Rutger Coolen, TNC 2005 Collaborative network monitoring for NREN’s Use cases for LOBSTER.

Slides:



Advertisements
Similar presentations
The WINSS School Improvement Planning Tool: An Overview.
Advertisements

1© Copyright 2011 EMC Corporation. All rights reserved. Anatomy of an Attack.
Arrow color indicates specific subset of Security Service Desk Common Backplane API. is DC Backplane API impledmented by the Backplane Services. Devices.
Connect. Communicate. Collaborate NTUA/GRNET Interdomain SLAs Enforcement Framework in Real QoS-Enabled Networks C. Marinos, A. Polyrakis, V. Pouli, M.
Evidence based policy making Seminar FP7 Work Programme December 2010, Paris, Université Paris Dauphine Maria Geronymaki DG INFSO.H.2 ICT for.
Telecom Italia GRID activities for 6th FP Program Maurizio Cecchi 3/4 October 2002.
1 Chin Guok ESnet Network Engineer David Robertson DSD Computer Software Engineer Lawrence Berkeley National Laboratory.
Traffic Engineering With Traditional IP Routing Protocols
6th Biennial Ptolemy Miniconference Berkeley, CA May 12, 2005 Distributed Computing in Kepler Ilkay Altintas Lead, Scientific Workflow Automation Technologies.
Introduction and Overview “the grid” – a proposed distributed computing infrastructure for advanced science and engineering. Purpose: grid concept is motivated.
1 Arja Kuula, Development Manager, Finnish Social Science Data Archive, University of Tampere Ethics Review in Finland IASSIST conference 2010 Cornell.
Massive Data Analysis Lab (MassDAL) S. Muthukrishnan CS Dept.
VoIP and IP conferencing over satellites Workshop on VoIP Technology: Research and Standards for reliable applications PIMRC 08, Cannes France 15 September.
Connect. Communicate. Collaborate The Technological Landscape of GÉANT2 Roberto Sabatino, DANTE
Critical Emerging Network-Centric Applications Tele-control/tele-presence Defense Tele-medicine Remote plane/vehicle/robot control Distance learning Real-time.
Don Von Dollen Senior Program Manager, Data Integration & Communications Grid Interop December 4, 2012 A Utility Standards and Technology Adoption Framework.
Creating the global research village The GEANT & NREN Service Set Toby Young – GEANT Service coordinator TF-MSP - 11 Feb Vienna.
GEANT Performance Monitoring Infrastructure – Joint Techs meeting July Nicolas Simar GEANT’s Performance Monitoring.
GN2 Performance Monitoring & Management : AA Needs – Nicolas Simar - 2 nd AA Workshop Nov 2003 Malaga, Spain GN2 Performance Monitoring & Management.
AARC Overview Licia Florio, David Groep 21 Jan 2015 presented by David Groep, Nikhef.
Evangelos Markatos, FORTH Network Monitoring for Performance and Security The LOBSTER project Evangelos.
Performance Monitoring - Internet2 Member Meeting -- Nicolas Simar Performance Monitoring Internet2 Member Meeting, Indianapolis.
Rwanda GovNet Xuan Pan Nkusi Issa Claude Hakizimana Joakim Slettengren Innocent Nkurunziza Xuan Pan Nkusi Issa Claude Hakizimana Joakim Slettengren Innocent.
A Model for Improving Operations through Archived Data 2005 ITS America Annual Meeting Mark Carter – SAIC Robert Haas - SAIC May 2 nd, 2005 i Florida’s.
The University of Bolton School of Games Computing & Creative Technologies LCT2516 Network Architecture CCNA Exploration LAN Switching and Wireless Chapter.
Networks ∙ Services ∙ People Mandeep Saini TF-MSP, Espoo, Finland Service Delivery and Adoption 10 th Sep 2015 Task Leader, GN4-1 SA7 T3.
IHRIS: Open Source Health Workforce Information Systems Pilot Project Name Event Location - Date.
The Monitoring and Measurement System in EuQoS project Andrzej Beben Warsaw University of Technology, Poland.
Smart Protection Network Kelvin Liu AVP, Core Tech Development.
WebEx Cloud Connected Audio Enterprise
DataTAG Research and Technological Development for a Transatlantic Grid Abstract Several major international Grid development projects are underway at.
ATTRACT – From Open Science to Open Innovation Information Sharing Meeting Brussels, June 19, 2014 Markus Nordberg (CERN) Development and Innovation Unit.
