课题基金 / 基金详情

EDU: Lightweight Environment for Network Security Education

EDU: Lightweight Environment for Network Security Education
EDU:网络安全教育的轻量级环境
批准号:
1419358
负责人:
Vassil Roussev
金额:
$29.98万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2014
资助国家:
美国
项目状态:
已结题
起止时间:
2014-09-01 至 2017-05-31

项目摘要

项目成果

Vassil Roussev的其他基金

相似基金

相关文献

中文摘要
翻译
这个项目的目标是开发一个轻量级的基础设施,用于支持动手网络安全教育(NSE)和一组依赖于基础设施的令人信服的练习,涵盖安全的三个基本方面:攻击、分析和防御。从历史上看,构建现实的网络安全演习是一项既费力又耗费资源的任务。在一个学期的课程中,服务器上的虚拟机(VM)和快照的数量很容易达到数百或数千,这给教师和系统管理人员带来了严重的维护开销。最后,虚拟机一旦创建,就相对较大,并且不容易在互联网上共享,从而有效地限制了教育者之间的材料交换。该项目提出了一种解决方案,通过创建基于轻量级虚拟化容器的灵活网络安全教育基础设施,从根本上改变网络安全演习的创建和交付方式。安全与可信网络空间(SaTC)项目资助从可信计算系统角度解决网络安全问题的提案;社会、行为和经济科学视角;以及完全专注于网络安全教育的提案。该项目的更广泛影响包括大大增加测试的可用性,应用网络安全练习,同时减少对复杂和难以管理的硬件环境的需求,使教师能够专注于课程内容和教学方法,而不是系统管理。它建议利用Linux容器技术和docker工具来促进容器的使用。它建议创建两个种子实例:通过SQL注入的安全编程;以及通过数据泄露进行网络防御。这两个预加载的实例可以用作实验练习或如何使用此体系结构的示例。
英文摘要
The goal of this project is to develop a lightweight infrastructure for supporting hands-on network security education (NSE) and a compelling set of exercises that rely on the infrastructure, covering the three basic aspects of the security: attack, analysis, and defense. Historically, building realistic Cybersecurity exercises has been both a laborious and resource-intensive task. Over the course of a semester, the number of virtual machines (VM) and snapshots on the server can easily become hundreds or thousands, which imposes serious maintenance overhead on the instructor and systems administration staff Finally, once created, the VMs are relatively large and are not easily shareable across the Internet, thereby effectively limiting the exchange of materials among educators. The project proposes a solution to fundamentally change how Cybersecurity exercises are created and delivered by creating a flexible Cybersecurity education infrastructure based on lightweight virtualization containers. The Secure and Trustworthy Cyberspace (SaTC) program funds proposals that address Cybersecurity from a Trustworthy Computing Systems perspective; a Social, Behavioral and Economic Sciences perspective; and proposals focusing entirely on Cybersecurity Education.The broader impacts of the project include vastly increasing the availability of tested, applied Cybersecurity exercises while reducing the need for complex and hard-to-manage hardware environments, allowing instructors to focus on course content and pedagogy rather than on system administration. It proposes to leverage Linux container technology and the docker tool that facilitates container use. It proposes to create two seed instances: secure programming via SQL injections; and network defense via data exfiltration. These two pre-loaded instances can be used as lab exercises or as examples of how to use this architecture.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SaTC: EDU: A Formal Approach to Digital Forensics and Incident Response Investigations
  • 批准号:
    1821829
  • 项目类别:
    Standard Grant
  • 资助金额:
    $30.0万
  • 财政年份:
    2018
  • 负责人:
    Vassil Roussev
  • 依托单位:
CC* Network Design: ARCHES (Advanced Research Computing in the Humanities Engineering and Sciences) Network at the University of New Orleans
  • 批准号:
    1660241
  • 项目类别:
    Standard Grant
  • 资助金额:
    $33.3万
  • 财政年份:
    2017
  • 负责人:
    Vassil Roussev
  • 依托单位:
EDU: Automated Platform for Cyber Security Learning and Experimentation (AutoCUE)
  • 批准号:
    1623253
  • 项目类别:
    Standard Grant
  • 资助金额:
    $30.0万
  • 财政年份:
    2016
  • 负责人:
    Vassil Roussev
  • 依托单位:
海外基金