this message. > Checked by AVG - www.avg.com<http://www.avg.com> > Version: 2012.0.1913 / Virus Database: 2112/4813 - Release Date: > 02/16/12
- [scap_interest] Operational Aspects Adam Montville
- Re: [scap_interest] Operational Aspects Kent_Landfield
- Re: [scap_interest] Operational Aspects Adam Montville
- Re: [scap_interest] Operational Aspects Luis Nunez
- Re: [scap_interest] Operational Aspects Adam Montville
- Re: [scap_interest] Operational Aspects Gunnar Engelbach
- Re: [scap_interest] Operational Aspects Kent_Landfield
- Re: [scap_interest] Operational Aspects Waltermire, David A.
- Re: [scap_interest] Operational Aspects Adam Montville
- Re: [scap_interest] Operational Aspects Waltermire, David A.
- Re: [scap_interest] Operational Aspects Chandrashekhar B
- Re: [scap_interest] Operational Aspects Jerome Athias