[117951] in North American Network Operators' Group
Re: Up Next: Quarantine Phishing (Was: Dutch ISPs to collaborate
daemon@ATHENA.MIT.EDU (Sean Donelan)
Wed Oct 7 10:21:53 2009
Date: Wed, 7 Oct 2009 10:20:47 -0400 (EDT)
From: Sean Donelan <sean@donelan.com>
To: NANOG <nanog@nanog.org>
In-Reply-To: <4ACB87D0.5060703@spaghetti.zurich.ibm.com>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org
On Tue, 6 Oct 2009, Jeroen Massar wrote:
> The problem with all of that boils down to what people have to
> believe... and how to properly inform them of that...
How many people remember this oldie, but goodie?
3.3.2.1.1 Trusted Path
The TCB shall support a trusted communication path
between itself and users for use when a positive TCB-touser
connection is required (e.g., login, change subject
security level). Communications via this trusted path
shall be activated exclusively by a user of the TCB and
shall be logically isolated and unmistakably
distinguishable from other paths.
Its simple to say, hard to do.