I n t e g r i t y - S e r v i c e - E x c e l l e n c e Air Force Weather Agency FTP Replacement Briefing 08 Sep 06.

Slides:



Advertisements
Similar presentations
Roadmap for Sourcing Decision Review Board (DRB)
Advertisements

IT Web Application Audit Principles Presented by: James Ritchie, CISA, CISSP….
NAVY FTP POLICY September 06 CDR Dave Pashkevich CNMOC N64.
Software as a Service Tradeoff Considerations Cost Effective or Liability? Authored and Presented By: Gordon F. Jones
Systems Analysis and Design in a Changing World
Effects of restricting ports 20/21 on DoD Networks and Information Transfer Operations Fall COPC 2007 Mr. Walter L. Coley, Jr. JAG/CCM Chair.
1 COPC Shared-Network Infrastructure Brief Prepared for: COPC Working Group for Cooperative Support and Backup (WG/CSAB) October 21 and 22, 2008 Meetings.
I n t e g r i t y - S e r v i c e - E x c e l l e n c e Air Force Weather Agency Standardizing U.S. Federal Weather XML/Web Services Mr. Michael Howland.
App-ID Ad-Hoc Technical Issues TP AppID R02 Group Name: App-ID Ad-Hoc Group Source: Darold Hemphill, iconectiv,
HR/Payroll Modernization Update
DITSCAP Phase 2 - Verification Pramod Jampala Christopher Swenson.
User Services. Services Desktop Support Technical Support Help Desk User Services Customer Relationship Management.
Chad V. Seely Assistant General Counsel Tab 6.2: User Fee – Digital Certificate Fee Finance & Audit Committee Meeting ERCOT Public November 12, 2012.
This chapter is extracted from Sommerville’s slides. Text book chapter
Web Development Process Description
1 NETE4631 Mobile Cloud Computing Lecture Notes #10.
Providing Access to Your Data: Rights Robert R. Downs, PhD NASA Socioeconomic Data and Applications Center (SEDAC) Center for International Earth Science.
 To explain the importance of software configuration management (CM)  To describe key CM activities namely CM planning, change management, version management.
Feasibility Study.
ITEC 275 Computer Networks – Switching, Routing, and WANs Week 12 Chapter 14 Robert D’Andrea Some slides provide by Priscilla Oppenheimer and used with.
JAG/CCM Update COPC Spring 2006 Mr. Walter Coley JAG/CCM Chairman Distribution Authorized to U.S. Government Agencies and their Contractors only.
Directory and File transfer Services By Jothi. Two key resources Lightweight Directory Access Protocol (LDAP) File Transfer protocol Secure file transfer.
Chapter 14 Part II: Architectural Adaptation BY: AARON MCKAY.
Allan Darling Deputy Director, NCEP Central Operations NOAA NWS NCEP
1 NUOPC National Unified Operational Prediction Capability 1 Review Committee for Operational Processing Centers National Unified Operational Prediction.
NAVY UTN-P & FTP POLICY UPDATE 16 April 07 CDR Dave Pashkevich CNMOC N64.
Online Friends’ Community Presented by: Stuart Monaghan HND in Computing th May 2002.
1 RMS Task Force on Retail Market Customer/ESI Transition October 16, 2003.
JAG/ODAA Fall 2008 James Vermeulen & Jon Whiteside JAG-ODAA Co-Chairs Recommend NCEP's Bradley Ballish replace Jon Whiteside (term completed)
PIC.edu Survey Review Internet2 Presence & Integrated Communications Working Group Fall Member Meeting, 2007.
ITCD Project List as of 8/27/ # PROJECT NAME PROJECT OVERVIEW Alignment to ITCD Strategic Goal(s) Expected Project Completion Projects Not Started.
Ali Pabrai, CISSP, CSCS ecfirst, chairman & ceo Preparing for a HIPAA Security Audit.
RMS Update to TAC January 8, Voting Items From RMS meeting on 12/10/2008  RMGRR069: Texas SET Retail Market Guide Clean-up – Section 7: Historical.
Jewuan Davis DSN Voice Connection Approval Office 18 May 2006 DSN Connection Approval Process (CAP)
Data Communications and Computer Networks Chapter 2 CS 3830 Lecture 8 Omar Meqdadi Department of Computer Science and Software Engineering University of.
Planning an Information Systems Project A Toolkit to help ICT and global health professionals communicate Kate Wilson September 19, 2013.
BASIC INTERNET PROTOCOLS: http, ftp, telnet. Mirela Walczak.
Module 5: Designing Security for Internal Networks.
1 Network Firewalls CSCI Web Security Spring 2003 Presented By Yasir Zahur.
Providing Access to Your Data: Rights Robert R. Downs, PhD NASA Socioeconomic Data and Applications Center (SEDAC) Center for International Earth Science.
Maritime Arrivals Reporting System Tom Watson Travellers and Vessels September 2015 Biosecurity Information Sessions 2015 Note: Content of presentation.
DoD Network Initiatives CEISC 13 Apr 2006 Mr. Walter Coley Ms. Kathy Cotton AFWA/SCM Distribution Authorized to U.S. Government Agencies and their Contractors.
Fleet Numerical… Atmospheric & Oceanographic Prediction Enabling Fleet Safety and Decision Superiority… Fleet Numerical Meteorology & Oceanography Center.
Internet Overview (Chapter 1 in [2]). 2 Outline History of the Internet History of the Internet Seven Layers of the OSI Model Seven Layers of the OSI.
1 Chapter 12 Configuration management This chapter is extracted from Sommerville’s slides. Text book chapter 29 1.
Secure FTP implementation on DATMS-U Walter L. Coley, Jr JAG/CCM.
1 Project Management C13PM Session 2 Project Initiation & Definition Russell Taylor Business Department Staff Workroom
ESPC CIP Update November 7, COPC Action Item  NESDIS is currently in the process of reviewing and planning upgrades for the critical infrastructure.
15 Apr RoN meetingResource Brokering and Modeling Jeroen van der Ham & Paola Grosso UvA - AIR group
Planning & Scheduling a Production Activity BRITA LYONS HEGARTY, MARKET KNOWHOW 16 TH NOVEMBER 2015 TRADEIT: SMART USE OF ITWORKSHOP.
SSH. 2 SSH – Secure Shell SSH is a cryptographic protocol – Implemented in software originally for remote login applications – One most popular software.
ITEC 275 Computer Networks – Switching, Routing, and WANs Week 12 Chapter 14 Robert D’Andrea Some slides provide by Priscilla Oppenheimer and used with.
Cornell Information Technologies Information Systems/Data Delivery ACTUATE RETIREMENT PROJECT ASPC UPDATE 12/7/06 Objectives Primary - Retire Actuate Reduce.
Business Continuity Planning 101
ITEC 275 Computer Networks – Switching, Routing, and WANs
Performing Risk Analysis and Testing: Outsource or In-house
App-ID Ad-Hoc Technical Issues TP AppID R02
2017/18 SIP Request Process September 2016.
Web Development Web Servers.
Overview – SOE PatchTT December 2013.
Get the Most Out of GoAnywhere: Agents
Working at a Small-to-Medium Business or ISP – Chapter 7
2 Selecting a Healthcare Information System.
Working at a Small-to-Medium Business or ISP – Chapter 7
CYB 100 Competitive Success/snaptutorial.com
Working at a Small-to-Medium Business or ISP – Chapter 7
Unit 5 – eProject – Starting to look at projects Unit 5
BTEC level 3 Learning Aim D.
<Your Team # > Your Team Name Here
{Project Name} Organizational Chart, Roles and Responsibilities
Presentation transcript:

