User Tools

Site Tools


parsec_patches

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Next revisionBoth sides next revision
parsec_patches [2018/11/28 15:21] – created sgriggsparsec_patches [2018/11/28 15:25] sgriggs
Line 175: Line 175:
 examine the history of security problems using a tool from cvedetails.com examine the history of security problems using a tool from cvedetails.com
 showing the incidence of security problems for this OS.  showing the incidence of security problems for this OS. 
-https://www.cvedetails.com/version/15934/IBM-AIX-5.3.html[CVEs for AIX]+[[https://www.cvedetails.com/version/15934/IBM-AIX-5.3.html|CVEs for AIX]]
  
 It takes some hand waving to explain the results.  You have to remember that It takes some hand waving to explain the results.  You have to remember that
Line 188: Line 188:
 for AIX 5.3 and guess what?  IBM didn't patch it and probably never will.  for AIX 5.3 and guess what?  IBM didn't patch it and probably never will. 
 When we examine the associated When we examine the associated
-https://www-01.ibm.com/support/docview.wss?uid=isg1IV67907[IBM APAR] bug+[[https://www-01.ibm.com/support/docview.wss?uid=isg1IV67907|IBM APAR]] bug
 issue.  PARSEC has a byte-patch available for the issue, but IBM only issue.  PARSEC has a byte-patch available for the issue, but IBM only
 shipped a new binary for AIX versions 6 & 7. shipped a new binary for AIX versions 6 & 7.
Line 292: Line 292:
  
 The real meat of the GLBA text is called The real meat of the GLBA text is called
-https://www.law.cornell.edu/uscode/text/15/6801[The Safeguards Rule] and+[[https://www.law.cornell.edu/uscode/text/15/6801|The Safeguards Rule]] and
 this is where IT folks should concentrate. this is where IT folks should concentrate.
  
Line 298: Line 298:
 me summarize it. me summarize it.
  
-.GLBA IT Requirements+**GLBA IT Requirements**
   - You must secure customer's NPI data keeping it private and confidential.   - You must secure customer's NPI data keeping it private and confidential.
   - You must protect the data against any anticipated threats.   - You must protect the data against any anticipated threats.
Line 325: Line 325:
 manage servers in the healthcare industry?  Well, the part of HIPPA we need manage servers in the healthcare industry?  Well, the part of HIPPA we need
 to pay all the attention to in that case is called to pay all the attention to in that case is called
-https://www.hhs.gov/hipaa/for-professionals/security/index.html[The Security Rule]. +[[https://www.hhs.gov/hipaa/for-professionals/security/index.html|The Security Rule]]. 
 It is very similar to the GLBA requirements. It is very similar to the GLBA requirements.
  
parsec_patches.txt · Last modified: 2019/07/11 04:58 by sgriggs

Donate Powered by PHP Valid HTML5 Valid CSS Driven by DokuWiki