-----Original Message-----
From: compsecpubs@... [mailto:compsecpubs@...] On Behalf Of Patrick O'Reilly
Sent: Friday, July 25, 2008 5:27 PM
To: Multiple recipients of list
Subject: NIST Release 3 Special Publications
NIST announces the release of three publications: draft Special
Publication (SP) 800-68 Revision 1, Guide to Securing Microsoft
Windows XP Systems for IT Professionals, and its associated beta NIST
Windows Security Baseline Database; SP 800-48 Revision 1, Guide to
Securing Legacy IEEE 802.11 Wireless Networks; and SP 800-123, Guide
to General Server Security.
1. Draft SP 800-68 Revision 1, Guide to Securing Microsoft Windows XP
Systems for IT Professionals, is being released for public comment.
It seeks to assist IT professionals in securing Windows XP
Professional systems running Service Pack 2 or 3. The guide provides
detailed information about the security features of Windows XP and
security configuration guidelines. SP 800-68 Revision 1 updates the
original version of SP 800-68, which was released in 2005. NIST
requests comments on draft SP 800-68 Revision 1 by August 29, 2008.
Please submit comments to 800-68comments@... with "Comments SP
800-68" in the subject line.
The beta NIST Windows Security Baseline Database is being released
for public comment. The database contains information on security
setting baselines for Microsoft Windows XP, Windows Vista, Internet
Explorer 7 (IE7), and Windows Firewall that are specified in NIST
security templates and in the Federal Desktop Core Configuration
(FDCC) Major Version 1.0. The database allows interested parties to
view security settings by baseline or by policy (e.g., FDCC), as well
as to compare baselines to each other. The information in the
database is intended to supplement Draft SP 800-68 Revision 1, Guide
to Securing Microsoft Windows XP Systems for IT Professionals. NIST
requests comments on the beta Windows Security Baseline Database by
August 29, 2008. Please submit comments to 800-68comments@...
with "Comments Security Database" in the subject line.
URL to Draft SP 800-68 and Beta NIST Windows Security Baseline Database:
http://csrc.nist.gov/itsec/download_WinXP.html
2. SP 800-48 Revision 1, Guide to Securing Legacy IEEE 802.11
Wireless Networks, provides recommendations to organizations on
securing their legacy
Engineers (IEEE) 802.11 wireless local area networks that cannot use
IEEE 802.11i. SP 800-48 Revision 1 updates the original version of SP
800-48, which was released in November 2002. SP 800-48 Revision 1
complements, and does not replace, SP 800-97, Establishing Wireless
Robust Security Networks: A Guide to IEEE 802.11i. People seeking
information on IEEE 802.11i should consult SP 800-97.
URL to SP 800-48 Rev. 1:
http://csrc.nist.gov/publications/PubsSPs.html#800-48_Rev1
3. SP 800-123, Guide to General Server Security, is intended to
assist organizations in installing, configuring, and maintaining
secure servers. SP 800-123 makes recommendations for securing a
server's operating system and server software, as well as maintaining
the server's secure configuration through application of appropriate
patches and upgrades, security testing, log monitoring, and backups
of data and operating system files. The document addresses common
servers that use general operating systems and are deployed in both
outward-facing and inward-facing locations.
URL to SP 800-123:
http://csrc.nist.gov/publications/PubsSPs.html#800-123