This
page contains current, up-to-date versions of documents and forms
for participation in the NIST checklist program.
NIST
Special Publication 800-70: Security Configuration Checklists
for IT Products Program - This publication provides a high-level
overview of the NIST checklist program and then provides more
detailed information for users and developers. The forms and other
documents listed below on this page are to be used for actual
participation in the checklist program. The links below will contain
more recent versions of those forms and documents.
Participation
package - Version 1.1 - April 11, 2005 - a zipped package
of all forms and documents needed for participation in the checklist
program. This package does not include the 800-70 publication,
which can be downloaded separately.
Blank
Checklist Description Form - Version 1.1 - April 11, 2005
(RTF form) - This form contains a number of fields that, collectively,
describe aspects of a checklist so that it can be cataloged
and referenced within the checklist repository. This form
must be completed before submitting a checklist to the checklist
program.
Checklist Program Operational Procedures - Version 1.1 - February
1, 2005 - This document is intended as a reference for
organizations to while participating in the checklist program.
It summarizes the operational procedures of the checklist
program and outlines the nature of the interactions between
NIST and checklist developers during the course of checklist
development, review, listing on the checklist repository,
and checklist maintenance.
Disclaimer Any mention of commercial products or reference to commercial organizations
is for information only; it does not imply recommendation or endorsement
by NIST nor does it imply that the products mentioned are necessarily
the best available for the purpose.