Security WG: Report of the Spring 2015 Meeting Caltech, Pasadena CA USA 27 March 2015 Howard Weiss NASA/JPL/PARSONS +1-443-430-8089.

Slides:



Advertisements
Similar presentations
1 CCSDS Security Working Group Fall 2008 Meeting October 2008 Berlin Germany.
Advertisements

7-Apr-2014-cesg-1 Joint CMC-CESG Meeting NH Conference Centre, Nordwijkerhout, Netherlands Hosted by ESA/ESTEC 7 April 2014 CCSDS Engineering Steering.
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/SPARTA (a Parsons Company) October.
Security WG: Report of the Winter 2007 Meeting Colorado Springs, CO USA January 20, 2007 Howard Weiss NASA/JPL/SPARTA
Sep 2003 CCSDS Navigation WG Progress Report MOIMS Meeting Oct 2003 CSC, Maryland, USA Felipe Flores-Amaya CCSDS Navigation WG.
Cesg-1 June 2010 Chris Taylor (AD) Stuart Fowell (DAD) SPACECRAFT ONBOARD INTERFACES SERVICES (SOIS) AREA.
10-Dec-2012-cesg-1 Chris Taylor (AD) Stuart Fowell (DAD) SPACECRAFT ONBOARD INTERFACES SERVICES (SOIS) AREA.
Symmetric Key Management Books Development Plan Daniel Fischer (ESA) Ignacio Aguilar Sanchez (ESA) CCSDS Spring Meeting 2010 | Portsmouth, VA.
Cesg-1 CCSDS Engineering Steering Group: Report to the CCSDS Management Council (CMC) and Interagency Operations Advisory Group (IOAG): Fall 2010 BSI,
Security WG: Report of the Fall 2014 Meeting BSI, London UK 14 November 2014 Howard Weiss NASA/JPL/PARSONS
ESA UNCLASSIFIED – For Official Use Workshop #23 Pasadena, USA 23-27Mar15 Mario Merri, ESA/ESOC SM&C WG Plenary.
1 26 October 2005 Space Internetworking Services Report to the CCSDS Management Council 26 October 2005 R. Durst, D. Stanton.
Delta-DOR SIG: Report of the Fall 2007 Meeting Heppenheim, Germany October 5th, 2007 Roberto Maddè ESA/ESOC
Security WG Status Review ESA European Space Operations Centre Darmstadt, Germany 16 April 2012 Howard Weiss NASA/JPL/SPARTA
Security WG: Report of the Fall 2005 Meeting Atlanta GA September 16, 2004 Howard Weiss NASA/JPL/SPARTA.
Cesg-1 SLS REPORT 7 May 2010 Jean-Luc Gerner (AD) Gilles Moury (DAD) SPACE LINK SERVICES (SLS) AREA SLP and NGU sections Only.
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/SPARTA (a Parsons Company) April.
PS 1 12 June 2006 SEA Opening Plenary Rome, Italy, 12 June 2006.
1 CCSDS Security Working Group Fall 2010 Meeting October 2010 British Standards Institute London, UK Howard Weiss NASA/JPL.
Information Architecture WG: Report of the Winter 2007 Meeting January 20, 2007 Dan Crichton, Chair NASA/JPL.
Security WG: Report of the Fall 2008 Meeting DIN, Berlin Germany October 17, 2008 Howard Weiss NASA/JPL/SPARTA
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/PARSONS November 2014 BSI, London.
1 CCSDS Threat Document Discussion CCSDS Security Working Group Fall 2004 Meeting CNES, Toulouse FR Howard Weiss NASA/JPL/SPARTA
Information Architecture WG: Report of the Fall 2010 Meeting October 29, 2010 Dan Crichton, Chair Steve Hughes (presenting) NASA/JPL.
November MOIMS AREA PLENARY NAVIGATION WG REPORT November 2004 CONSULTATIVE COMMITTEE FOR SPACE DATA SYSTEMS.
10-Dec-2012-cesg-1 Keith Scott (AD) Dai Stanton (DAD) SPACE INTERNETWORKING SERVICES (SIS) AREA REPORT.
Security WG: Report of the Spring 2005 Meeting April 14, 2004 Howard Weiss.
Information Architecture WG: Report of the Spring 2004 Meeting May 13, 2004 Dan Crichton, NASA/JPL.
1 SecWG New Business Discussions CCSDS CNES, Toulouse FR Howard Weiss NASA/JPL/SPARTA November 2004.
Cesg-1 22 October 2008 Bob Durst (AD) Dai Stanton (DAD) SPACE INTERNETWORKING SERVICES (SIS) AREA.
Security WG: Status Briefing Noordwijkerhout, The Netherlands) 31 March 2014 Howard Weiss NASA/JPL/PARSONS
Delta-DOR WG: Report of the Spring 2010 Meeting Portsmouth, VA, USA May 7 th, 2010 Roberto Maddè ESA/ESOC,
