- It's the applications, stupid
- Will a whitelist save personal computing?
- Thousands of Web sites under attack
- To solve the unsolvable problem
- Re-thinking the security of virtual machines
- Security Development Lifecycle trumps code complexity
- Is your Web site FIPS compliant?
- Computer security: Why have least privilege?
- Strategic security: Get a handle on authentication
- Control user installs of software
May 30, 2006 | Comments: (0)
Comments to my column on Bruce Schneier
Comments about Bruce Schneier column.
Here are reader comments to my May 26, 2006 article (http://www.infoworld.com/article/06/05/26/78639_22OPsecadvise_1.html) on Bruce Schneier:
-------------------
From: Blaine Burnham
Sent: Tuesday, May 30, 2006 2:19 PM
Enjoyed your comments re Bruce. It turns out the Bruce is in very good company. He has many predecessors in the IA business, the people who invented the business in fact, who also have a history of extraordinarily insightful, and equally ignored writing. You might enjoy the following:
http://www.rand.org/publications/R/R609.1/R609.1.html
http://csrc.nist.gov/publications/history/ande72.pdf
http://web.mit.edu/Saltzer/www/publications/protection/
http://www.cs.virginia.edu/~evans/cs551/saltzer/
http://www.acm.org/classics/sep95/
http://www.airpower.maxwell.af.mil/airchronicles/aureview/1979/jan-feb/schell.html
http://www.acsac.org/2002/papers/classic-multics.pdf
http://www.acsac.org/secshelf/book001/01.pdf
http://www.acsac.org/secshelf/book001/02.pdf
http://www.acsac.org/invited-essay/essays/2001-schell.pdf
I use these and a whole bunch more in my Foundations of IA class.
Best regards,
Blaine
----------
I really enjoyed your article. I've never had the opportunity to meet Bruce Schneier, but I've read all of his books and have subscribed to Crypto-Gram since its inception. I've always been impressed with his ability to cut directly to the chase and articulate concepts in ways that make one want to slap one's forehead and think: "Of course! Why didn't I think of that?" I would think that I would find it a very intimidating experience for me to try to interview him. And I'm not the dullest tool in the shed. Thanks for sharing your perceptions with the world. I wish everyone would read at least his later works . . .(probably not everyone wants to get into the fine points of cryptography). :)
Great article!
Cheers,
George Capehart
Posted by Roger Grimes on May 30, 2006 12:54 PM
RATE THIS ARTICLE:
-

- COMMENTS







