openPR Logo
Press release

atsec Evaluates HP Red Hat Enterprise Linux 5 at Common Criteria EAL4+ Under NIAP Scheme

07-16-2007 09:28 PM CET | IT, New Media & Software

Press release from: atsec information security

atsec Evaluates HP Red Hat Enterprise Linux 5 at Common Criteria

atsec information security today announced that Red Hat Enterprise Linux 5 has been certified by the U.S. National Information Assurance Partnership (NIAP) Common Criteria Evaluation and Validation Scheme (CCEVS) as conformant to EAL4+ and the Controlled Access Protection Profile (CAPP), Labeled Security Protection Profile (LSPP) and Role Based Access Control (RBAC). The operating system is certified on HP Integrity and HP ProLiant servers.

According to Burton Group Principal Analyst Bob Blakley, “Ineffective security functions are in many cases worse than no security functions at all, because they invite users to do dangerous things based on a false sense of security. But it's not easy to tell the difference between a false sense of security and justifiable confidence in a system's security. Assurance methodologies are what give businesses and end-users justifiable confidence in a system's security. The International Common Criteria is the gold standard for assurance. It's very encouraging to see the progress commercial and open source vendors have made in completing Common Criteria evaluations of their systems over the last five years. atsec and HP are to be congratulated on the successful evaluation of RHEL 5 at EAL4+ (the highest "commercial" assurance level). It is notable that RHEL5 is the first SELinux-enabled distribution that successfully conducted an evaluation against the LSPP and RBAC Protection Profiles; previously the only operating systems with evaluated mandatory access control features were proprietary."

The completion of this evaluation adds to atsec’s unparalleled reputation for timely completion of Linux evaluations. Since August 2003, atsec has initiated and completed 14 Linux evaluations at EAL3+ and EAL4+ of five different distributions on a broad range of hardware platforms. HP sponsored this latest evaluation effort.

atsec’s customers value timely completion of projects in conjunction with their development schedules in order to reach their markets effectively and take the maximum benefit from their evaluation investment.

Stephan Mueller, Lead evaluator for atsec U.S., notes: “Continuing its pioneering efforts, atsec conducted the first ever evaluation of a Linux product with the SELinux security enhancement against the Labeled Security Protection Profile (LSPP). Linux industry experts have noted that this is particularly important because it might represent a historic opportunity to integrate security features that are currently specific to the security Linux branch back into the mainstream commercial Linux branch.”

"We see more and more customers taking advantage of the support, flexibility and cost effectiveness of HP ProLiant and HP Integrity servers running Linux in secure environments," said Christine Martino, vice president, Open Source & Linux Organization, HP. "HP’s open source and Linux R&D engineers worked closely with atsec, Red Hat and the Linux community to add the functionality required for highly secure environment as well as for security certification testing. HP is excited to complete this breadth of certifications to promote customer confidence implementing Linux with HP for highly secure environments, including Multi-Level Security deployments."

atsec has extensive experience with Common Criteria, and applying the methodology to Open Source Software has meant convincing customers that, although rigorous, Common Criteria can be flexible and adapts to a variety of software paradigms. For instance, it was possible to evaluate existing product and design documentation without the need to refactor this specifically for the evaluation.

atsec is one of only four companies worldwide with multiple evaluation labs accredited to perform evaluations under more than one national scheme. atsec labs have been accredited by NIAP CCEVS in the U.S., BSI in Germany and CSEC in Sweden to perform evaluations using the Common Criteria standard. Eligibility to perform evaluations under both major schemes and the availability of a large (50+) staff of qualified evaluators, enable atsec to offer its customers both maximum flexibility, and proven expertise and experience in Common Criteria evaluations. For more information about atsec’s qualifications and competence, see www.atsec.com. For independent confirmation of atsec’s competence and reputation, visit the NIAP, BSI or CSEC websites.

More information on this evaluation can be found at HP's website:
http://www.hp.com/hpinfo/newsroom/press/2007/070716a.html

About atsec information security
atsec information security is an independent, standards-based IT (information technology) security consulting and evaluation services company that combines a business-oriented approach to information security with in-depth technical knowledge and global experience. atsec was founded in Munich (Germany) in January 2000 and has extensive international operations with offices in the US, Germany, Sweden, the UK, and China. atsec leverages its deep security, process, and standards expertise to consult on a wide range of IT security needs, enabling clients to establish integrated security management procedures in order to manage security risk and improve data, product, and business process reliability. atsec works with leading global companies such as IBM, HP, Oracle, Cray, BMW, SGI, Vodafone, Swisscom, RWE, and Wincor-Nixdorf. For more information please visit www.atsec.com.

Media Contact:
Andreas Fabis, fabis@atsec.com
Marketing Director
atsec information security
(512) 615-7317

atsec information security corporation
9130 Jollyville Road, Suite 260
Austin, TX 78759
USA
Phone: 1-512-615-7300
Telefax: 1-512-615-7301
eMail: info@atsec.com

This release was published on openPR.

Permanent link to this press release:

Copy
Please set a link in the press area of your homepage to this press release on openPR. openPR disclaims liability for any content contained in this release.