Information Architecture WG: Report of the Spring 2006 Meeting June 16, 2006 Dan Crichton, Chair NASA/JPL.
Apr12-cesg-1 Chris Taylor (AD) Stuart Fowell (DAD) SPACECRAFT ONBOARD INTERFACES SERVICES (SOIS) AREA.
Information Architecture WG: Report of the Fall 2005 Meeting September 16, 2005 Dan Crichton, Chair NASA/JPL.
Apr SLS-SLP WG Goal: Progress TM, AOS Space Data Link Protocol Pink Sheets to Blue (OID frame)* Hold due to FSH/Insert Zone/Security discussion.
Security WG: Report of the Spring 2008 Meeting Marriott Courtyard Crystal City, VA March 14, 2008 Howard Weiss NASA/JPL/SPARTA
Security WG: Report of the Spring 2010 Meeting Renaissance Hotel Portsmouth, VA May 7, 2010 Howard Weiss NASA/JPL/Cobham
Security WG: Report of the Spring 2012 Meeting European Space Operations Centre Darmstadt, Germany 19 April, 2012 Howard Weiss NASA/JPL/SPARTA
Cesg-1 28 April October 2008 Bob Durst (AD) Dai Stanton (DAD) SPACE INTERNETWORKING SERVICES (SIS) AREA.
November SECURITY WORKING GROUP REPORT November 2004.
Information Architecture BOF: Report of the Fall 2003 Meeting October 28, 2003 Dan Crichton, NASA/JPL.
Information Architecture WG: Report of the Spring 2005 Meeting April 14, 2005 Steve Hughes, NASA/JPL.
1 CCSDS Security Working Group Spring 2014 Meeting 31 March – 1 April 2014 Noordwijkerhout, The Netherlands Howard Weiss NASA/JPL/PARSONS* Identity crisis:
1 Document Status CCSDS Security Working Group March 2008.
SM&C WG Plenary CCSDS Spacecraft Monitoring & Control WG (SM&C) Workshop #17, Darmstadt (D), Apr 2012 Mario Merri, ESA/ESOC, Chairman.
1 CCSDS Security Working Group Spring 2011 Meeting May 2011 Deutsches Institut für Normung (DIN) Berlin, Germany Howard Weiss NASA/JPL.
May SPACE LINK AREA MID-TERM REPORT SUMMARY TECHNICAL STATUS 1.DATA COMPRESSION WG Goal : specify an image compression algorithm fulfilling identified.
Security WG: Report of the Fall 2004 Meeting November 19, 2004 Howard Weiss.
1 CCSDS Security Working Group Fall 2011 Meeting 1-2 November 2011 University of Colorado Boulder, Colorado USA Howard Weiss NASA/JPL.
Security WG: Report of the Fall 2015 Meeting ESA/ESOC, Darmstadt DE 12 November 2015 Howard Weiss NASA/JPL/PARSONS
Security WG: Status Briefing BSI, London UK 10 November 2014 Howard Weiss NASA/JPL/PARSONS
Security WG: Report of the Spring 2014 Meeting NH Hotel Leeuwenhorst Noordwijkerhout, The Netherlands 3 April 2014 Howard Weiss NASA/JPL/PARSONS
Systems Architecture WG: Report of the Spring 2005 Meeting April 14, 2005 Takahiro Yamada, JAXA/ISAS.
Security WG: Report of the Fall 2003 Meeting October 28, 2003 Howard Weiss, NASA/JPL/SPARTA.
Information Architecture WG: Report of the Fall 2004 Meeting November 16th, 2004 Dan Crichton, NASA/JPL.
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/Cobham (Parsons) October 2011.
Security WG: Report of the Spring 2013 Meeting Bordeaux, France 18 April, 2013 Howard Weiss NASA/JPL/PARSONS skype:
Security WG: Report of the Spring 2004 Meeting May 13, 2004 Howard Weiss, NASA/JPL/SPARTA.
Security WG: Report of the Spring 2006 Meeting Rome, Italy June 16, 2006 Howard Weiss NASA/JPL/SPARTA
Security WG: Status Briefing Cleveland, Ohio USA 15 October, 2012 Howard Weiss NASA/JPL/SPARTA skype: hsweiss.
KM SDLS Extended Procedures YB
The CCSDS Security WG is chartered to:
Security WG: Status Briefing
Security WG: Report of the Fall 2005 Meeting
CCSDS Systems Engineering Area: Security Working Group
Security WG: Report of the Spring 2016 Meeting
Space Communication Cross Support Architecture WG
Security WG: Report of the Fall 2013 Meeting
Delta-DOR WG: Report of the Fall 2010 Meeting
Presentation transcript:

