Security WG: Report of the Spring 2008 Meeting Marriott Courtyard Crystal City, VA March 14, 2008 Howard Weiss NASA/JPL/SPARTA +1-443-430-8089.

Slides:



Advertisements
Similar presentations
November SLS RFM and RNG REPORT 18 November 2004.
Advertisements

1 CCSDS Security Working Group Fall 2008 Meeting October 2008 Berlin Germany.
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/SPARTA (a Parsons Company) October.
PS 1 16 June 2006 SEA CESG SUMMARY Rome, Italy, 16 June 2006.
Security WG: Report of the Winter 2007 Meeting Colorado Springs, CO USA January 20, 2007 Howard Weiss NASA/JPL/SPARTA
Security WG: Report of the Spring 2015 Meeting Caltech, Pasadena CA USA 27 March 2015 Howard Weiss NASA/JPL/PARSONS
Sep 2003 CCSDS Navigation WG Progress Report MOIMS Meeting Oct 2003 CSC, Maryland, USA Felipe Flores-Amaya CCSDS Navigation WG.
1 Security Policy Framework & CCSDS Common Criteria Use CCSDS Security WG Fall 2005 Atlanta, GA USA Howard Weiss NASA/JPL/SPARTA
MOIMS Reportp. 1 Digital Repository Audit and Certification BOF Goal  Obtain CCSDS / ISO approval of a standard that establishes the criteria that a repository.
Symmetric Key Management Books Development Plan Daniel Fischer (ESA) Ignacio Aguilar Sanchez (ESA) CCSDS Spring Meeting 2010 | Portsmouth, VA.
Security WG: Report of the Fall 2014 Meeting BSI, London UK 14 November 2014 Howard Weiss NASA/JPL/PARSONS
1 26 October 2005 Space Internetworking Services Report to the CCSDS Management Council 26 October 2005 R. Durst, D. Stanton.
Delta-DOR SIG: Report of the Fall 2007 Meeting Heppenheim, Germany October 5th, 2007 Roberto Maddè ESA/ESOC
Security WG Status Review ESA European Space Operations Centre Darmstadt, Germany 16 April 2012 Howard Weiss NASA/JPL/SPARTA
Security WG: Report of the Fall 2005 Meeting Atlanta GA September 16, 2004 Howard Weiss NASA/JPL/SPARTA.
Cesg-1 SLS REPORT 7 May 2010 Jean-Luc Gerner (AD) Gilles Moury (DAD) SPACE LINK SERVICES (SLS) AREA SLP and NGU sections Only.
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/SPARTA (a Parsons Company) April.
PS 1 12 June 2006 SEA Opening Plenary Rome, Italy, 12 June 2006.
1 CCSDS Security Working Group Fall 2010 Meeting October 2010 British Standards Institute London, UK Howard Weiss NASA/JPL.
Information Architecture WG: Report of the Winter 2007 Meeting January 20, 2007 Dan Crichton, Chair NASA/JPL.
Security WG: Report of the Fall 2008 Meeting DIN, Berlin Germany October 17, 2008 Howard Weiss NASA/JPL/SPARTA
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/PARSONS November 2014 BSI, London.
1 CCSDS Threat Document Discussion CCSDS Security Working Group Fall 2004 Meeting CNES, Toulouse FR Howard Weiss NASA/JPL/SPARTA
Information Architecture WG: Report of the Fall 2010 Meeting October 29, 2010 Dan Crichton, Chair Steve Hughes (presenting) NASA/JPL.
November MOIMS AREA PLENARY NAVIGATION WG REPORT November 2004 CONSULTATIVE COMMITTEE FOR SPACE DATA SYSTEMS.
10-Dec-2012-cesg-1 Keith Scott (AD) Dai Stanton (DAD) SPACE INTERNETWORKING SERVICES (SIS) AREA REPORT.
May 2004 CCSDS Navigation WG Activity Report CCSDS Spring Series May 2004 CSA, Montreal, Canada Felipe Flores-Amaya CCSDS Navigation WG.
Security WG: Report of the Spring 2005 Meeting April 14, 2004 Howard Weiss.
Information Architecture WG: Report of the Spring 2004 Meeting May 13, 2004 Dan Crichton, NASA/JPL.
1 SecWG New Business Discussions CCSDS CNES, Toulouse FR Howard Weiss NASA/JPL/SPARTA November 2004.
Cesg-1 22 October 2008 Bob Durst (AD) Dai Stanton (DAD) SPACE INTERNETWORKING SERVICES (SIS) AREA.
Security WG: Status Briefing Noordwijkerhout, The Netherlands) 31 March 2014 Howard Weiss NASA/JPL/PARSONS