I n t e g r i t y - S e r v i c e - E x c e l l e n c e Air Force Weather Agency FTP Replacement Briefing 08 Sep 06

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 2 FTP Replacement  Description: Replace FTP for all traffic outside.mil domain  Requirements Documents:  - DoDI , Ports, Protocols, and Services Management  - DSAWG FTP Vulnerability Assessment, updated 13 Sep 05  - Air Force Weather Security Classification Guide, 1 May 2004  - AFI v1, Network and Computer Security  - AFI , Transmission Security   Briefing Objectives: Inform OFCM CEISC of encryption requirement and change to SFTP Presentation for CCB, 16 Aug 06

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 3 Background  On 9 Nov 04, JTF-GNO stated File Transfer Protocol (FTP) ports 20 and 21 would cease transferring data between DoD enclaves (.mil) and non-DoD enclaves (.edu,.com,.gov,.org, etc.) effective 9 Nov 06  AFCA clearly stated that any replacement product used must be FIPS certified  AFWA has standing requirement to encrypt all data sent outside DoD channels  The AFWA formed a working group in May 06 dedicated to finding an FTP replacement for the Strategic Center and our customers

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 4 Analysis  The following criteria were considered in evaluating the open source version and commercial version (Tectia) of SFTP:  FIPS compliance  Performance  Ports and protocols compliance  Ease of Integration  Interoperability  Cost  Maintainability

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 5 Analysis (cont.)  A standards-based solution makes interoperability highly likely between open source and all commercial products use the same standard  Since SFTP appears to the user (at a command line or scripting level) to be an FTP clone, it would be simple to integrate as an FTP replacement  Software cost was not quantified.  Note: In addition to Tectia, there are many commercial SFTP products providing competition in the market for this standard solution. The working group only evaluated Tectia and free open source version.

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 6 Performance  SFTP typically incurred about a 10-30% performance penalty, depending on the combination of SFTP versions in use  Some clients with relatively inefficient native FTP performance (e.g. Solaris 8) experienced a performance increase using SFTP  Conclusion: Based on performance, SFTP is a reasonable choice for encrypted secure file transfer

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 7 Risks  Risk: Customers can’t comply with SFTP  Description: Non-.mil customers unable to transition to SFTP will cease send/receipt of data from AFWA  Mitigation: Assumption - Register all customers unable to meet deadline with AFNOSC and DSAWG. Registration must include a “get well” plan.

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 8 Risks NCEP Global ensemble data not available for development AGROMET pushed to NCEP DMZ may be discontinued FNMOC May not be able to easily implement SFTP (researching).COM,.EDU May not easily be able to implement open source or commercial product

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 9 DATMS-U No impacts expected as DATMS-U is considered part of the DoD network

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 10 Identified FTP Comms POCs reached are detailed in the Excel spreadsheet: Update FTP users contacted.xls Review and update of listed POCs by member agencies requested Issues to be identified after 09 Nov 06 SFTP testing period begins

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 11 Implementation Timeline SFTP available for limited use by AFWA 9 November Projected WARNORD issued by Air Staff no earlier than January 2007 WARNORD +90: FTP cut-off date Implementation schedule from WARNORD to cut-off date TBD

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 12 Recommendation Recommend CEISC member agencies review FTP communications to identify any additional data feeds between them and DoD and provide a POC to coordinate resolution NLT 30 Sep 06

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 13 SFTP Questions?

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 14 SFTP BACK-UP SLIDES

I n t e g r i t y - S e r v i c e - E x c e l l e n c e 15 Performance