Security WG: Report of the Spring 2015 Meeting Caltech, Pasadena CA USA 27 March 2015 Howard Weiss NASA/JPL/PARSONS

Meeting Agenda 23 March 2015 – 08:45 – 09:45: CCSDS Plenary (Beckman Institute) – 09:45 – 10:45: Systems Engineering Area (SEA) Plenary (Baxter 33) – 13:30 – 17:30: Security WG (Baxter 33) – Welcome, introductions, logistics, agenda review – Review results of Fall 2014 (London) meeting – Status of documents, action items – Future work areas for CWE Framework – Charter review (if required) – Review the new programs list (all) – CCSDS Credentials (Shames/Weiss, all) – Federation – Cloud Testing (all) – Threat book revision review (Weiss) – ESA Secure Software Development (Fischer) – Working Group Dinner

Meeting Agenda (cont) 24 March 2015 (08:45 – 17:30) (Baxter 303) – Network Layer Security » IPsec Testing + Yellow Book Status (Sheehe/Airaud) » Network layer security for non-IP environments (Fischer/Aguilar- Sanchez) – Key Management Blue Book (Fischer/Aguilar-Sanchez) » KM for SDLS extended procedures (Fisher) » KM Green Book – Link Layer Security Update Discussion (Biggerstaff/Weiss/Aguilar- Sanchez) – Role-based authentication (FIPS 140) (Biggerstaff) – Proposed new areas of work – continuation of discussions – Other areas of discussion 25 March 2015 – 08:45-17:30: Space Data Link Security WG (Dabney 110) 26 March 2015 – 08:45-17:30: Space Data Link Security WG (Dabney 110) 27 November 2014 – 08:45-12:30: DTN Security (Baxter 127) – 16:00-17:30: SEA Wrap-up Plenary (room 504)

Attendance NameOrganization Address Howard Weiss Gordon BlackUK Space Daniel Ignacio Chuck Dorothea Julian Mike Brandon Craig

Executive Summary  Attendees from UK Space Agency, ESA/ESTEC, ESA/ESOC, DLR, CNES, NASA/GRC, NASA/GSFC, NASA/JSC, and NASA/JPL.  A minor change will be made to the WG charter to remove references to the Common Criteria.  We revisited our London discussion on SecWG future programs and edited and adjusted the previous list. Elevated “credentials” work as #1 new work item.  Reviewed action items from London. Carrying several forward and all others were completed.  Discussed cloud-based testing environment architectures and potential issues surrounding its use.  Reviewed ESA Secure Software Initiative.  Reviewed revision of Threat GB. Minor changes. Plan is to incorporate the final changes, send it out for final WG call, and then submit for publication.  Reviewed Network Layer Security adaption profile testing. Testing is near completion.  Discussed Key Management and the SDLS key management “extended procedures” documents. The WG has decided that the SecWG KM BB should be changed to a KM MB.  Discussed role-based access controls (FIPS 140-2) application to space.  Discussed DTN Security plans and the streamlined Bundle Security Protocol at DTN meeting.  SDLS Red-4 document ready to progress to publication.

