ad-assurance - Re: [AD-Assurance] RE: Action Items from May 10
Subject: Meeting the InCommon Assurance profile criteria using Active Directory
List archive
- From: David Walker <>
- To:
- Subject: Re: [AD-Assurance] RE: Action Items from May 10
- Date: Fri, 17 May 2013 08:31:48 -0700
- Authentication-results: sfpop-ironport07.merit.edu; dkim=pass (signature verified)
Eric, This is good stuff. As a general comment, I think it's fine for us to disagree with the earlier cookbook group. I say we go ahead with the changes we feel are appropriate and ask them to review our version when we get to a point where it's reviewable. Some further comments below... David On Fri, 2013-05-17 at 02:02 +0000, Eric Goodman wrote:
So this one turned out to be quite a bit more challenging than I expected. (It didn’t help that I didn’t really get started on it until today). I agree that password entropy and encryption at rest are not interchangeable. I think we can state that as a disagreement with the earlier group and make our Bitlocker statement. Because the risk assessments are so out of phase with one another in the area of stored passwords, I didn’t see how to put in our commentary without completely rewriting (and revising) the original AD cookbook suggestions, which I think bears more discussion – or at least we should alert the original group that we disagree – before actually making any edits of that magnitude. I think we agreed to keep a copy of the 2012 Cookbook. We should feel free to make any changes we see as needed. As I said, we can ask for the earlier group's input. On the other areas, we mostly agreed; I added a couple of comments, but there’s still lots of room for editing what I added. E.g., I say “add some of Jeff’s references here” rather than actually having selected his best references. I’m willing to do that addition as well, I just didn’t get to it at this point. |
- [AD-Assurance] Action Items from May 10, Ann West, 05/10/2013
- [AD-Assurance] RE: Action Items from May 10, Eric Goodman, 05/16/2013
- Re: [AD-Assurance] RE: Action Items from May 10, David Walker, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Brian Arkills, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Capehart,Jeffrey D, 05/17/2013
- Re: [AD-Assurance] RE: Action Items from May 10, Jeff Whitworth, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Ron Thielen, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Brian Arkills, 05/17/2013
- Re: [AD-Assurance] RE: Action Items from May 10, Jeff Whitworth, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Ron Thielen, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Ron Thielen, 05/31/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Ron Thielen, 05/31/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Brian Arkills, 05/17/2013
- RE: [AD-Assurance] RE: Action Items from May 10, Ron Thielen, 05/17/2013
- Re: [AD-Assurance] RE: Action Items from May 10, Jeff Whitworth, 05/17/2013
- Re: [AD-Assurance] RE: Action Items from May 10, David Walker, 05/17/2013
- [AD-Assurance] RE: Action Items from May 10, Eric Goodman, 05/16/2013
Archive powered by MHonArc 2.6.16.