Re: ISA 2004 PPTP VPN--Multiple Client Connections

  • From: "Thomas W Shinder" <tshinder@xxxxxxxxxxx>
  • To: "[ISAserver.org Discussion List]" <isalist@xxxxxxxxxxxxx>
  • Date: Fri, 7 Oct 2005 09:24:19 -0500

Agreed, and that goes for all certs, including M.D.'s. I could curl your
hair with stories about my incomptent classmates who would study an hour
a day and sleep through class. Then they'd cram the day before the test
and board exams and forget everything.  Some of the things they ended up
doing in medical practice later horrified me, because its clear they
never really learned about pharmacology and physiology, and they're
patient suffered for it. 

I'm sure it's the same for all professions with certifying boards. But I
suppose it takes a measure of chaos out of the system. Imagine if we
just had to depend on ABM'ers and folks hypmotized by "hardware" that
falls from heaven as "independent" evaluation?

Tom

Thomas W Shinder, M.D.
Site: www.isaserver.org
Blog: http://spaces.msn.com/members/drisa/
Book: http://tinyurl.com/3xqb7
MVP -- ISA Firewalls

 

> -----Original Message-----
> From: barrett [mailto:barrett.mcguire@xxxxxxxxxxxx] 
> Sent: Friday, October 07, 2005 7:46 AM
> To: [ISAserver.org Discussion List]
> Subject: [isalist] Re: ISA 2004 PPTP VPN--Multiple Client Connections
> 
> http://www.ISAserver.org
> 
> The specific IT product being evaluated is referred to as the 
> Target of
> Evaluation (TOE). The security requirements for that product 
> are described
> in its security target. The DEVELOPERS write the security target. The
> DEVELOPERS  write the scenerios. So, do you think they are 
> going to pass
> evaluation? Can't think of one product that was put forward for
> validation, that was then dnied during the testing phase.
> 
> Read it once?--Do it every day and still get a kick out of it 
> :)--helps me
> get to sleep at night.
> 
> Gov. entities are required by NSTISSP #11 and DoDI 8500.2 to purchase
> Common Criteria validated roducts, but that does not mean 
> they are secure.
> 
> Almost like saying Common Criteria = Good Security as MCSE = Good
> sysAdmin. Do we really believe that.
> 
> Agree w/ Tom -- Certs are only face value.
> 
> ------------------------------------------------------
> List Archives: http://www.webelists.com/cgi/lyris.pl?enter=isalist
> ISA Server Newsletter: http://www.isaserver.org/pages/newsletter.asp
> ISA Server FAQ: http://www.isaserver.org/pages/larticle.asp?type=FAQ
> ------------------------------------------------------
> Visit TechGenix.com for more information about our other sites:
> http://www.techgenix.com
> ------------------------------------------------------
> You are currently subscribed to this ISAserver.org Discussion 
> List as: tshinder@xxxxxxxxxxxxxxxxxx
> To unsubscribe visit 
> http://www.webelists.com/cgi/lyris.pl?enter=isalist
> Report abuse to listadmin@xxxxxxxxxxxxx
> 
> 


Other related posts: