1. Understanding information security

2.Information security and Internet

3. Methods of information security


1. Understanding information security

For information security reasons, the seizure of information and infrastructure from any kind of evil or evil actions, as a result of which the infrastructure can be inflicted, is inflicted on the self-warrant

Organizational information security is the camp of the seizure of the information center of organizing, which will not preserve the form, victorious and development.

In the current social information sphere, there are two warehouses: information and technology (piece by piece of human knowledge of technology, technology, etc.) and information and psychological (natural light of living nature), including people. Apparently, the information security of a suspension (power) can be represented by two storage parts: information-technical security and information-psychological (psychophysical) security.

As standard safety models often produce a model in three categories:

Confidentiality is the standard of information, if only the subordinates have access to it, they may be entitled to a new right;

Purpose - to identify unauthorized modifications of information;

Accessibility - a unique time-based or post-term capture of information from people who have been denied access rights.

See and do not depend on the binding categories of the model of the safety model:

unfairness or appellability - the unwillingness of the type of authorship;

Pidzvitnist - securing the identification of the sub'єkta access and restoration of yogo action;

credibility - the authority of the credibility of the transmitted behavior to the result;

Authenticity or justice - power, as a guarantor, is a sub'єct or resource is identical to the statement.

Diy, which can create a school of information security of organization, can be divided into a number of categories:

2. "Electronic" methods injected by hackers. When hackers think about people, they are engaged in computer malignancies as a professional (including within the framework of a competitive struggle), as well as simply from tsikavosti. Prior to such methods, there are: unsanctioned penetration into computers; DOS attacks.

By the method of unauthorized penetration of information into the business of an enterprise, there can be inflicted shkodi (knowledge of tribute), theft of confidential information and protection of information for illegal purposes, the development of information for the third party to attack

An attack of the DOS type (speed. Від Denial of Service - "view in service") is the most common attack on the universities of an industrial enterprise, which appears to be a safe and effective robot (files, mail servers). The malevolent organizers will organize the mailing of packages of money to the central university, to the recipient, to the bag, at any time to send it to the university. Tse, as a rule, it is more difficult to follow oneself in the business processes of the company-victim, the loss of clients, the loss of reputation is too

3. Computer viruses. Orema category of electronic methods for pouring - computer viruses and іnshі shkіdlivі programs. The stench is a real concern for the day-to-day business, widely used computers, Internet and electronic mail. Penetration of a virus at a university of a corporate net can lead to a breakdown in its function, in a working hour, to waste money, to steal confidential information and to find direct losses of financial resources. The program is viral, since it has penetrated the corporate border, it is possible for the evil-minded people to gain partial control over the company’s business.

4. Spam. All for a bit of rocky spam, because of an insignificant drastic factor, it was re-created into one of the most dangerous threats to security: the electronic mail became the main channel of the extended shkidlivy programs for the last hour; spam takes away a lot of an hour for a peek і farther away, seemingly, wickedness from sportsmen for psychological discomfort; as private individuals, so and organizing become victims of Shakhrai schemes, implemented by spammers; At the same time, due to spam, it is not easy to see important correspondence, but you can lead to the loss of clients, see contracts and other unacceptable inheritances; Correspondence is not safe, especially with the victorious black lists of RBL and the other "rude" methods of filtering spam.

5. "Natural" pollute. On the information security of the company, there can be added special factors: the reason for the loss of these may be the wrong collection, theft of computers and equipment, force majeure furnishings, etc.

With such a rank, in the savvy minds, the obviousness of the developed system and information security has become one of the best minds of the competitiveness and welfare of any company.

2.Information security and Internet

Spіlkuvannya with victories of the newest thanks to the commune took over the Internet. All-time information on the hem is developing at a great pace, a number of participants are constantly growing. For deyakim tribute, in the fenestration, close to 1.5 milliard sides are registered. Deyakі "live" until pivrok, and deyakі work on their masters in renewed strength and bring great influx. Information in the net will love all sides of the living of the people and the suspension. Koristuvachi add the form to themselves and their own activity. However, advising robots in the field of computer technologies is responsible for the application of unscrupulous victories of Internet resources.

Fakhіvtsі seem to be the main reason for penetrating into the computer fringes - the lack of turbulence and lack of preparation of the corystuvachіv. The price is typical not only for the peasant koristuvachiv, but also for the fahivts in the area of ​​computer security. At the same time, the reason is not only negligence, but rather a small amount of information about the safety in the sphere of information technologies. It is tied with a quick development to the market of hemmed technologies and the very hem of the Internet.

