[[PageOutline]] == Project Number == 1792 == Project Title == The Hive Mind: Applying a Distributed Security Sensor Network to GENI [[BR]] a.k.a. !HiveMind === Technical Contacts === Principal Investigator [http://www.cs.ucdavis.edu/~peisert/ Sean Peisert] peisert@cs.ucdavis.edu [[BR]] === Participating Organizations === Department of Computer Science [[BR]] University of California, Davis [[BR]] One Shields Ave. [[BR]] Davis, CA 95616-8562 Deborah Frincke [[BR]] Battelle [[BR]] Richland, WA [[BR]] [[BR]] Carrie Gates [[BR]] CA Labs, CA Inc. [[BR]] New York, NY === GPO Liaison System Engineer === Vic Thomas vthomas@geni.net == Scope == This work will develop and prototype a security layer underlying GENI that will allow providers of the system to collaboratively identify and defend against attacks and misuse of GENI resources. Specifically, the effort will develop prototypes for security monitoring, evaluating, and reporting software that could be useful to both GENI experimenters and GENI operations. The effort will also perform experiments using decentralized security algorithms that communicate between sensors in a federated system and evaluate and improve the security layer’s usefulness to potential security experimenters. The project team will collaborate with other teams to develop a security architecture for GENI. === Current Capabilities === BRIEF descriptions of resources/functions/tools that are available to anyone in the GENI community === Milestones === [[MilestoneDate(Hive: S2.a)]] Selection of control framework for initial deployment. [[BR]] [[MilestoneDate(Hive: S2.b)]] [attachment:2010-9-HiveMindArch.2.pdf Design specification for security framework.] [[BR]] [[MilestoneDate(Hive: S2.c)]] [attachment:TDMAA-JADE-3.tar.bz2 Very early prototype of monitoring software and distributed sensors.] [[BR]] [[MilestoneDate(Hive: S3.a Demonstration and outreach at GEC9)]] [[BR]] [[MilestoneDate(Hive: S3.b [attachment:2011-2-HiveMind-EvaluationPlan.pdf Plan for evaluating efficacy of Hive Mind)]] [[BR]] [[MilestoneDate(Hive: S3.c Demonstration and outreach at GEC10)]] [[BR]] [[MilestoneDate(Hive: S3.d Demonstration and outreach at GEC11)]] [[BR]] [[MilestoneDate(Hive: S3.e Paper on Security Experimentation with GENI)]] [[BR]] [[MilestoneDate(Hive: S3.f Deliver software and documentation)]] [[BR]] == Project Technical Documents == Links to wiki pages for the project's technical documents go here. List should include any document in the working groups, as well as other useful documents. Projects may have a full tree of wiki pages here. === Quarterly Status Reports === [wiki:HiveMind-Status-February2011 February 2011 Report] [[BR]] [wiki:HiveMind-Status-March2011 March 2011 Report] === Spiral 2 Connectivity === Links to wiki pages about details of infrastructure that the project is using (if any). Examples include IP addresses, hostnames, URLs, DNS servers, local site network maps, VLANIDs (if permanent VLANs are used), pointers to public keys. GPO may do first drafts of any of these and have the PI correct them to bootstrap. May also include ticket links for pending or known connectivity issues. Many projects will have a full tree of wiki pages here. === Related Projects === Includes non-GENI projects.