CERT

CERT/CC Blog


November 2008 Archives

Recommendations to vendors for communicating product security information

Hi, this is Chad Dougherty of the Vulnerability Analysis team. One of the important roles that our team plays is coordinating vulnerability information among a broad range of vendors. Over the years, we have gained a considerable amount of experience communicating with vendors of all shapes and sizes. Based on this experience, we can offer some guidance to vendors about communicating product security issues.


Continue reading Recommendations to vendors for communicating product security information

Filtering ICMPv6 using host-based firewalls

Hey, it's Ryan. This blog entry contains some quick recommendations about filtering certain ICMPv6 types using two host-based firewalls—Linux ip6tables and Microsoft Vista's advfirewall. If you have suggestions or other ideas, let me know.


Continue reading Filtering ICMPv6 using host-based firewalls