According to Kaspersky's laboratory, close to 90% of the number of people penetrate the computer of high-profile programs to use the Internet, through e-mail and look at the Web sites. Especially the middle of such programs for the loan of the class is the Internet-worm. To expand itself, it is not obsolete to the mechanics of the robot, to identify its main enterprise, to fix the victim's computer, to steal the address book or to enter information into the man, to write down the addresses of the bookkeeper, to take the computer out of the computer. 'you can use a resource, or take away a part of the resources for your own purposes, or, in the worst case, self-erase, meaning all the files on all disks.

All the problems associated with them can be viewed for additional manifestation in the organization of the operative document, which reflects the policy of the information security of the company. Such a document clearly states the following:

how the robot is carried out from the information of the enterprise;

hto maє access;

system of copying and collecting money;

robot mode on PC;

the appearance of security and restoration documents for the possession of that security software;

Vykonannya vimog to ap_shennya, de-roztashovuyutsya PC and the work of mice koristuvach;

availability of instructions and technical documentation;

the appearance of work journals and the order of their conduct.

In addition, it is necessary to continually review the development of technical and information systems, to publish in periodic press, for example, the story behind the topics discussed at the related seminars.

So zgіdno Presidential Decree "On come in schodo zabezpechennya іnformatsіynoї BEZPEKA Russian Federation at vikoristannі іnformatsіyno-telekomunіkatsіynih trammel mіzhnarodnogo іnformatsіynogo obmіnu" zaboroneno broadband Internet іnformatsіynih systems іnformatsіyno-telekomunіkatsіynih trammel i zasobіv obchislyuvalnoї tehnіki scho zastosovuyutsya for zberіgannya, obrobki abo peredachі Informácie scho mіstit in order to become a state house, or information, to the authorities of such a state organization, and to take revenge on a house, to become a service department, before information and telecommu- nication information, so that it is allowed to the Russian Federation.

When neobhіdnostі broadband Internet zaznachenih іnformatsіynih systems іnformatsіyno-telekomunіkatsіynih trammel i zasobіv obchislyuvalnoї tehnіki to іnformatsіyno-telekomunіkatsіynih trammel mіzhnarodnogo іnformatsіynogo obmіnu TAKE broadband Internet carried tіlki of vikoristannyam spetsіalno priznachenih for tsogo zasobіv Zakhyst Informácie, in addition chislі shifruvalnih (kriptografіchnih) koshtіv, SSMSC proyshli in established According to the legislation of the Russian Federation, the procedure for certification from the Federal Service of the Security Service of the Russian Federation and (or) denied approval from the Federal Service for technical and export control.

3. Methods of information security

On the reconsideration of experts of "Kaspersky Lab", the security of information security is guilty systematically. This means that the business owner (hardware, software, physical, organizing, etc.) is responsible for the stasis immediately and for the centralized management. With a whole component of the system of guilt, the "nobility" is about the idea of ​​one of one, of intercourse and non-proverbiality, both from the outward and outward threats.

On this year's day, there is a great arsenal of methods for securing information security:

add identification and authentication of koristuvachiv (this is the title of complex 3A);

get encrypted information that can be stored on computers and transmitted by fencing;

mіzhmerezhevі screens;

virtual private hemlines;

add content filter;

tools for reconversion of integrity in place of disks;

add an anti-virus to the virus;

systems for detecting the inconsistencies of the hem and analyzers of the hem attacks.

Skin care can be taken independently as well as in integration with others. We should try to keep the system of information retrieval possible for framing, be it foldable and configurable, so that we do not lie down on the victorious platforms.

"Complex 3A" includes authentication (or identification), authorization and administration. Identification and authorization are all key elements of information security. When you try to access information assets, the identification function gives you the answer to the food: "Who are you?" I "De vie?" - we knew how we are authorized by us. The function of authorization is given for those, up to which resources, a specific koristuvach can access. The function of the administration of the field in the above-mentioned identifying features within the framework of the given measure and designation is permissible for a new project.

The encryption systems allow you to minimize the loss of access in case of unauthorized access to the data, which can be stored on a hard disk or even a nose, as well as the transfer of information when overridden by electronic protocols. Zavdannya given to zasobu zahist - security of confidentiality. The main benefits that are presented to encryption systems are a high level of crypto-security and legal status in the territory of Russia (or the other powers).

The cross-cut screen is a system of either a combination of systems, which can be used to create a combination of two or more hedgehog barriers, so that it is protected from unsanctioned consumption in a way or when it comes from a package of data.