You can edit or delete your press release atsec Evaluates HP Red Hat Enterprise Linux 5 at Common Criteria EAL4+ Under NIAP Scheme here

News-ID: 24156 • Views:

More Releases from atsec information security

atsec information security is now operating a Certification Body accredited according to ISO/IEC 17065
atsec information security is now operating a Certification Body accredited acco …
AUSTIN, TX - atsec is pleased to announce that atsec information security AB has been accredited as a certification body by SWEDAC, the national accreditation body in Sweden, to provide Common Criteria (CC) certifications of IT products. With over 20 years of experience as a CC evaluation lab, atsec has taken the step to become a CC certification body. We have an experienced and knowledgeable team, that has helped many national schemes
Call for Papers for the Second International Cryptographic Module Conference
Mark Your Calendar: ICMC 2014, November 19-21, Hilton Washington D.C., Rockville, MD ICMC brings together experts from around the world to confer on the topic of cryptographic modules, with emphasis on their secure design, implementation, assurance, and use, referencing both new and established standards such as FIPS 140-2 and ISO/IEC 19790. We are focused on attracting participants from the engineering and research community, test laboratories, government organizations, the procurers, deployers and administrators
atsec information security Opens South East Asia Office
atsec information security Opens South East Asia Office
Bangkok, Thailand – atsec information security is pleased to announce the opening of its atsec South East Asia (atsec SEA) office in Bangkok, Thailand. Since the year 2000, the atsec group of companies have been established experts in information security including Common Criteria, FIPS 140-2, PCI, ISO 27001, and hardware testing. As part of the atsec group of companies, atsec SEA’s objective is to promote information security and information assurance in
atsec completes FIPS 140-2 testing of Watchdata's WatchKey USB Token at Security Level 2
atsec completes FIPS 140-2 testing of Watchdata's WatchKey USB Token at Security …
Austin, TX - atsec information security is pleased to announce that its customer, Watchdata Technologies Pte Ltd. (branded as “Watchdata”), received a FIPS 140-2 validation certificate #1640 for the WatchKey USB Token under the CMVP (Cryptographic Module Validation Program) by the National Institute of Standards and Technology (NIST), USA and the Communication Security Establishment of Canada (CSEC). The successful validation result is published on the CMVP’s official website at: http://csrc.nist.gov/groups/STM/cmvp/validation.html The issued

All 5 Releases


More Releases for Linux

Linux Operating System Market Latest Professional Study Report by Top Key Player …
Linux OS is an open source software which makes the code used to create Linux free and available to the public for viewing, editing, and distributing. The Linux OS is distributed by key players in the Linux operating system market for different devices such as desktops, workstations, and servers. The vendors also provide support for the Linux-based OS that they distribute. The Linux Operating System Market research report presents a comprehensive
Linux Operating System Market 2019: Industry Size, Trends, Share and Top Compani …
The Global Linux Operating System Industry Report 2019 is a professional and in-depth study on the current state of the Linux Operating System Market. Key #Companies Analysis- IBM, Ubuntu Linux, Linux Mint, Elementary OS, openSUSE, Fedora Linux, Arch Linux, Debian, Manjaro Download Sample Pages @ https://www.reportsnreports.com/contacts/requestsample.aspx?name=1866499 The report provides a basic overview of the industry including definitions, classifications, applications and industry chain structure. The Linux Operating System market analysis is provided for
Linux Operating System Market Emerging Growth Analysis, Future Demand and Busine …
Linux is the best-known and most-used open source operating system. As an operating system, Linux is software that sits underneath all of the other software on a computer, receiving requests from those programs and relaying these requests to the computer's hardware. Linux is a Unix-like, open source and community-developed operating system for computers, servers, mainframes, mobile devices and embedded devices. It is supported on almost every major computer platform including
Linux Operating System Global Market SWOT Analysis and Opportunities To 2023 | K …
WiseGuyReports.Com Publish a New Market Research Report On –“ Linux Operating System Global Market SWOT Analysis and Opportunities To 2023 | Key Players : IBM, Ubuntu Linux, Linux Mint, Elementary OS, openSUSE, Fedora Linux”. Linux Operating System Industry 2019 Description:- Linux is the best-known and most-used open source operating system. As an operating system, Linux is software that sits underneath all of the other software on a computer, receiving requests from those
Linux Operating System Market 2018 : Global Comprehensive Study on Ubuntu Linux, …
Linux Operating System Solutions Industry 2018 Market Research report gives estimation of the factors that are boosting the development of the Linux Operating System Solutions market and it also gives the analytical data of Market Size, Share, Growth, Application, Opportunity analysis, and forecast on the basis of key principles segments such as end-users, application, product, technology, and region are surveyed comprehensively. Linux is the best-known and most-used open source operating system.
Global Linux Operating System Market Insights, Status by Top Key Player- IBM, Ub …
A newly compiled business intelligent report, titled “Global Linux Operating System Market Insights, Status by Top Key Player,  Growth, Region, Type and Future Forecast to 2025” has been publicized to the vast archive of Market Research Hub (MRH) online repository. The study revolves around the analysis of Linux Operating System , covering key industry developments and market opportunity map during the mentioned forecast period. This report further conveys quantitative &