The usgcb baseline evolved from the federal desktop core configuration mandate.
Nist desktop security standards.
Innovation and industrial competitiveness by advancing measurement science standards and technology in ways that enhance economic security and improve our quality of life.
This publication has been developed by nist in accordance with its statutory responsibilities under the federal information security modernization act fisma of 2014 44 u s c.
The usgcb baseline evolved from the federal desktop core configuration mandate.
3541 et seq public law p l 113 283.
For 20 years the computer security resource center csrc has provided access to nist s cybersecurity and information security related projects publications news and events csrc supports stakeholders in government industry and academia both in the u s.
In this major update to csrc.
The usgcb is a federal government wide initiative that provides guidance to agencies.
Nist is responsible for developing information security standards and guidelines including minimum requirements for federal information systems but such standards and guidelines shall not apply to national security systems without the express approval of appropriate federal officials exercising policy authority over such systems.
Full virtualization technologies run one or more operating systems and their applications on top of virtual hardware.
Full virtualization is used for operational efficiency such as in.
Nist maintains the national checklist repository which is a publicly available resource that contains information on a variety of security configuration checklists for specific it products or categories of it products.
The purpose of the united states government configuration baseline usgcb formerly the federal desktop core configuration fdcc initiative is to create security configuration baselines for information technology products widely deployed across the federal agencies.
The purpose of sp 800 125 is to discuss the security concerns associated with full virtualization technologies for server and desktop virtualization and to provide recommendations for addressing these concerns.
Nist is responsible for developing information security standards and guidelines incl uding.
Security testing validation and measurement nist verifies cryptographic modules based on cryptographic standards through the cryptographic module validation program.