The basic principle of multimedia screens is the conversion of the skin packet of data to the appearance of the input and output IP address and the basis of the allowed address. In such a rank, between the screens, it significantly expands the possibilities of segmenting information and control over the circulation of data.

Talk about cryptography and digital screens, and talk about stealing virtual private networks (VPN). Х vikorstannya allows the visibility of problems of confidentiality and integrity of the given data during transmissions via visible communal channels. Vikoristan VPN can be called up to the last three main sites:

1.Recognition of information streams between the company’s business offices (encryption of information is carried out only at the entrance to the new border);

2. seizure access from distant people to information resources of the company, as a rule, access through the Internet;

3. Capturing information streams between other companies in the middle of corporate fences (this aspect is also even more important, fewer attacks can be made from internal fences).

Effectively for the return of confidential information - filtering instead of the incoming and outgoing electronic mail. Revision of the individual items themselves and their contribution to them on the basis of the rules established in the organization, allowing the company to also ensure that the company is aware of the court calls and cleanse the spam in spam. Create content filtering allows you to convert files of all advanced formats, including styles and graphics. With a wide flow of space, it is practically not possible to change the size of the net.

All changes on the workstation, or on the server, can be seen by the administrator of the net, or the one who is authorized to set up the technology for changing the integrity of the hard disk (integrity checking). It does not allow the appearance of any files (a change that can be seen, or just a display) and identification of the activity of viruses, unauthorized access, or theft of given by authorized criminals. The control is based on the analysis of checksums of files (CRC sum).

The current anti-virus technologies allow you to see practically all of the virus programs through the appropriate code of the adult file and in a nutshell, which can be saved in the anti-virus database. In addition, the breakdown of behavioral modeling technology, allows you to display news and viruses in programs. When you see something, you can get away with it, you can get out of it (go to quarantine) or go away. Zahist vіd vіrusіv can be installed \ u200b \ u200b on workstations, files and post servers, different screens, so it can be practically used from extended operating systems (Windows, Unix) on Linux systems, Novell.

Filter spam significantly reduce unproductive labor, tied to spam picking, reduce traffic and server overload, reduce the psychological background in the team and change the risk of learning in the mining companies. In addition, spam may filter out the risk of new viruses, and some of the chances of revenge viruses (not yet entered the anti-virus databases) are often indicative of spam and filter out. True, the positive effect of filtering spam can be cross-referrals, as the filter can be seen as spam and it is normal for some people.

For the prevention of natural threats and information security, the company is responsible for the destruction and implementation of a set of procedures to protect the overwhelming situations (e.g. One of the main methods for collecting data is to back up with accurate pre-set procedures (regularity, tips, methods of copying, etc.).


1. Decree of the President of the Russian Federation "About the security of the information security of the Russian Federation at the victorious information and telecommunications network of international information exchange" dated 17.03.2008 No. 351;

2. Galatenko, V.A. Basics of information security. Internet University of Information Technologies - І, 2008;

3. Galatenko, V.A. Information security standards. Internet University of Information Technologies - І, 2005;

4. Lopatin, V.N. Information security of Russia: Lyudina, support, power. Seriya: Bezpeka people and suspensions. M .: 2000. - 428 s;

5. Shangina, V.F. Zachist computer information. Effective and efficient methods. - M .: DMK Press, 2008 .-- 544 p.

6. Shcherbakov, A.Yu. Suchasna bezpeka computer. Theoretical basis. Practical aspects. - M .: Knizhkovy svit, 2009 .-- 352 p.

In practice, we have found three aspects of information security:

  • availability(You can take out the necessary information service in a reasonable hour);
  • integrity(Relevance and inconsistency of information, and the seizure of a ruined and unsanctioned change);
  • confidentiality(Zakhist from unauthorized reading).

Loss of accessibility, integrity and confidentiality of information can be a vicious inflow to information computer systems.

Main load information security

The current information system is a collapsible system, which is composed of a great number of components of a different stage of autonomy, which are linked between themselves and exchange data. Practically, the dermal component can be used for a long time. The components of the automated information system can be broken on the offensive of the group:

  • hardware device- computers and storage parts (processors, monitors, terminals, peripheral attachments - disk drives, printers, controllers, cables, communication lines, etc.);
  • programmatically secure- add-on programs, wihіdnі, ob'єktni, zavantazhvalny modules; operating systems and system programs (compilers, linkers, etc.), utilities, diagnostic programs, etc .;
  • tribute- save time and time, on magnetic noses, handles, archives, system journals, etc .;
  • staff- service personnel і koristuvachі.

