Site Security Handbook
RFC 2196, “Site Security Handbook”, is an Informational document published in September 1997 by B. Fraser. It obsoletes RFC 1244. The canonical text is published by the RFC Editor.
Abstract
This handbook is a guide to developing computer security policies and procedures for sites that have systems on the Internet. The purpose of this handbook is to provide practical guidance to administrators trying to secure their information and services. The subjects covered include policy content and formation, a broad range of technical system and network security topics, and security incident response. This memo provides information for the Internet community. It does not specify an Internet standard of any kind.
What “Informational” means
Published for the general information of the community. It does not define an IETF standard and carries no standards-track status.
The canonical text of RFC 2196 is hosted at rfc-editor.org. Available in TXT,HTML.
- RFC 2195 IMAP/POP AUTHorize Extension for Simple Challenge/Response
- RFC 2197 SMTP Service Extension for Command Pipelining
- RFC 2194 Review of Roaming Implementations
- RFC 2198 RTP Payload for Redundant Audio Data
- RFC 2193 IMAP4 Mailbox Referrals
- RFC 2192 IMAP URL Scheme
- RFC 2200 Internet Official Protocol Standards
- RFC 2191 VENUS - Very Extensive Non-Unicast Service