Educause Security Discussion mailing list archives

Re: NIST Draft - Special Publication 800-147 BIOS


From: "SCHALIP, MICHAEL" <mschalip () CNM EDU>
Date: Mon, 14 Feb 2011 16:53:03 -0700

Interesting......I wonder if this is going to apply to the new class of chipsets that are coming out without a 
traditional BIOS....??

-----Original Message-----
From: The EDUCAUSE Security Constituent Group Listserv [mailto:SECURITY () LISTSERV EDUCAUSE EDU] On Behalf Of Cheek, 
Leigh
Sent: Monday, February 14, 2011 2:40 PM
To: SECURITY () LISTSERV EDUCAUSE EDU
Subject: [SECURITY] NIST Draft - Special Publication 800-147 BIOS

I was reading the NIST draft on BIOS mentioned below and wondered if anyone is monitoring the BIOS image and 
configuration baseline of their computers. What tool are you using to monitor the image or configuration? 

Thanks,
Leigh Cheek, CIA, CISA
Senior Auditor
Audit and Consulting Services
University of Tennessee
149 Conference Center Building
Knoxville, TN 37996-4114
(865) 974-4420
fax (865) 974-6171
lcheek () utk edu

------------------------

From: NIST Security Publications [mailto:csrc.nist () service govdelivery com]
Sent: Monday, February 14, 2011 11:04 AM
Subject: NIST Computer Security Division Released Draft Special Publication 800-147

Late Friday afternoon, NIST Computer Security Division Released Draft Special Publication 800-147, Basic Input/Output 
System (BIOS) Protection Guidelines. 

Here is the URL to the Drafts page on the Computer Security Resource Center (CSRC) website to view the full 
announcement and other details regading this draft document (the same announcement also appears on the CSRC 
News/Announcement page as well): 
http://csrc.nist.gov/publications/PubsDrafts.html#800-147 

--
This message has been scanned for viruses and dangerous content by MailScanner, and is believed to be clean.


-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.


Current thread: