MAILSERVER
WRITE TO US
Do you have a burning Linuxrelated issue that you want to discuss? Write to us at Linux Format, Future Publishing, Quay House, The Ambury, Bath, BA1 1UA or email lxf.letters@ futurenet.com.
Zero trust
I’ve only skimmed through portions of this US goverment draft document (www.cisa.gov/ publication/zero-trust-maturity-model) so far. Some things may help, but we won’t know for a year or more. The metric will be ransomware and malware in general, going down in occurrence. I have my doubts.
Ed Scott
Neil says…
I’m not a security expert, nor am I an expert on current US government IT security practices. However, having had a read through of that, much of it feels like solid good advice and security practice, I’d say some of the points are how systems are run here at Linux Format Towers. We’re all on single-sign on, two-factor authentication, segmented networks, rolling password changes, strong device audits. If these aren’t implemented by US government already I’d certainly be worried as they feel like a minimum required by even small-sized companies and, to be honest, individuals.