Summary of Goals and Deliverables 1. Revised future SecWG programs list and elevated “credentials” program to #1. 2. KM will be changed in CWE from Blue to Magenta Book. SDLS KM document will be a BB (specifics from the SecWG doc) 3. Threat Green Book revision almost complete. 4. NASA/GRC and CNES Network Layer Security testing is completing. 5. SDLS Protocol Red-4 book ready for publication. 6. Engaged with DTN WG on DTN security. 7. Discussed issues surrounding cloud computing testing environment.

SEA Area MID-TERM REPORT SUMMARY TECHNICAL STATUS 1.Security WG Goal: Working Status: Active _X_ Idle ____ Summary progress: documents actively being produced: Key Management MB, Threat GB revision, Network Layer BB. All docs green. Progress since last meeting: threat GB rev, network layer security testing, KM MB progress. Problems and Issues: None status:OKCAUTIONPROBLEM Comment: Working Group is advancing and producing good products. Docs OK.

Near-Term Schedule DeliverableMilestoneDate Key Management Magenta Book Continue drafting next revision11/15 Network Layer Profile Completed per testing results feedback Threat Document Revision 5 rd revised draft05/15 Network Layer Yellow Book Final05/15

Future Work Areas  (1) Credentials (2016)  Certificate management  (2) Secure Software GB (2016) (date TBR)  (3) Network layer over space packets (2017)  (4) Application layer security (protecting the app layer):  TLS; (2018)  providing security services via the application layer (KM, etc) eg., SM&C MOS (mission operation services). (2020)  Link layer security for future unified space link protocol (migration of SDLS). (2025)  SDLS Extended Procedures Green Book (2017)  SDLS Extended Procedures Yellow Book (2016)  Network Layer (IP) Security Green Book  DTN Security

Open Issues  See next slide:

Resolutions to be Sent to CESG and Then to CMC  Resolution: The SecWG will be actively engaged in the review of all Red Books:  Levels of involvement range from cursory examination of the Red Books under development, to active involvement in the development of the books. Response: AD will provide docs to the WG for review in parallel with AD review.  Resolution: All CCSDS document editors will reach out, early in the development of the book to the SecWG to reduce downstream security issues. Response: AD will provide “pointers” to WGs for SecWG  Resolution: Security shall be addressed in all new project initiations. All new projects should consider the extent to which security is relevant. Considerations will be documented in the project initiation request. Response: AD forwards new projects definitions to SecWG to analyze security implications & to work with the initiating WG.

Action Items Item NumberAction Item:Assigned to:Date Due: SecWG0315:1Investigate if optical comm WG is addressing security Howard Weiss04/01/15 SecWG0315:2Remove Common Criteria reference from WG Charter and investigate what we meant by item #7 Howard Weiss04/25/15 SecWG0315:3Decide/investigate if a network layer security green book is needed and if GRC and CNES are authorized to write it. Chuck Sheehe, Julian Airaud 05/01/15 SecWG0315:4Open a new work item – credentials. Write white book and investigate which members of the WG will work on program. Howard Weiss05/01/15 SecWG0315:5Investigate when to start work on the Software Security program within the SecWG Daniel Fischer04/01/15 SecWG0315:6Write white paper on cloud testing for CCSDS (architecture, cloud computing issues, etc) [also action item for SDLS] Brandon Bailey07/01/15 SecWG0315:7Investigate Agency issues/sensitivities with cloud computing at ESA and CNES Daniel Fischer, Julian Airaud 09/01/15

Action Items Item NumberAction Item:Assigned to:Date Due: SecWG0315:8Revise Threat GB per WG comments, send out for last call. Howard Weiss06/01/15 SecWG0315:9Update CWE entry to change KM from Blue to Magenta book Howard Weiss04/15/15 SecWG0315:10Update the KM “magenta” bookDaniel Fisher10/15/15 SecWG0315:11Follow-up with Peter Shames re: WG resolutions from Noorwijk – feedback? Howard Weiss03/30/15

Resource Problems  Resources had been adequate to perform the current tasks although personnel have only limited time percentage to apply to CCSDS tasks.

Risk Management Update  Must ensure that the current trend of additional resources remains and that resources don’t shrink.

Cross Area WG / BOF Issues  Joint meeting with Space Data Link Security (SDLS) WG  Joint meeting with Disruption Tolerant Networking (DTN) WG

New Working Items, New BOFs, etc.  Credentials.