More on Common Criteria tools and auditing
Written on 2/21/2005
In a prior post, I mentioned that Apple made available a Common Criteria toolkit for OS X. I’ve had some time to dive into it, and it’s already generating interest from customers. Besides government customers, any customer interested in enhanced security will be interested in the auditing tools included in the kit. So, healthcare, financial services, banks, really anyone that needs to report back to auditors or regulators.
The actual documentation for the toolkit isn’t included with the tool download, you can get the manual here. The auditing documentation is detailed, but doesn’t give you a lot of information on practical configuration. The best practical tips that I have found are in this SecurityFocus article. The audit tools in the Common Criteria toolkit are a port of Sun’s BSM tools, so the article, and most other BSM documentation, applies to the CC toolkit as well.
Filed in: Apple, Mac OS X, Mac OS X Server, Xserve.
I installed Common Criteria by mistake. How do I uninstall it? I don’t even know what it is, and I can’t find it on my hard drive.