Inadequate supply to the computer information system can be connected to the display and the information system. An analysis of the progress of the design, preparation and operation of information systems, showing, and information is provided by the vivid, vaping inflows at all stages of the life cycle of the system. reasons vypadkovyh injections during operation, there are:

  • emergency situations through spontaneous forces and electrical connections;
  • vidmov and zboi apparatus;
  • pardons in programmed storage;
  • pardons for robotic staff;
  • Cross the lines in the lines through the inflows of the new middle.

navmisnі dії- tse tsіlespryamovanі dії porushnik. Yak porushnik can vistupati serviceman, vidviduvach, competitor, nayman. The heroes' diy can be reinforced with different motives:

  • dissatisfied with the service with their kar'єroi;
  • habarem;
  • tsіkavіstyu;
  • competitive fighting;
  • pragnennyam self-assertion be-like price.

It is possible to use a hypothetical model of a potential poroner:

  • qualification of a porner at the level of the roster of this system;
  • A thief can be an outside person, as well as a legitimate koristuvach system;
  • information about the principle of robotic systems;
  • poruzhnik vibiraє naybilsh weak lanka in zahist.

We will expand it with a versatile type of computer damage є unauthorized access(NSD). The NSD will be victorious, be it a pardon in the system for the siege and the mobility in the case of an irrational vibration, for the sake of the siege, for the incorrect establishment and adjustment.

The classification of the channels of the NSD is carried out, for which it is possible to get stolen, change or information:

  • Through people:
    • breaking up of information;
    • reading information from the screen or keyboard;
    • reading information from the file.
  • Through the program:
    • overloading passwords;
    • decryption of encrypted information;
    • copying of information from the nose.
  • Through hardware:
    • connection of specially disassembled hardware devices, so that you will not have access to information;
    • overloading of secondary electromagnetical viprominuvans in terms of equipment, line connection, netting, etc.

Varto okremo zupinitsya on thunderstorms, which can be used by computers. The main feature of whether a computer is a polygon is in the fact that it is a component of the growth in space. The link between the universities of the hemispheres is physically based on the additional hemlines and programmatically for the additional mechanism. At the same time, there is a lot of information and data, which are overridden by the nodes of the hemispheres, are transferred from the viewer packages to the exchange. Computers are characteristic of them, so called against them onward attacks... A thief can take thousands of kilometers to attack an object, when an attack is made, it is not only a specific computer that can be sent, but information, which is transmitted through the fancy channels.

Formation of the information security regime is a complex problem. The entrance for the її rіshennya can be taken by five rіvnіv:

  1. legislative (laws, regulations, standards, etc.);
  2. moral and ethical (all the norms of behavior, not being able to keep up with those things to the fall of the prestige of a particular people or a whole organization);
  3. administrative (for a zagalny character, which is obeyed by a critical organization);
  4. physical (mechanical, electro- and electronic-mechanical transitions on young ways of penetrating potential porters);
  5. hardware-software (electronic attachments and special programs for the information manager).

The unity of all these calls, straightened to the defense of threats, without special attention to the minimum of energy, the system will.

The necessary system is guilty of the offensive principles:

  • The part of the party to the enemy is guilty of being less than the smallest of the young.
  • Kozhen koristuvach is guilty of the mother of a minimal set of privileges, necessary for a robot.
  • Zakhist team is effective, which is simpler than koristuvachev with her pratsyuvati.
  • Possibility to connect in extra windows.
  • Fakhivtsi, I think that it’s possible to bring the system to the guilty point of the principle of functioning and in the development of difficult situations to adequately respond to them.
  • The whole system of information processing is known to be guilty.
  • The developers of the system will not be guilty of being among those who will be controlled by the system.
  • The system is guilty of trying to prove the correctness of its robots.
  • Individuals who are engaged in information security should be responsible for the responsibility of the specialist.
  • I will do the trick to completely distribute it to the groups so that the destruction of the taker in one of the groups did not pour into the security of the group.
  • The necessary system is guilty of but on the whole protested and the uzgodzhena.
  • The zachist becomes more effective and nasty, even though it allows a change of its parameters from the side of the administrator.
  • The system will be guilty of rooting out, going out of the way, so that the corysty will be robbed of the grave pomp and, vzagal, may naygirshi namiri.
  • Most important and critical decisions are taken by people.
  • Having learned the mechanics of the owner, he was guilty as far as possible from the koristuvachiv, the robot which is under control.


