OPSEC WG ______

Download Report

Transcript OPSEC WG ______

OPSEC WG
_______
Operational Security Capabilities
for IP Network Infrastructure
IETF #62
IETF-62 OPSEC WG
Note Well
Any submission to the IETF intended by the Contributor for publication as all or
part of an IETF Internet-Draft or RFC and any statement made within the
context of an IETF activity is considered an "IETF Contribution". Such
statements include oral statements in IETF sessions, as well as written and
electronic communications made at any time or place, which are addressed
to:
– the IETF plenary session,
– any IETF working group or portion thereof,
– the IESG, or any member thereof on behalf of the IESG,
– the IAB or any member thereof on behalf of the IAB,
– any IETF mailing list, including the IETF list itself, any working group or
design team list, or any other list functioning under IETF auspices,
– the RFC Editor or the Internet-Drafts function
All IETF Contributions are subject to the rules of RFC 3667 and RFC 3668.
Statements made outside of an IETF session, mailing list or other function, that
are clearly not intended to be input to an IETF activity, group or function, are
not IETF Contributions in the context of this notice.
Please consult RFC 3667 for details.
IETF-62 OPSEC WG
Front Administrativia
 Minutes scribe?
• Jabber scribe? (opsec) ietfxmpp.org
• When speaking:
– Please identify yourself (for the scribes)
– Don’t mumble
– Speak at/to/near the microphone. The audio is being
streamed out.
IETF-62 OPSEC WG
Agenda
1. Agenda bashing.
2. General status. [ Pat/Ross ]
- draft-ietf-opsec-framework-00
- draft-ietf-opsec-efforts-00
3. Survey of Service Provider Security Practices Doc.
<draft-ietf-opsec-current-practices-00> [ Merike ]
4. Filtering Capabilities for IP Network Infrastructure.
<draft-morrow-filter-caps-00.txt> [ Morrow ]
5. TMOC Liaison request/work. [Salowey/Lonvick ]
http://www.ietf.org/IESG/LIAISON/file92.pdf
IETF-62 OPSEC WG
6. Go home.
Charter: Outputs
1. Framework Document
• Out for review
2. Current Practices Document
• Out for review
3. Individual Capability Documents
• Looking for editors/reviewers
4. Profile Documents
• In the future
IETF-62 OPSEC WG
Available Documents
• Framework for Operational Security Capabilities
for IP Network Infrastructure
– draft-ietf-opsec-framework-00.txt
• Security Best Practices Efforts and Documents
– draft-ietf-opsec-efforts-00.txt
• Operational Security Current Practices
– draft-ietf-opsec-current-practices-00.txt
• Filtering Capabilities for IP Network Infrastructure
– http://www.port111.com/opsec/draft-morrow-filter-caps00.txt
IETF-62 OPSEC WG
Capabilities Docs in Charter
• Other Capabilities Documents:
 Packet Filtering
 Event Logging
– In-Band management
– Out-of-Band management
– Configuration and Management Interface
– Authentication, Authorization and Accounting (AAA)
– Documentation and Assurance
– Miscellaneous
IETF-62 OPSEC WG
Survey of Service Provider
Security Practices Doc.
<draft-ietf-opsec-current-practices-00>
IETF-62 OPSEC WG
Filtering Capabilities for IP
Network Infrastructure.
<draft-ietf-opsec-current-practices-00>
IETF-62 OPSEC WG
TMOC Liaison request/work
http://www.ietf.org/IESG/LIAISON/file92.pdf
IETF-62 OPSEC WG
Discussion/Administratia
• Time for Discussion
• Maillist:
– General Discussion: [email protected]
– To Subscribe: [email protected]
In Body: subscribe
– Archive: http://ops.ietf.org/lists/opsec/
IETF-62 OPSEC WG