Connect. Communicate. Collaborate Implementing Multi-Domain Monitoring Services for European Research Networks Szymon Trocha, PSNC A. Hanemann, L. Kudarimoti,
Connect communicate collaborate GÉANT3 Services Connectivity and Monitoring Services by and for NRENs Ann Harding, SWITCH TNC 2010.
This document produced by Members of the Helix Nebula Partners and Consortium is licensed under a Creative Commons Attribution 3.0 Unported License. Permissions.
DoS attacks on transit network - David Harmelin ( ) Denial of Service attacks on transit networks David Harmelin DANTE.
Connect. Communicate. Collaborate BANDWIDTH-ON-DEMAND SYSTEM CASE-STUDY BASED ON GN2 PROJECT EXPERIENCES Radosław Krzywania (speaker) PSNC Mauro Campanella.
Automatic Detection of Emerging Threats to Computer Networks Andre McDonald.
Lesson 11: Configuring and Maintaining Network Security
1 DNSMON DNS Server Monitoring RIPE NCC 3 December 2015.
Connect. Communicate. Collaborate AAI scenario: How AutoBAHN system will use the eduGAIN federation for Authentication and Authorization Simon Muyal,
How we work as a national CERT in China ZHOU Yonglin CNCERT/CC, China 2 Addressing security challenges on a global scaleGeneva, 6-7 December 2010.
LOBSTER: Large Scale Monitoring of Broadband Internet Infrastructure Evangelos Markatos The LOBSTER Consortium Institute.
EGEE is a project funded by the European Union under contract IST Network Resources Provision Jean-Paul Gautier SA2 manager Cork meeting,
Connect. Communicate. Collaborate The Security Model of GÉANT2: A Co-operative Approach Christoph Graf, SWITCH TNC’07, Lyngby, 22 May 2007.
Internet2 Abilene & REN-ISAC Arbor Networks Peakflow SP Identification and Response to DoS Joint Techs Winter 2006 Albuquerque Doug Pearson.
Connect. Communicate. Collaborate GN2 Activities and the LOBSTER Project Nicolas Simar, DANTE TNC 2005, Poznan, June 2005.
Connect. Communicate. Collaborate mcview – A tool for visualising and debugging multicast Stig Venaas, UNINETT TNC 2008, Bruges, May 21 st.
Javier Orellana JRA4 Coordinator Face to Face Partners Meeting University College London 11 December 2003 EGEE is proposed as a project funded by the European.
Connect communicate collaborate GÉANT - The GN3 Project Goals - Challenges - Vision Hans Döbbeling, DANTE TNC 2009, Malaga,
IS3220 Information Technology Infrastructure Security
Connect. Communicate. Collaborate educonf Coordinated support of European videoconferencing under the GN2 SA6 framework Dimitris Daskopoulos, GRNET, AUTH.
Introduction of An Engineering Project for KOREN/APII Seung-Joon Seok Korea University.
By Steve Shenfield COSC 480.  Definition  Incidents  Damages  Defense Mechanisms Firewalls/Switches/Routers Routing Techniques (Blackholing/Sinkholing)
Connect communicate collaborate perfSONAR MDM News Domenico Vicinanza DANTE (UK)
INFSO-RI Enabling Grids for E-sciencE Network Services Development Network Resource Provision 3 rd EGEE Conference, Athens, 20 th.
1 Network related topics Bartosz Belter, Wojbor Bogacki, Marcin Garstka, Maciej Głowiak, Radosław Krzywania, Roman Łapacz FABRIC meeting Poznań, 25 September.
INFSO-RI Enabling Grids for E-sciencE Diagnostic Tool Brainstorming Ratnadeep Abrol EGEE JRA4 F2F, DANTE, Cambridge 9 th May 2005.
Javier Orellana EGEE-JRA4 Coordinator CERN March 2004 EGEE is proposed as a project funded by the European Union under contract IST Network.
AMSA TO 4 Advanced Technology for Sensor Clouds 09 May 2012 Anabas Inc. Indiana University.
Making the future happen Some remarks from the perspective of the Reykjavik-Group Chair full report:
أمن المعلومات لـ أ. عبدالرحمن محجوب حمد mtc.edu.sd أمن المعلومات Information Security أمن المعلومات Information Security  أ. عبدالرحمن محجوب  Lec (5)
Bob Jones EGEE Technical Director
GENUS Virtualisation Service for GÉANT and European NRENs
Establishing End-to-End Guaranteed Bandwidth Network Paths Across Multiple Administrative Domains The DOE-funded TeraPaths project at Brookhaven National.
RINGrid project use case survey
Cyber attacks on Democratic processes
Nettest An implementation of BEREC’s recommendations
IS4680 Security Auditing for Compliance
GN2 (and its support for GRIDs)
Presentation transcript:

Rutger Coolen, TNC 2005 Collaborative network monitoring for NREN’s Use cases for LOBSTER

TNC 2005Rutger Coolen 2 Agenda LOBSTER Viewpoints and Actors Use cases - Approach 2 example use cases for LOBSTER Your input Current Status

TNC 2005Rutger Coolen 3 Viewpoints on LOBSTER Project viewpoint LOBSTER is a “Specific Support Action” project under EU FP6 Infrastructure viewpoint The LOBSTER project realises a pilot infrastructure for advanced network monitoring Community viewpoint The owners and users of the LOBSTER infrastructure co-operate in a community

TNC 2005Rutger Coolen 4 Overview of the actors LOBSTER community LOBSTER primarily aims at NREN’s and secondarily at ISP’s Other potential users Customers of NREN’s and ISP’s, including researchers Government / policy-makers

TNC 2005Rutger Coolen 5 LOBSTER Viewpoints and Actors Use cases - Approach 2 example use cases for LOBSTER Your input & Current Status

TNC 2005Rutger Coolen 6 Use Cases What use-cases are: Applications of the LOBSTER infrastructure What use-cases are used for: To demonstrate the benefits of LOBSTER To derive requirements for the LOBSTER infrastructure What use-cases are not: The (business) case for joining LOBSTER

TNC 2005Rutger Coolen 7 Use Cases Inclusion of LOBSTER characteristics Multiple domains Advanced monitoring High Speed Privacy Co-operation between NREN’s Interdomain problems Beyond state-of-the-art monitoring capabilities Distributed sensors Confidentiality reqs Privacy legislation Anonymisation Advanced Hardware Useful for advanced NREN & GN2 networks Benefits for users

TNC 2005Rutger Coolen 8 Use Cases Approach Basic Use-Case Template: Structuring Use-Cases with Goals, Alistair Cockburn USE CASE # Goal in Context Scope & Level Preconditions Success End Condition Failed End Condition Primary, Secondary Actors Trigger DESCRIPTIONStepAction 1 2 EXTENSIONSStepBranching Action 1a : SUB-VARIATIONSBranching Action 1

TNC 2005Rutger Coolen 9 LOBSTER Viewpoints and Actors Use cases - Approach 2 example use cases for LOBSTER Your input & Current Status

TNC 2005Rutger Coolen 10 CSIRT analysis Use Case 1a - Collaborative Worm Detection 1. On detection of a worm a signature is distributed MP NREN x NREN 2 NREN 1 MP Measurement Point, or Monitoring Sensor

TNC 2005Rutger Coolen 11 Use Case 1a - Collaborative Worm Detection 2. LOBSTER measurement points collect worm sources Measurement Point Worm list SourceCustomer Univ R&D Univ.2… copy of traffic

TNC 2005Rutger Coolen 12 Use Case 1a - Collaborative Worm Detection 3a. Incident Response Team takes actions Block sources, or route to special web-site … Access Router for Customers Worm Source IP’s Customer X Measurement Point to customers (1) (2)

TNC 2005Rutger Coolen 13 Use Case 1b - Worm Impact Statistics 3b. Anonymous data is combined in an overall picture NREN 2 NREN 1 MP Anonymous worm counts NREN 1 Anonymous worm counts NREN 2

TNC 2005Rutger Coolen 14 Use Case 2a – Advanced Services Monitoring 1. Inter- and intradomain call set-up and data-streams NREN x NREN 2 NREN 1 Interdomain Voice-over-IP Intradomain Voice-over-IP Interdomain Video Conferencing

TNC 2005Rutger Coolen 15 Use Case 2a – Advanced Services Monitoring 2. A user monitor’s the key parameters NREN 2 NREN 1 MP Intradomain MP Ingress/ egress (Partial) raw data from other NREN

TNC 2005Rutger Coolen 16 Use Case 2a – Advanced Services Monitoring 3. Summary of advanced services parameters NREN 2 NREN 1 MP NREN1NRENx NREN calls/day 1.12 Tb data/day Avg. MOS = 4.12 NRENx… - Advanced Services Summary Advanced Services Summary

TNC 2005Rutger Coolen 17 Use Cases Overview of primary actors per case CaseNRENISPCustomersPolicy- makers Security Collaborative Worm Detection (case 1a) Statistical Worm Impact Statistics Statistics (case 1b) Performance measurement Advanced Services Monitoring Quality Measurement (case 2b) Network Planning Advanced Services Monitoring Traffic overview (case 2a)

TNC 2005Rutger Coolen 18 More use cases… Security incident response Spyware detection Denial-of-Service attack: control traffic detection Backdoor detection Performance measurement Delay sensitive grid computing On-line (educational) games Network traffic characterisation Peer-to-peer applications Services with dynamic ports

TNC 2005Rutger Coolen 19 LOBSTER Viewpoints and Actors Use cases - Approach 2 example use cases for LOBSTER Your input & Current Status

TNC 2005Rutger Coolen 20 Your Input: questions or remarks Reaction on use cases Requirements for the infrastructure or community

TNC 2005Rutger Coolen 21 Current status Implementation of pilot infrastructure by the LOBSTER consortium Initial community with Forthnet, Uninett, and Cesnet in 2005 Establishing relation with Geant2/ JRA-1 You are invited to join our efforts and become a pilot user!

TNC 2005Rutger Coolen 22 Thank you