[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: Re: [cti-cybox] CybOX 3.0: Address Object Refactoring
Validation needs to happen at the consumer side, as you can never guarantee that it has happened at the producer side. To complicate matters the producer may make best effort to validate it, but the data may get messed up in transit, either intentionally or unintentionally. Further people talk about the python-cybox libraries as if they were some sort of canonized gospel. If we succeed and get across the chasm, we need to realize that our little baby will be spoken in just about every programming language there is. So we can not rely on the fact that some thing is or is not in the python libraries. This is also why the statements about not needing to worry about serialization "as it is taken care of in a library" are false. Thanks, Bret Bret Jordan CISSP Director of Security Architecture and Standards | Office of the CTO Blue Coat Systems PGP Fingerprint: 63B4 FC53 680A 6B7D 1447 F2C0 74F8 ACAE 7415 0050 "Without cryptography vihv vivc ce xhrnrw, however, the only thing that can not be unscrambled is an egg."
|
Attachment:
signature.asc
Description: Message signed with OpenPGP using GPGMail
[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]