Delta-DOR WG: Report of the Spring 2010 Meeting Portsmouth, VA, USA May 7 th, 2010 Roberto Maddè ESA/ESOC,
CCSDS march 2008 meeting – Crystal City 1 TC/TM space links security SEA / SLS cross area meeting.
Information Architecture WG: Report of the Spring 2006 Meeting June 16, 2006 Dan Crichton, Chair NASA/JPL.
1 24 January 2007 SIS Report to CESG/CMC 24 January 2007 R. Durst, D. Stanton.
Information Architecture WG: Report of the Fall 2005 Meeting September 16, 2005 Dan Crichton, Chair NASA/JPL.
1 Information Security Planning Guide CCSDS Security WG Spring 2005 Athens, GR Howard Weiss NASA/JPL/SPARTA April 2005.
Security WG: Report of the Spring 2010 Meeting Renaissance Hotel Portsmouth, VA May 7, 2010 Howard Weiss NASA/JPL/Cobham
Security WG: Report of the Spring 2012 Meeting European Space Operations Centre Darmstadt, Germany 19 April, 2012 Howard Weiss NASA/JPL/SPARTA
November SECURITY WORKING GROUP REPORT November 2004.
Information Architecture BOF: Report of the Fall 2003 Meeting October 28, 2003 Dan Crichton, NASA/JPL.
Information Architecture WG: Report of the Spring 2005 Meeting April 14, 2005 Steve Hughes, NASA/JPL.
1 CCSDS Security Working Group Spring 2014 Meeting 31 March – 1 April 2014 Noordwijkerhout, The Netherlands Howard Weiss NASA/JPL/PARSONS* Identity crisis:
1 Document Status CCSDS Security Working Group March 2008.
1 CCSDS Security Working Group January 25 Telecon.
SM&C WG Plenary CCSDS Spacecraft Monitoring & Control WG (SM&C) Workshop #17, Darmstadt (D), Apr 2012 Mario Merri, ESA/ESOC, Chairman.
1 CCSDS Security Working Group Spring 2011 Meeting May 2011 Deutsches Institut für Normung (DIN) Berlin, Germany Howard Weiss NASA/JPL.
May SPACE LINK AREA MID-TERM REPORT SUMMARY TECHNICAL STATUS 1.DATA COMPRESSION WG Goal : specify an image compression algorithm fulfilling identified.
Security WG: Report of the Fall 2004 Meeting November 19, 2004 Howard Weiss.
1 CCSDS Security Working Group Fall 2011 Meeting 1-2 November 2011 University of Colorado Boulder, Colorado USA Howard Weiss NASA/JPL.
Security WG: Report of the Fall 2015 Meeting ESA/ESOC, Darmstadt DE 12 November 2015 Howard Weiss NASA/JPL/PARSONS
Security WG: Status Briefing BSI, London UK 10 November 2014 Howard Weiss NASA/JPL/PARSONS
11 Identity Management Spacecraft ID Security CCSDS Security WG Fall 2005 Atlanta, GA USA Howard Weiss NASA/JPL/SPARTA September.
Security WG: Report of the Spring 2014 Meeting NH Hotel Leeuwenhorst Noordwijkerhout, The Netherlands 3 April 2014 Howard Weiss NASA/JPL/PARSONS
Systems Architecture WG: Report of the Spring 2005 Meeting April 14, 2005 Takahiro Yamada, JAXA/ISAS.
Security WG: Report of the Fall 2003 Meeting October 28, 2003 Howard Weiss, NASA/JPL/SPARTA.
Information Architecture WG: Report of the Fall 2004 Meeting November 16th, 2004 Dan Crichton, NASA/JPL.
0 CCSDS Systems Engineering Area: Security Working Group Howard Weiss NASA/JPL/Cobham (Parsons) October 2011.
Security WG: Report of the Spring 2013 Meeting Bordeaux, France 18 April, 2013 Howard Weiss NASA/JPL/PARSONS skype:
Security WG: Report of the Spring 2004 Meeting May 13, 2004 Howard Weiss, NASA/JPL/SPARTA.
Security WG: Report of the Spring 2006 Meeting Rome, Italy June 16, 2006 Howard Weiss NASA/JPL/SPARTA
Security WG: Status Briefing Cleveland, Ohio USA 15 October, 2012 Howard Weiss NASA/JPL/SPARTA skype: hsweiss.
The CCSDS Security WG is chartered to:
Security WG: Status Briefing
Security WG: Report of the Fall 2005 Meeting
CCSDS Systems Engineering Area: Security Working Group
Security WG: Report of the Spring 2016 Meeting
Security WG: Report of the Fall 2013 Meeting
Delta-DOR WG: Report of the Fall 2010 Meeting
Presentation transcript:

