Special Publication 800-113, Guide to SSL VPNs, assists organizations in understanding SSL VPN technologies and in designing, implementing, configuring, securing, monitoring, and maintaining SSL VPN solutions. This publication intends to help organizations determine how best to deploy SSL VPNs within their specific network environments by:
- Describing SSL and how it fits within the context of layered network security;
- Presenting a phased approach to SSL VPN planning and implementation that can help in achieving successful SSL VPN deployments; and
- Comparing SSL VPN technology with IPsec VPNs and other VPN solutions.
Special Publication 800-77, Guide to IPsec VPNs, assists organizations in mitigating the risks associated with the transmission of sensitive information across networks by providing practical guidelines on implementing security services based on Internet Protocol Security (IPsec). This publication intends to help organizations determine how best to deploy IPsec VPNs within their specific network environments by:
- Discussing the need for, and types of, network layer security services and how IPsec addresses these services.
- Providing a phased approach to IPsec planning and implementation that can help in achieving successful IPsec deployments.
- Providing specific recommendations relating to configuring cryptography for IPsec.
- Using a case-based approach to show how IPsec can be used to solve common network security issues; and
- Discussing alternatives to IPsec and under what circumstances each may be appropriate.
Special Publication 800-52, Guidelines for the Selection and Use of Transport Layer Security (TLS), provides guidelines on the selection and implementation of the TLS protocol while making effective use of Federal Information Processing Standards (FIPS)-approved cryptographic algorithms. TLS provides a mechanism to protect sensitive data during electronic dissemination across the Internet. This guideline:
- Describes the placement of security in each layer of the communications protocol stack, as defined by the OSI Seven Layer Model.
- Provides criteria for developing specific recommendations when selecting, installing and using transport layer security; and
- Discusses client implementation, server, and operational considerations.
Special Publication 800-111, Guide to Storage Encryption Technologies for End User Devices, assists organizations in understanding storage encryption technologies for end user devices and in planning, implementing, and maintaining storage encryption solutions. The types of end user devices addressed in this document are personal computers (desktops and laptops), consumer devices (e.g., personal digital assistants, smart phones), and removable storage media (e.g., USB flash drives, memory cards, external hard drives, writeable CDs and DVDs). This publication:
- Provides an overview of the basic concepts of storage encryption for end user devices.
- Provides guidelines on commonly used categories of storage encryption techniques (i.e., full disk, volume and virtual disk, and file/folder), and explains the types of protection they provide;
- Discusses important security elements of a storage encryption deployment, including cryptographic key management and authentication; and
- Examines several use cases which illustrate multiple ways to meet most storage encryption needs.

Whether you're preparing for Cybersecurity certification, working with government standards, or simply starting your career in compliance, these are the NIST Federal Information Processing Standards (FIPS), Special Publication (SP), and Interagency Report (IR) topics