1 / 14

OPSEC WG _______

Get the latest from the IETF-66 OPSEC WG meeting on operational security capabilities for IP network infrastructure. Review newly available documents, charter outputs, and adjusted milestones here.

corkery
Download Presentation

OPSEC WG _______

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. OPSEC WG_______ Operational Security Capabilities for IP Network Infrastructure IETF #66 - Montreal IETF-66 OPSEC WG

  2. Front Administrativia • Backup Minutes scribe? • Jabber scribe? (opsec) rooms.jabber.ietf.org • When speaking: • Please identify yourself (for the scribes) • Don’t mumble • Speak at/to/near the microphone. The audio is being streamed out. (aka, “eat the mike”) IETF-66 OPSEC WG

  3. Agenda 1. Agenda Bashing. 2. Status of Current WG Docs. 3. New-ish WG Docs. - routing caps doc draft-zhao-opsec-routing-capabilities-01 - new logging caps doc Draft-cain-logging-caps-00 4. New Things. - Darrell Lewis on an individual security draft - Pekka’s two experiences draft 5. The way forward. 6. Adjourn. IETF-66 OPSEC WG

  4. Charter: Outputs • Framework Document • Out for review • Current Practices Document • Out for review • Individual Capability Documents • Looking for editors/reviewers • Profile Documents • In the future IETF-66 OPSEC WG

  5. Document and WG status IETF-66 OPSEC WG

  6. Available Documents • Framework for Operational Security Capabilities for IP Network Infrastructure • draft-ietf-opsec-framework-02.txt  ? • Security Best Practices Efforts and Documents • draft-ietf-opsec-efforts-04.txt  WGLC • Operational Security Current Practices • draft-ietf-opsec-current-practices-05.txt  WGLC • Filtering Capabilities for IP Network Infrastructure • draft-ietf-opsec-filtering-caps-01.txt IETF-66 OPSEC WG

  7. Available Documents • Miscellaneous Capabilities for IP Network Infrastructure • draft-ietf-opsec-misc-cap-00.txt • Network Management Access Security Capabilities • draft-ietf-opsec-nmasc-00.txt • Routing Control Plane Security Capabilities • draft-zhao-opsec-routing-capabilities-02.txt IETF-66 OPSEC WG

  8. Newly Available Documents • Logging Capabilities for IP Network Infrastructure • draft-cain-logging-caps-00.txt IETF-66 OPSEC WG

  9. Capabilities Docs in Charter Packet Filtering  Event Logging • (Management Capabilties)  In-Band management  Out-of-Band management ? Configuration and Management Interface  Authentication, Authorization & Accounting (AAA) ? Documentation and Assurance  Miscellaneous IETF-66 OPSEC WG

  10. Profiles? IETF-66 OPSEC WG

  11. Adjusted Milestones IETF-66 OPSEC WG

  12. Other New Documents • Service Provider Infrastructure Security • draft-lewis-infrastructure-security-00.txt • Backbone Infrastructure Attacks and Protections • draft-savola-rtgwg-backbone-attacks-01.txt • Experiences from Using Unicast RPF • draft-savola-bcp84-urpf-experiences-01.txt IETF-66 OPSEC WG

  13. End IETF-66 OPSEC WG

  14. Discussion/Administratia • Time for Discussion • Maillist: • General Discussion: opsec@ops.ietf.org • To Subscribe: opsec-request@ops.ietf.orgIn Body: subscribe • Archive: http://ops.ietf.org/lists/opsec/ IETF-66 OPSEC WG

More Related