Uninvolved on those modern operating systems for personal computers, such as Windows 2000, Windows XP and Windows NT, the power of the system can be lost, the relevance of additional problems can be saved. On the right, in the fact that most of the systems are not built to cleanse the data, but to be located behind their boundaries, for example, when using a fancy information exchange.

The hardware and software can be split into five groups:

  1. Systems of identification (designation) and authentication (revision of information) of koristuvachiv.
  2. Disk tribute encryption system.
  3. The system of ciphering the tributes passed along the lines.
  4. Electronic data authentication systems.
  5. Set up management of cryptographic keys.

1. Systems of identification and authentication of coristuvachiv

To become stuck for access to the computer system resources. The basic algorithm of the robotics of such systems is to correct the information from the person who knows the person, to reconsider the ability of the robot to use the system.

When prompting cich systems, the problem is the choice of information, on the basis of which the procedure for identifying and authenticating a corystuvach should be established. You can see offensive tips:

  • secret information, such as volodya koristuvach (password, secret key, personal identifier, etc.); koristuvach is guilty of remembering information, or for her, it may be stuck in specials for zberigannya;
  • physiological parameters of people (wiggles of fingers, little ones of the rainbow shell of an eye) or the particularity of behavior (especially of robots on the keyboard).

Systems based on the first type of information can be used traditional... The system, which vikoristovuyut another type of information, is called biometric... This signifies a tendency towards the development of biometric identification systems.

2. Systems for encryption of disk tributes

In order to create information with a marnoy for the enemy, vikoristovuyut the supremacy of methods of re-enactment of cryptography[View of Greek. kryptos- ghosting і grapho- writing].

The encryption system can enable cryptographic conversions of the data on the same files or on the same disks. Up to the program type it is possible to bring the archivators to the ARJ and RAR types, which allow the use of cryptographic methods for retrieving archive files. Another type of application can be the Diskreet encryption program, which comes before the popular Norton Utilities software package, Best Crypt.

The most classifiable familiarity of disk data encryption systems є methods of their functions. The method of functioning of the system and encryption of disk tributes is divided into two classes:

  • system and "proprietary" encryption;
  • systems, specially wiklicans for encryption.

In systems of proprietary ciphering (ciphering "on advantage"), cryptographic reconfigurations are created in real time, which is inconceivable for a koristuvach. For example, koristuvach will write down the preparations in a text editor on the document on the object, the disk will be stolen, and the system will take over in the process of writing down the cipher.

The systems of another class are inviting to represent utilities, as it is necessary to have special victories for the ciphering. Prior to them, for example, the archivators are brought in with vbudovanim zasob pralny zakistu.

There are a large number of systems that can be used to set a password for a document, but not encrypt the information, but only save the password when accessing the document. Such systems include MS Office, 1C and a lot of them.

3. The system of encryption of the tributes, transmitted along the lines

There are two main encryption methods: channel encryption and encryption (subscriber) encryption.

In times channel encryption all information is stolen, transmitted over the channel, including the service. Tsei method of encryption I will come to gidnistyu - vbudovannya encryption procedures on the canal level, allowing the device to be encrypted, as well as increasing the productivity of the system. However, the given approach and sutta are short:

  • ciphering of service data faster routing mechanism of cut-and-paste packets and encryption of data in the annexes of the industrial commune (gateways, repeaters, etc.);
  • The encryption of service information can be triggered before the appearance of statistical regularities in the encrypted data, which injected into the reliability of the search engine and the imposition of interchange on the registration of cryptographic algorithms.

Kintseve (subscriber) encryption allowing you to secure the confidentiality of the data, which is transmitted between two subscribers. In all cases, only the zmist will be taken away, all service information will be left open. In short, there is the possibility of analyzing information about the structure of the exchange of information, for example, about the recipient of that owner, about the hour of the transmission of the tribute, and also about the exchange of the transmission of tribute.

4. Systems of authentication of electronic data

When exchanging data on the basis of the text, the problem of authenticating the author of the document and the document itself, so that the author's validity and the revision of the changes in the rendered document are established. To authenticate the data, you must use an authentication code (imitation insertion) or an electronic signature.

Imitation insert Vyroblyaєtsya from іncritical tributes for the addition of a special re-encryption of the secret key і send a call via the channel in encrypted tributes. The imitating insertion will be overridden by a secret key, by the way of repeating the procedure;

Electronic digital signatureє There is a relatively small amount of additional authentication information, transmitted at once with the written text. Vidravnik formє digital signature, vikoristovuchi secret key vidravnika. Oderzhuvach perevіryaє pіdpis, vikorystovyuchi vіdkritiyu key vіdravnika.

