<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: DoE Project Part 1 &#8211; Auditing with Nessus</title>
	<atom:link href="http://www.digitalbond.com/index.php/2007/10/30/doe-project-part-1-auditing-with-nessus/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.digitalbond.com/index.php/2007/10/30/doe-project-part-1-auditing-with-nessus/</link>
	<description>This Month in Control System Security</description>
	<lastBuildDate>Fri, 10 Sep 2010 08:43:22 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: Ron Southworth</title>
		<link>http://www.digitalbond.com/index.php/2007/10/30/doe-project-part-1-auditing-with-nessus/comment-page-1/#comment-8868</link>
		<dc:creator>Ron Southworth</dc:creator>
		<pubDate>Wed, 31 Oct 2007 14:13:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.digitalbond.com/index.php/2007/10/30/doe-project-part-1-auditing-with-nessus/#comment-8868</guid>
		<description>Hi Dale, 

Sounds like an interesting project and every success with the outcomes.

Are you considering an initial non-intrusive enumeration as part of the compliance approach, using SMART or something similar to validate the documented system architecture / information flow diagrams. 

I do like the output from Nesus3 in the feature of checking the &quot;hardening&quot; of the devices of interest. Like you I do have some reservations that even this type of activity can effect legacy systems to varying degrees. I recall Tenable does have some passive software tools hopefully you guys will develop something levering this knowledge.

A project name 

- for the sake of some humor - 

Marangue - when on top makes PI taste better!</description>
		<content:encoded><![CDATA[<p>Hi Dale, </p>
<p>Sounds like an interesting project and every success with the outcomes.</p>
<p>Are you considering an initial non-intrusive enumeration as part of the compliance approach, using SMART or something similar to validate the documented system architecture / information flow diagrams. </p>
<p>I do like the output from Nesus3 in the feature of checking the &#8220;hardening&#8221; of the devices of interest. Like you I do have some reservations that even this type of activity can effect legacy systems to varying degrees. I recall Tenable does have some passive software tools hopefully you guys will develop something levering this knowledge.</p>
<p>A project name </p>
<p>- for the sake of some humor &#8211; </p>
<p>Marangue &#8211; when on top makes PI taste better!</p>
]]></content:encoded>
	</item>
</channel>
</rss>
