Security Cluelessness
September 11, 2005 10:00 PM
Subscribe
I'd like to get a handle on computer security. Where should I start? I'd like to stress that I am NOT talking about spyware and viruses here, but the more interesting things like authentication and authorization.
At work, I've had to get up to speed on a great number of things, but so far the new aspects of my experience haven't intersected the security aspects of the business. I'd like to know more before they do, and in support of that I want some advice on how to learn it.
I'm talking about (for example only!) JAAS, X.501 (?), SAML, et al. Where do they fit in, what is a complete system made up of, what are some relative merits, et al. Something not flat-out entry level (ie: Computer Security for Dummies) but rather an introduction for someone who knows how to program in a serious way, but doesn't know a damned thing about these beasties.
I'd prefer a book, if at all possible, although web sites are welcome as well.
posted by ChrisR to computers & internet (13 comments total)
Bruce Schneier's Applied Cryptography is pretty much a classic. Schneier provides both an in-depth view and a broad overview of security matters, so whether you feel like skimming or studying the book will probably be valuable to you.
I believe it also has code exmaples, so that could be pretty useful to you.
posted by fishfucker at 10:08 PM on September 11, 2005