Next Generation Networking January 2002 doc.: IEEE 802.11-02/101r0 Next Generation Networking + Submission Slide 1 Richard Paine, Boeing
Next Generation Technology Trends Wireless + Very High Bandwidth Backbones: Mobile and Wireless Networks Internet2 High Bandwidth Experiments
New 5 Year Technologies UWB Adaptive Wireless Networks Unlimited Wired Bandwidth Metadirectories Firewalls down Role Based Access Control Policy-Based Security Policy-based Quality Of Service Collaboration over Wireless Home Networking VOIP over Wireless MANET Seamless Mobility Software Radios
Boeing Wireless Railroad Chart 1-3 GHz x >100Mbps UWB 5.15 GHz x 100 Mbps DFS & TPC (adaptive) 5.15 GHz x 54Mbps 802.11a 2.4 GHz X 24Mbps Adaptive 802.11g 2.4 GHz x 11 mb (802.11b) Lucent/Cisco 50,000 potential Boeing users (laptops+PDAs), 1,000 APs deployed UWB 5GHz Bluetooth 2.4 GHz x 11Mbps Adaptive Bluetooth 2.4 GHz x 700Kbps Bluetooth 2000 2001 2002 2003 2004 2005 2006 2007 Wireless Vision and Architecture published by M&CT 11/94
What is Internet2? Abilene IP-over-SONET (OC-48c) backbone 51 direct connections (3 pending) 3 OC-48c connections (most recent: MAX) 22 will connect via at least OC-12c by year end 198 primary participants All 50 states, District of Columbia, & now Puerto Rico 15 regional GigaPoPs support ~70% of participants 37 sponsored participants 14 state education networks (SEGPs) Collaboration of sponsoring member universities and Abilene connectors
Abilene Network of Internet2
Boeing Internet2 Technologies Legion Clusters Access Grid - Demonstrated HDTV
Boeing Internet2 Research Network Catalyst 5000 August 17, 2001 DNS AD/DNS PKI RA Multimedia w/s Web Privacy Manager PKI CA, RS, LDAP Logging F irewall VPN gateway Router Hub Analysis (Shadow) IDS (Snort) Future Access Grid OC3 100 Mb ATM Switch FreeBSD DummyNet QPM Remote R3 iPlanet Directory AD Streaming Video Windows Media Server R1 R2 w/ PEPs AP SX/12 CS Link Emulator Mobile Laptop Not Shielded Shielded
Metadirectory Aircraft Scenario
Metadirectory Lab Demonstration Store/Maintain Manifest Jan 2002 doc.: IEEE 802.11-02/XXX Metadirectory Lab Demonstration Airport DB iPlanet Airline Maintenance DB NDS Airline Counter Airline Directory AD Catering DB Oracle Directory Onboard Web Reservations Airline DB SQL Metamerge Move Manifest Onboard Wirelessly Build Manifest Store/Maintain Manifest Onboard Manifest Submission Slide 10 Richard Paine, Boeing
Seamless Mobility Netmotion Wireless
Seamless Mobility Netmotion Wireless
Collaboration on Internet2 Access Grid
Breaking Down Firewalls Hardening End Systems Policy-Based Network Security
Breaking Down the Firewalls SANS Methodology Configure the secure domain server on "labnet" Add PCs to domain Secure the Unix machine Install personal firewall on the PCs Designate a manager for each machine Connect "labnet" to Internet2 Test the connections Install the antivirus software on the PCs and configure for auto update Vulnerability scan on each machine
Policy Enforcement Point Big Picture BOEING ENTERPRISE PEP DEPARTMENTAL PEP MACHINE PEP
Machine Policy Enforcement Point Security Domain Security Cells Corporate Networks past Enterprise + Departmental PEPs Corporate Networks Shared Design Systems Email Data Sharing Special Contracts Machine PEP Internal Switches Secure Data Drops Shared (DMZ) LAN Machine PEP: -Strong Authentication (when machine becomes idle) -User Authorization -User transparent -Path Authorization -SSL/IPSEC Encryption -Event Alarming -Intrusion Detection Red – Available Today The machine level PEP is connected to switches and exists on an individual machine. The access is via the enterprise network and the departmental network. Today, strong authentication is provided by the operating system when the machine is idle. Otherwise, none of the services are available today.
Boeing Enterprise (Intranet & Extranet) PEP Tunnels ISP Boeing Mobile Employees, Customers, & Suppliers Logical Tunnel Internet Boeing Entity (campus, building, aircraft, etc) Private address space
Mobile Ad Hoc Networks Novaroam Routers 900MHz Radios Temporally Ordered Routing Algorithm (TORA) Churn
Summary Next Generation Wireless LANs Include UWB Adaptive Wireless Networks Metadirectories Seamless Mobility Firewalls down Policy-based Quality Of Service Collaboration over Wireless Home Networking VOIP over Wireless MANET