19.12.2012 Views

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

IT Baseline Protection Manual - The Information Warfare Site

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Other <strong>IT</strong> Components Standard software<br />

_________________________________________________________________________________________<br />

9.1 Standard software<br />

Description<br />

Standard software is software offered on the market and<br />

which is generally available from specialist outlets, e.g.<br />

catalogues. It is characterised by the fact that it is intended to<br />

be installed by the user and that it can be easily adapted to<br />

suit the specific needs of the user.<br />

This chapter deals with an approach to handling standard<br />

software with regard to security. <strong>The</strong> entire lifecycle of<br />

standard software is considered: drawing up a requirements catalogue, preselection of a suitable<br />

product, test, release, installation, licence administration and deinstallation.<br />

<strong>The</strong> quality management system of the developer of the standard software is not covered in this<br />

chapter. It is assumed that the software has been developed in accordance with the usual quality<br />

standards.<br />

<strong>The</strong> described procedure serves as orientation for establishing a security process as far as standard<br />

software is concerned. If applicable, the procedures listed here can also be compared with a process<br />

already carried out, or they can be partly reduced for present interests.<br />

Threat Scenario<br />

<strong>The</strong> following typical threats are assumed for "standard software" as part of <strong>IT</strong> baseline protection:<br />

_________________________________________________________________________________________<br />

<strong>IT</strong>-<strong>Baseline</strong> <strong>Protection</strong> <strong>Manual</strong>: Otober 2000

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!