In such a rank, for the implementation of imitating insertion, the principle of symmetric encryption is used, and for the implementation of an electronic signature - asymmetric. The details of the two encryption systems will be kept in mind.

5. Set up management of cryptographic keys

Be sure to use a cryptosystem to start with vicarious cryptographic keys. In case of unreliable key management, the malicious person can control the key information and restore access to all information in the system, for example.

The development of such types of key management functions: generation, selection, and distribution of keys.

ways generations of keys for symmetric і asymmetric cryptosystems різні. For the generation of keys of symmetric cryptosystems, hardware and software must be used to generate a random number. Generation of keys for asymmetric cryptosystems of folding, which is why keys are responsible for the power of mathematics. More details on the whole power supply are available for implantation of symmetric and asymmetric cryptosystems.

function zberigannya transferring the organization of the bakeless zberigannya, the oblast and the visible key information. To secure the bakeless keys, secure the encryption for the additional help of alternative dzherels. Such a pidhid should be brought up to the concept of a hierarchy of keys. In the hierarchy of keys, you are asked to enter the head key (tobto the master key), the key for encrypting the keys and the key for encrypting the data. It means that the generation and recovery of the meister-key is for the critical nutrition of the crypto-security specialist.

rospodil- the most recent process in the control keys. The whole process is guilty of guaranteeing the secrecy of the keys, as well as being prompt and accurate. There are two ways between the keys and the keys:

  • for the additional direct exchange of session keys;
  • vikoristovuchi one or a number of centers in the keys.

Transfer of documents

  1. ABOUT THE PRESERVATION OF THE TAMNITSU. Law of the Russian Federation dated 21 December 1993 No. 5485-1 (as amended by the Federal Law dated 6 January 1997 No. 131-FZ).
  2. ABOUT INFORMATION, INFORMATIZATION AND TO CONSUMER INFORMATION. Federal Law of the Russian Federation from 20th February 1995 No. 24-FZ. Accepted by the State Duma on 25 September 1995.
  3. About the legal protection of programs FOR ELECTRONIC CALCULATING MACHINES І DANIKH BASES. Law of the Russian Federation dated 23 September 1992 No. 3524-1.
  4. ABOUT THE ELECTRONIC DIGITAL PIDPISU. Federal Law of the Russian Federation as of 10 September 2002 No. 1-FZ.
  5. ABOUT AUTHOR'S LAW І SUMIZHNI RIGHTS. Law of the Russian Federation dated 9 April 1993 No. 5351-1.
  6. About federal bodies URYADOVO ZVYAZKU TA INFORMATION. Law of the Russian Federation (as amended by the Decree of the President of the Russian Federation dated 24.12.1993 No. 2288; Federal Law dated 07.11.2000 No. 135-FZ.
  7. Regulations on the accreditation of viprobauval laboratories and bodies with certification in support of the information officer for information security / State technical committee under the President of the Russian Federation.
  8. Instructions on the procedure for the certification of certificates of evidence, copies and certificates of information to the information officer / State Technical Committee under the President of the Russian Federation.
  9. Regulations on attestation of informatization for vimogues of information security / State Technical Committee under the President of the Russian Federation.
  10. Regulations on the certification of information to the information officer for the information security committee: with additional information prior to the Resolution of the Russian Federation Council on the 26th worm of 1995 No. 608 "On certification" of the technical information
  11. Regulations on the state licensing of efficiency in the information manager / State technical committee under the President of the Russian Federation.
  12. Automated systems. Protection from unauthorized access to information. Classification of automated systems and in order to get the information: Current document / State technical committee under the President of the Russian Federation.
  13. Concept for the acquisition of the information technology and automation systems for unauthorized access to information: Key document / State Technical Committee under the President of the Russian Federation.
  14. Save the calculating technology. Mіzhmerezhevі screens. Protection from unauthorized access to information. Indicators of seizure from unauthorized access to information: Key document / State technical committee under the President of the Russian Federation.
  15. Save the calculating technology. Protection from unauthorized access to information. Indicators of seizure from unauthorized access to information: Key document / State technical committee under the President of the Russian Federation.
  16. Zakhist information. Special signs. Classification and foreign vimogues: A critical document / State Technical Committee under the President of the Russian Federation.
  17. Protection from unauthorized access to information. Terms and conditions: Current document / State technical committee under the President of the Russian Federation.

