130 likes | 140 Views
Develop security policies, improve server integrity, and ensure confidentiality, integrity, and availability of course materials for distance education program. Address current and future requirements to enhance content delivery and quality.
E N D
Distance EducationTeam 2 Security Architectures and Analysis
Distance EducationTeam 2 Members Chris Rush – Team Leader, Step 1 Mike Gazdus – A/V Expert, Step 1 Ron Banjeree – Tech Analyst, Step 2 Russ Griffith – Tech Analyst, Step 2 Scott Currie – Scribe, Step 3 Chris Ameter – Tech Analyst, Step 3 Jack Pickett – Tech Analyst, Step 3 Raman Rangswamy – Tech Analyst, Step 4 Ayman Lugman – Tech Analyst, Step 4
Distance Education Plan of Attack Team/Strategy Meeting 18 SEP 01 Initiate email traffic to all team members Initial DE Meeting – 20 SEP 01 Start Part 2, 3, 4 teams on their presentations Follow-up DE Meeting for remaining team members – 24 SEP 01 Establish weekly meeting schedule with Director, of Distance Education for Software Engineering-CMU Set meeting times for team member feedback
Distance Education CMU-DE Organizational Mission: “To offer the same high quality MSE courses currently available to resident students, through the use of on-line, Computer Based Training (CBT), and two-way audio two-way video through Distance Education”. Mel Rosso-Llopart Director, Distance Education
Tech Support E-mail Communication ADMIN Server Windows NT Oracle Product Server Linux/Apache My SQL Tech support people • Student Billing • Course Mgmt. • Program Mgmt Web Administrator Class Web support people CD – Lecture Material • Calendar • Assignments • Submit work • Assigned Reading • Files DE instructor Student
Network Topology DE System WWW Computer Science Department
Distance Education Requirements Phase: Current business requirements - HUB billing integration for payment verification - Server upgrades - Expand - Expanded coverage of database to the entire university - Initiate study of streaming technologies
Distance Education Requirements Phase, cont.: Future Requirements - Integration of course material within the campus Blackboardtm learning management system - Streaming Media incorporation within courses - Increase availability/access from a current student load of 150 students to a future load of 500 - Branding of On-line version of DE delivery - Search for software solutions for management and course delivery, either COTS or developed internally
Distance Education Computer Security Policies - Current focus is Quality and Course Content No formal policy in place Blanket coverage provided by CMU master firewall only Areas of concern SSL encryption for web server Virus protection for both servers Maintenance software patches for OS’s Secure communications to the HUB for account status
System State E-mail Communication ADMIN Server Windows NT Oracle Product Server Linux/Apache My SQL Virus Virus/Worm?
Distance Education Observations: Adherence to current security policy is poor Administration server is currently out of commission due to virus or worm - Commitment to commercial mailing of courseware Administrative overhead and additional costs - Courseware development Current development time 6-12 months per course Course is developed by the instructor only Modular courseware should be considered for established courses
Business Mission II How does this project fit the business mission? “My main concern is with delivery of content and quality to those who pay for the course.” Mel Rosso-Llopart Director, Distance Education
Business Mission II We must ensure content delivery and quality by providing: • Confidentiality to DE students • Integrity of course materials • Availability of servers to deliver content * We need to make sure this system is survivable.