Security WG: Report of the Spring 2008 Meeting Marriott Courtyard Crystal City, VA March 14, 2008 Howard Weiss NASA/JPL/SPARTA

Meeting Agenda 10 March 2008 – 08:00 – 09:00: CCSDS Plenary – 09:00 – 12:00: Systems Engineering Area (SEA) Plenary 11 March 2008 (09:00 – 17:00) – 09:00 – 10:30: Welcome, opening remarks, logistics, agenda bashing, Introduction for new attendees + Review of document progress and results of Fall 2008 meeting – 10:30 – 12:00: Joint meeting with Spacecraft Monitoring & Control – Document Status (encryption, authentication, key management, mission planners, security green book) – : Lunch – Authentication Document Discussion (HMAC replacement?) (All) – Security Architecture Document Discussions (Black) – CFDP Security (Pajevski) 12 March 2008 (09:00 – 17:00) – Key Management (Fischer) – Mission Planner’s Guide (Wells, Biggerstaff) – : Lunch – Other discussions (per Jan 2008 telecon): » “Color” of books (magenta vs. blue) » SCPS-SP » SLE security experiences » Encryption & authentication application-specific parameters » Review of CCSDS doc security sections » Threat doc review » Common Criteria for mission security profiles (knit docs together) » Agency security implementations (approach, requirements, security services) 13 March 2008 (09:00 – 12:00) – Joint meeting with SLS to discuss link-layer security BOF 14 March 2008 – : SEA Wrap-up Plenary

Attendance NameOrganization Address Howard Weiss Gordon Daniel Martin Stefano Clayton Craig Boyd Ignacio Mike Kellep Shea WilliamsU of Irene Lorezno

Executive Summary  Attendees from BNSC, ESA/ESOC, ESA/ESRIN, DLR, ASI, NASA/GSFC, NASA/JSC and NASA/JPL. CNES did not attend.  NASA and ESA participation from multiple, respective Agency centers continues to be the norm.  Reviewed the comments on the latest revision of the SecWG Security Architecture. All resolved but one. May need to extend the architecture to reinforce the use of link-layer security since its becoming a “hot” topic  Delivered encryption documents to secretariat after WG last review.  Discussed the authentication document. Decided to keep HMAC but also add GMAC (as a “should”) and CMAC (as a “may”) to the doc.  Joint meeting held with SM&C to discuss their security architecture.  Discussed possible CFDP security extensions.  Discussed key management green and magenta books.  Discussed 2 nd draft of mission planners guide.  Discussed possible “revival” of SCPS-SP – decided no.  Discussed the use of Common Criteria to create “space” Protection Profiles and in particular the work that the FAA has done with PPs for the National Air Space (NAS)  Joint meeting held with Space Link to begin a BOF for Space Link Layer Security Standardization

Summary of Goals and Deliverables 1. Security Architecture document will be revised based on comment review and need to re-emphasize link-layer security. 2. Authentication document will be revised to include cipher-based message authentication codes: GMAC (“should”) and CMAC (“may) based on ESA-sponsored algorithm study. GMAC “won” but CMAC (and CBC-MAC predecessor) has been used. 3. Making good progress on Key Management documents. 4. Excellent progress continues on Mission Planners Guide. 5. Good discussion on CFDP security and the whole topic of application layer security in-general. 6. While the use of the Common Criteria met with general approval as a standardized means to generate mission security requirements, there were no volunteers to work on a PP and therefore this work will be on a “slow roll.” 7. Continue to work with other Areas and their WGs with respect to security. v Joint mtg w/SM&C to review their security architecture v Joint mtg w/SLS to create space link layer security BOF

