1 / 22

Outline

COPC Shared-Network Infrastructure Brief Prepared for: COPC Fall Meeting November 13, 2008 By: COPC/CSAB/JAG-CCM version 1.8-20081107. Outline. Purpose Background Status COPC Action Items IA Compliance Status Proposed Next Steps. Purpose. To provide background information on the JAG-CCM

luana
Download Presentation

Outline

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. COPC Shared-Network Infrastructure BriefPrepared for:COPCFall MeetingNovember 13, 2008By:COPC/CSAB/JAG-CCMversion 1.8-20081107

  2. Outline • Purpose • Background • Status COPC Action Items • IA Compliance Status • Proposed Next Steps

  3. Purpose • To provide background information on the JAG-CCM • To provide status information on COPC action items • To provide current IA status of COPC shared-network infrastructure • To discuss proposed next steps

  4. BackgroundJAG-CCMTeam • Charles Abel, Air Force/AFWA • Luis Cano, JAG-CCM Chair, NWS/NCEP/NCO • Jerry Core, Navy/NAVO • Craig Hegemann, Director, NWS/OCIO/TOC • Seyed Hosseini, NESDIS/OSDPD • Ben Kyger, Director, NWS/NCEP/NCO • Sherryl Panek, Navy/FNMOC • Rene Rodriquez, ITSO, NWS/NCEP/NCO • Daniel Starosta, NWS/OCIO/TOC

  5. BackgroundOverview of JAG-CCM Activities • Worked on COPC action items • Closed one action time • Will recommend closing two action items • Will recommend opening one action item • Worked to understand current and evolving Information Assurance (IA) requirements • Worked to understand status of shared-network infrastructure and upgrade paths

  6. BackgroundOverview of JAG-CCM Activities (continued) • Participated with Technical Interchange Meeting between NWSTG, AFWA and DISA • Collaborated with NUOPC Unified Ensemble Operations (UEO) team • Both teams have overlapping objectives

  7. Status COPC Action Item 2008-1.12 Background • COPC Action Item 2008-1.12: The JAG/CCM is asked to revisit the recommendation for SFTP and make sure that it is a hard requirement for all the sites. Due to overarching restraints from FNMOC, flexibility towards a solution may be limited. The DOD IA need to meet with the PKI to discuss this further. Within 30 days, the JAG/CCM will provide a recommendation on SFTP. (Related to COPC Action Item 2007-2.16) • Priority: (H) • Advocate(s): Mr. Luis Cano, JAG/CCM • Suspense: 30 Jun 08 • Status as of 29 July 2008: Closed.

  8. Status COPC Action Item 2008-1.12 SFTP Requirement • Findings • SFTP is not a hard DoD requirement • Types of protocols used driven by DoD IA policies and guidance, e.g. CJCSI 6510.01E Information Assurance (IA) and Computer Network Defense (CND), 15 Aug 07 • SFTP is not a hard NOAA requirement • Types of protocols used driven by scientific and data sharing requirements compliant with NOAA and Federal IT management policies and guidance, e.g. NOAA Policy on Partnerships in the Provision of Environmental Information

  9. Status COPC Action Item 2008-1.12 Encryption Requirement • Findings • Encryption is a hard DoD requirement • Environmental data is considered unclassified but sensitive by Air Force and Navy • “Exchange of unclassified but sensitive information between the DOD and other government agencies will be protected using DOD-approved PKI certificates.” CJCSI 6510.01E, section 12.b.

  10. Status COPC Action Item 2008-1.12 Interconnection Security Agreement • Findings • No Interconnection Security Agreements (ISA) exist between NOAA and DoD • ISAs are required by Federal Information Security Management Act (FISMA) of 2002 and related National Institute of Standards and Technologies (NIST) publications • Action item result • NWS provided draft ISA to AFWA, FNMOC, NAVO and NESDIS • Suspense date 12/16 to review and update document

  11. Status COPC Action Item 2008-1.12 Disposition • June 25, 2008: JAG-CCM provided a briefing to the CSAB with the findings and recommendations • CSAB approved • July 14, 2008: OFCM Emailed briefing to COPC members for review and approval • July 29, 2008: OFCM closed action item

  12. Status COPC Action Item 2008-1.13 Background • COPC Action Item 2008-1.13:Long-term. Develop a broader security and IT data sharing strategy (IA). The JAG should address the broader agency's missions, including long-term needs, backup procedures, and any estimated bottlenecks. This is an ongoing process of aligning IT with business requirements. (related to COPC Action Item 2007-2.16) • Priority: (L) • Advocate(s): Mr. Luis Cano, JAG/CCM • Suspense: Spring 2009 CSAB meeting. • Status as of 18 September 2008: Open.

  13. Status COPC Action Item 2008-1.13 NUOPC and CCM • Findings • NUOPC has created a team with similar scope as the CCM with considerable overlap

  14. Status COPC Action Item 2008-1.13 NWS-AFWA-DISA Technical Interchange Meeting • Meeting held August 26-27 2008 • Approaches discussed to integrate DoD and NOAA networks • Developed Conceptual Enterprise to Enterprise Network Infrastructure

  15. Status COPC Action Item 2008-1.13 NWS-AFWA-DISA Technical Interchange Meeting Conceptual Enterprise to Enterprise Network Infrastructure Current Shared Network Infrastructure

  16. Status COPC Action Item 2008-1.13 NWS-AFWA-DISA Technical Interchange Meeting • Conceptual Enterprise to Enterprise Network Infrastructure compared to current COPC shared-network • Greater bandwidth and information security • Greater network backup capabilities • Greater access to other data sources within NOAA and DoD through enterprise networks • More expensive and complex • Requires greater working relationships amongst partners

  17. Status COPC Action Item 2008-1.13 Overview of DoD Network Provisioning Process

  18. Status COPC Action Item 2008-1.13 Recommendation • Close action item • Open new action that tasks the JAG/CCM to coordinate next steps with DoD and NOAA IT leadership for next generation COPC shared-network infrastructure • Include DoD and NOAA IA requirements

  19. Status COPC Action Item 2007-2.16 Background • COPC Action Item 2007-2.16: The JAG/CCM will develop implementation costs and schedules for the convergence to the new communications protocol due to ports 20 and 21 restrictions. The appropriate NWSTG/TOC representation will attend the spring 2008 COPC meeting. This action item is an extension of COPC Action Item 2007-1.1 [2008-1.12]. • Priority: (H) • Advocate(s): Mr. Luis Cano, JAG/CCM • Suspense: 31 Mar 08 (for Spring CSAB) • Status as of 18 September 2008: Open.

  20. Status COPC Action Item 2008-2.16 FTP Port Closure • Finding: • Air Force and Navy intend to migrate away from FTP • No DoD time-table of when FTP will be disabled at the DoD network perimeter • Recommendation • Close action item • Relevant requirement included in previous action item recommendation

  21. IA Compliance Status • Does not meet DoD unclassified but sensitive encryption requirement • Does not meet DoD unclassified but sensitive requirement to use DoD-approved PKI certificates between DoD and other government agencies

  22. Proposed Next Steps • Air Force and Navy lead DoD network provisioning process for DoD network upgrade and enterprise connection to NOAA network • In coordination with NOAA CIOs • Include all long-term Tri-Agency network requirements • Ensembles • NPOESS backup • Information security • Other requirements • Comprehensive requirements provide basis for funding requests and engineering solution • Develop CCM and NUOPC relationship based on COPC and NUOPC goals and objectives

More Related