The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

Reports and Papers Archive


Browse All Papers »       Submit A Paper »

DES Modes of Operation

US Department of Commerce
Added 2002-07-26


Guidelines for Security of Computer Applications

US Department of Commerce
Added 2002-07-26

Guidelines on Evaluation of Techniques for Automated Personal Identification

US Department of Commerce

This publication provides a guideline to be used by Federal organizations in the selection and evaluation of techniques for automatically verifying the identity of individuals seeking access to computer systems and networks via terminals, where controlled acceddibility is required for security purposes.  The guideline describes various techniques for verifying identity and provides a set criteria for the evaluation of automated identification systems embodying techniques.

Added 2002-07-26

Data Encryption Standard (DES)

US Department of Commerce
Added 2002-07-26

Computer Security Guidelines for Implementing the Privacy Act of 1974

US Department of Commerce

This publication provides guidelines for use by Federal ADP organizations in implementing the computer security safeguards necessary for compliance with Public Law 93-579, the Privacy Act of 1974.  A wide variety of technical and related procedural safeguards are described.  These fall into three broad categories: Physical security, information management practices, and computer system/network security controls.  As each organization processing personal data has unique characteristics, specific organizations should draw upon the material provided in order to select a well-balanced combination of safeguards which meets their particular requirements.

Added 2002-07-26

Issue Review

NSTAC
Added 2002-07-26






Guidelines for Automatic Data Processing Physical Security and Risk Management

US Department of Commerce

This publication provides guidelines to be used by Federal organizations in structuring physical security programs for their ADP facilities.  It treats security analysis, natural disasters, supporting utilities, system reliability, procedural measures and controls, off-site Facilities, contigency plans, security awareness and security audit.  It contains statistics and information relevant to physical security of computer data and facilites and references many applicable publications for a more exhaustive treatment of specific subjects.

Added 2002-07-26

Computer Security Publications NIST Publication List 91

National Institute of Standards and Technology
Added 2002-07-26

Interoperability and Security Requirements for use of the Data Encryption Standard with CCITT Group 3 Facsimile Equipment

National Communications System Office of Technology and Standards
Added 2002-07-26