SEA Area MID-TERM REPORT SUMMARY TECHNICAL STATUS 1.Security WG Goal: Working Status: Active _X_ Idle ____ Summary progress: Five documents actively being produced (Security Architecture, Authentication, Key Management (2), Mission Planners Guide). All docs green. Progress since last meeting: Encryption doc completed. Agree to revise authentication doc, positive movement on Security Architecture doc, mission planners guide and KM. Problems and Issues: Resources – Excellent right now but need to ensure continued participation from all member agencies status:OKCAUTIONPROBLEM Comment: Working Group is advancing and producing good products. Docs OK. Authentication revisions needed.

Near-Term Schedule DeliverableMilestoneDate CCSDS Security Architecture Revise & update per meeting06/08 R 10/08 M Authentication/ Integrity Revise per meeting consensus.06/08 10/08 Key Management Green Book Revise per meeting comments04/08 10/08 G

Near-Term Schedule (cont) Key Management Magenta Book Being revised and restructured per internal ESA reviews and WG comments 10/08 03/09 M Mission Planners Security Guide Work in progress10/08 G1 03/09 G2 10/09 G Common Criteria Protection Profiles Just starting07/08 (white paper)

Open Issues  Authentication Algorithms  Do we have too many options?  Mission planners guide just started but on the right path  Starting Common Criteria…. Slow roll  Joint work with SLS to create link layer security standards  Status of SCPS-SP  Shows up as Blue Book on web site  Not revised since 1999  SIS “think” it has been retired  Need to move to historical w/note regarding vulnerability if used in only integrity mode.

Action Items Item NumberAction Item:Assigned to:Date Due: SecWG0308:1Provide final comments on the SM&C security architecture ALLAs required by SM&C SecWG0308:2Update Authentication Document to include GMAC and CMAC cipher-based message authentication code algorithms Howard Weiss07/08 SecWG0308:3Revisit digital signature algorithm – currently specified as DSA – should this become RSA because of the prevalence of use in commercial products? ALL06/08 SecWG0308:4Harmonize section 3.6 of the Security Architecture with NIST Clayton Sigman & Gordon Black 06/08 SecWG0308:5Check how pre-shared key can be used with TLS per section of the Security Architecture Howard Weiss06/08

Action Items (2) SecWG0308:6Create a concept paper “white book” discussing CFDP (in specific) and application layer security in general Mike Pajevski10/08 SecWG0308:6Review the ESA profile document ALL04/08 SecWG0308:7Obtain existing Agency key management schemes (as obtainable and releasable) for inputs into the magenta Key Management document ALL05/08 SecWG0308:8Add a document roadmap to the Mission Planners Guide illustrating the various security documents and how they are used. Craig Biggerstaff10/08 SecWG0308:9Can CCSDS “borrow” words from existing ISO documents (e.g., ISO ) for the Mission Planners Guide Howard Weiss08/08 SecWG0308:10Set up a WebEx Telecon for 4 June 2008, 10am EDT Howard Weiss5/08

Resource Problems  Resources appear to be adequate to perform the current tasks.  Resources are increasing:  ESA has provided additional resources  NASA has provided additional resources  We keep seeing and getting more interest

Risk Management Update  Must ensure that the current trend of additional resources remains and that resources don’t shrink.

Cross Area WG / BOF Issues  Joint meeting with SM&C to review their security architecture.  Joint meeting with SLS to create a new dual-area BOF  Create space link layer security standards (e.g., TM, TC, AOS, Prox-1 standard security mechanisms)

Resolutions to be Sent to CESG and Then to CMC  None

New Working Items, New BOFs, etc.  Authentication algorithm revisions  Common Criteria Protection Profiles  Joint SLS/SEC Space Link Security BOF  Already approved by SLS AD (who attended the meeting)  Needs approval by SE AD