Slashdot Mirror


Red Hat Pushes For CC Certification By Year's End

Ridgelift writes "This article indicates Red Hat Linux is about to receive certification under the Common Criteria (CC) Scheme worldwide. This has been a long road for Red Hat, and 'once successfully certified in the UK, Red Hat products will be recognised as certified and approved by information security agencies from all 19 countries participating in the Common Criteria program.' This means Red Hat will sit alongside Sun Solaris, HP-UX and IBM's AIX."

16 of 183 comments (clear)

  1. Re:Windows 2000 is certified as well by EmbeddedJanitor · · Score: 5, Funny

    Damn, just when I thought the certification had some value!

    --
    Engineering is the art of compromise.
  2. Yeah right... by DeepEyes78 · · Score: 5, Funny

    Red Hat couldn't have pulled this off without technology stolen from SCO. It's a known fact that SCO owns IP on everything that makes linux useful.

    drip...drip...

    Excuse me, I've got sarcasm dripping from my chin...

    1. Re:Yeah right... by Lord+Kano · · Score: 3, Funny

      Excuse me, I've got sarcasm dripping from my chin...

      Maybe you should ask Darl to warn you further in advance next time.

      --
      "Hi. This is my friend, Jack Shit, and you don't know him." - Lord Kano
  3. Re:Windows 2000 is certified as well by Storm · · Score: 5, Funny

    Its pretty well common knowledge in the security community that Microsoft paid for that certification.

    While I can't remember if it was specifically Windows 2000 with the Common Criteria or Windows NT with the Orange Book Cert, I do remember that the system configuration which won them the cert was with no network connection, no floppy drives, and no CDROM drives on the box that was tested. In essence, no non-keyboard input methods. (They couldn't guarantee the OS would stay clean long enough to get the cert.)

    Basically, the certification was useless as soon as you configured the box to do any useful processing on the machine. Then again, many would say that is the same of Windows itself.

    --
    --Storm
  4. Re:A pity by Anonymous Coward · · Score: 1, Funny

    That and your distros servers can't be broken into for at least six months...

  5. KungFUnix certification by segment · · Score: 4, Funny

    KungFUnix proudly introduces CUP, Certified Unix Pimp certification. Now you too can study and memorize 50 common criteria books we select and get kickbacks from in order to achieve your goal of adding the word CUP to your signature.

    NO EXPERIENCE NEEDED!
    That's right act now and send us 2,000.00 (US), and we'll gladly present you with information on obtaining this new and exciting certification. So what can you do with a CUP certification:

    • Impress your clueless CTO
    • Impress friends
    • Add the word CUP to CCNA, MCSE, or CISSP
    • Use the cert for a dustrag
    • Smoke a doob with the cert
    shrugs Certs who needs em.
  6. Re:Windows 2000 is certified as well by c1ay · · Score: 4, Funny

    How does a system where new security holes are discovered daily get this certification? Can it be revoked? Me thinks Windows Security is the world's second most rated oxymoron behind Microsoft Works!!!

    --

  7. Solaris, HP-UX and AIX... by RLiegh · · Score: 2, Funny

    Now that's distinquished company.

    the main distinguishing charactaristic being that almost no-one uses them any more...

  8. Re: Actually wasn't Yggdrasil the first distro? by Ricin · · Score: 2, Funny

    No that was only released on punchcards and not updated after. It doesn't count anymore.

  9. Re:Windows 2000 is certified as well by b17bmbr · · Score: 2, Funny

    then how bad does something have t be to not make it?

    i hear WindowsME just missed CC by a whisker.

    --
    My problem? I was perfectly gruntled, until some numbnuts came by and dissed me.
  10. Re:Windows 2000 is certified as well by fireman+sam · · Score: 4, Funny

    The only secure Windows box is the one that I planted my flowers in. No, wait, that fell off and fell two stories onto the footpath (sidewalk for the en_US folks)

    --
    it is only after a long journey that you know the strength of the horse.
  11. Re:Windows 2000 is certified as well by EmbeddedJanitor · · Score: 5, Funny
    It didn't need to. From what some people say it would seem that it only needs to achieve the vendor specified level. Scenario:

    Microsoft: This is WinME, we claim it is shit.

    CC Official:sniff, sniff. Yep, sure is. Stamp!

    --
    Engineering is the art of compromise.
  12. Re:Windows 2000 is certified as well by Guppy06 · · Score: 5, Funny

    "Common Criteria is about validating that the OS/Firewall/etc. etc. does what the VENDOR says it will do."

    Microsoft: "This operating system has numerous vulnerability exploits and poor compatability with old drivers and applications."

    CC board: "Well, whaddaya know, so it does!"

  13. Re:A pity by Anonymous Coward · · Score: 1, Funny
    Ya I want to trust national security to Joe Bob Weekend Hacker, Uh oh, Joe Bob had a calculus exam this weekend I guess we'll have to wait to patch the nuclear reactor after the semester is over!

    LOL! True, very true. At least with Microsoft we can be assured of timely secure patches being released when a vulnerability crops up. Without corporations there would be chaos!

  14. Why are you coughing? by Anonymous Coward · · Score: 1, Funny

    Are you some kind of retard?

  15. KDE... by grokster · · Score: 3, Funny

    The KDE.org folks can leverage this to get Kommon Kriteria certification...