19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Safeguard Catalogue - Communications Remarks<br />

____________________________________________________________________ .........................................<br />

transmitted via a different route and compared, to ensure that the certificate is<br />

correct.<br />

Operators of WWW servers who intend exchanging security-related data with<br />

visitors to their WWW pages should offer a route protected by cryptographic<br />

techniques for this purpose, i.e. SSL, for example.<br />

Note: If the users are protected against active content and computer viruses by<br />

a firewall, they must implement their own protective measures against these<br />

risks if they are using SSL, as described for example in S 4.33 Use of a virus<br />

scanning program on exchange of data media and during data transfer and S<br />

5.69 <strong>Protection</strong> against active content.<br />

Additional controls:<br />

- Is the use of SSL compatible with the existing security guidelines for the<br />

firewall or on the use of WWW services?<br />

- Do the users know what needs to be taken into account when using SSL?<br />

____________________________________________________________________ .........................................<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Oktober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!