CICI: Secure Data Architecture: Shared Intelligence Platform for Protecting our National Cyberinfrastructure
CICI: Secure Data Architecture: Shared Intelligence Platform for Protecting our National Cyberinfrastructure
批准号:
1547249
负责人:
Alexander Withers
金额:
$49.92万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2015
资助国家:
美国
项目状态:
已结题
起止时间:
2015-12-01 至 2020-11-30
中文摘要
这项研究有望显著提升校园网和科研网的安全性。它解决了开放、不受限制地访问校园研究网络这一新出现的安全挑战,但除此之外,它还为可演变的情报共享网络奠定了基础,该网络具有非常真实的潜力,可以在全国范围内对这些情报进行分析。此外,它还将为网络安全研究人员提供丰富的现实世界情报来源,以检验他们的理论、工具和技术。这项研究将产生一种新型的虚拟安全设备,它将显著增强开放科学网络的安全态势,从而可以进行先进的高性能网络研究,而不会因为更传统的安全控制而导致性能滞后。这项研究将整合来自国家科学基金会和能源部的先前研究成果、专业知识和安全产品,以推进可用于开放科学网络的安全基础设施,即科学DMZ。此外,这一努力将积极促进科学非军事区参与者之间以及与希望参与的国家学术计算资源和组织之间的情报共享。除了满足校园非军事区的安全需求外,这一努力还将为情报共享基础设施奠定基础,该基础设施将为网络安全研究社区提供重大好处,使收集、注释和公开分发全国范围的安全情报成为可能,以帮助测试和验证正在进行的安全研究。
英文摘要
This research is expected to significantly enhance the security of campus and research networks. It addresses the emerging security challenge of open, unrestricted access to campus research networks, but beyond that it lays the foundation for an evolvable intelligence sharing network with the very real potential for national scale analysis of that intelligence. Further it will supply cyber security researchers with a rich real-world intelligence source upon which to test their theories, tools, and techniques. The research will produce a new kind of virtual security appliance that will significantly enhance the security posture of open science networks so that advanced high-performance network-based research can be carried out free of performance lags induced by more traditional security controls.This research will integrate prior research results, expertise and security products from from both the National Science Foundation and the Department of Energy to advance the security infrastructure available for open science networks, aka Science DMZs. Further the effort will actively promote sharing of intelligence among science DMZ participants as well as with national academic computational resources and organizations that wish to participate. Beyond meeting the security needs of campus-based DMZs, the effort will lay the foundation for an intelligence sharing infrastructure that will provide a significant benefit to the cybersecurity research community, making possible the collection, annotation, and open distribution of a national scale security intelligence to help test and validate on-going security research.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SI2-SSE: AttackTagger: Early Threat Detection for Scientific Cyberinfrastructure
-
批准号:1535070
-
项目类别:Standard Grant
-
资助金额:$49.91万
-
财政年份:2015
-
负责人:Alexander Withers
-
依托单位:
海外基金