Operational Security Capabilities for IP Network Infrastructure (opsec)
-----------------------------------------------------------------------

Charter
Last Modified: 2009-04-20

Current Status: Active Working Group

Chair(s):
    Joe Abley  <[email protected]>
    Joel Jaeggli  <[email protected]>

Operations and Management Area Director(s):
    Dan Romascanu  <[email protected]>
    Ronald Bonica  <[email protected]>

Operations and Management Area Advisor:
    Ronald Bonica  <[email protected]>

Mailing Lists:
    General Discussion:[email protected]
    To Subscribe:      https://www.ietf.org/mailman/listinfo/opsec
        In Body:       In Body: subscribe
    Archive:           http://www.ietf.org/mail-archive/web/opsec/current/maillist.html

Description of Working Group:

No description available


Goals and Milestones:

  Done         Complete Charter

  Done         First draft of Framework Document as Internet Draft

  Done         First draft of Standards Survey Document as Internet Draft

  Done         First draft of Packet Filtering Capabilities

  Done         First draft of Event Logging Capabilities

  Done         First draft of Network Operator Current Security Practices

  Done         First draft of In-Band management capabilities

  Done         First draft of Out-of-Band management capabilities

  Done         First draft of Configuration and Management Interface
               Capabilities

  Feb 2005       First draft of Authentication, Authorization, and Accounting
               (AAA) Capabilities

  Feb 2005       First draft of Documentation and Assurance capabilities

  Done         First draft of Miscellaneous capabilities

  Mar 2005       First draft of Deliberations Summary document

  Mar 2005       Submit Framework to IESG

  Mar 2005       Submit Standards Survey to IESG

  Done         Submit Network Operator Current Security Practices to IESG

  May 2005       First draft of ISP Operational Security Capabilities Profile

  May 2005       First draft of Enterprise Operational Security Capabilities
               Profile

  Jun 2005       Submit Packet Filtering capabilities to IESG

  Jun 2005       Submit Event Logging Capabilities document to IESG

  Jul 2005       Submit In-Band management capabilities to IESG

  Jul 2005       Submit Out-of-Band management capabilities to IESG

  Aug 2005       Submit Configuration and Management Interface Capabilities to
               IESG

  Aug 2005       Submit Authentication, Authorization and Accounting (AAA)
               capabilities document to IESG

  Sep 2005       Submit Documentation and Assurance capabilities to IESG

  Sep 2005       Submit Miscellaneous capabilities document to IESG

  Dec 2005       Submit ISP Operational Security Capabilities Profile to IESG

  Dec 2005       Submit Large Enterprise Operational Security Capabilities
               Profile to IESG

  Dec 2005       Submit OPSEC Deliberation Summary document to IESG

  Nov 2008       Submit a draft to the IESG regarding filtering of ICMP messages
               in the backbone

  Mar 2009       Submit a draft to the IESG regarding backbone threats and
               mitigations

  Mar 2009       Submit a draft to the IESG regarding BGP Session Security


Internet-Drafts:

Posted Revised         I-D Title   <Filename>
------ ------- --------------------------------------------
Jan 2005 Apr 2009   <draft-ietf-opsec-efforts-10.txt>
               Security Best Practices Efforts and Documents

Jan 2009 Aug 2009   <draft-ietf-opsec-ip-security-01.txt>
               Security Assessment of the Internet Protocol version 4

Request For Comments:

 RFC   Stat Published     Title
------- -- ----------- ------------------------------------
RFC4778 I    Jan 2007    Operational Security Current Practices in Internet
                      Service Provider Environments

RFC5635 I    Aug 2009    Remote Triggered Black Hole Filtering with Unicast
                      Reverse Path Forwarding (uRPF)