112 lines
No EOL
15 KiB
Markdown
112 lines
No EOL
15 KiB
Markdown
# BTNOG-2 Security Workshop 2015.09.14-17
|
|
|
|
## Daily Schedule
|
|
|
|
| | |
|
|
| --------- | ------------- |
|
|
| Session 1 | 09:00 - 10:30 |
|
|
| Tea | 10:30 - 11:00 |
|
|
| Session 2 | 11:00 - 12:30 |
|
|
| Lunch | 12:30 - 14:00 |
|
|
| Session 3 | 14:00 - 15:30 |
|
|
| Tea | 15:30 - 16:00 |
|
|
| Session 4 | 16:00 - 18:00 |
|
|
| | |
|
|
|
|
## Instructors
|
|
|
|
| | | | |
|
|
| ---------- | ------------------- | ------------------------------------------------- | ------ |
|
|
| **alisha** | Alisha Gurung | [Tashi Cell](http://www.tashicell.com/) | Bhutan |
|
|
| **maz** | Yoshinobu Matzusaki | [Internet Initiative Japan](http://www.iij.ad.jp) | Japan |
|
|
| **randy** | Randy Bush | [Internet Initiative Japan](http://www.iij.ad.jp) | Japan |
|
|
| **urpan** | Urpan Adhikari | [Tashi Cell](http://www.tashicell.com/) | Bhutan |
|
|
| | | | |
|
|
|
|
**Available reference materials here?**
|
|
|
|
## Agenda
|
|
|
|
| | | | | |
|
|
| :---------- | :-------------------------------------------------- | :------------- | :----------------------------------------------------------- | ---- |
|
|
| **Day 1** | **Topic** | **Inst** | **Presentations** | |
|
|
| | | | | |
|
|
| Session 0 | Intro | randy | [1-0-1 Intro](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/1-0-1.intro.pdf) | |
|
|
| | - admin | | | |
|
|
| | - agenda | | | |
|
|
| | - materials and resources | | | |
|
|
| | - facilities and wireless | | | |
|
|
| Session 1 | Assets & Threat Models | randy | [1-1-1 Assets, Threats, Pragmatics](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/1-1-1.AssetsThreats.pdf) | |
|
|
| | - what assets are we protecting? | | | |
|
|
| | - from what kinds of attackers? | | | |
|
|
| | .. kiddies | | | |
|
|
| | .. financial gain | | | |
|
|
| | .. nation state (you're dead) | | | |
|
|
| | Threat Pragmatics | | | |
|
|
| | . to network infrastructure (routing, wiretap, ...) | | | |
|
|
| | . to service infrastructure (dns, mail, ...) | | | |
|
|
| | .to users | | | |
|
|
| | Social Engineering | | | |
|
|
| Session 2 | Cryptography | randy | [1-2-1 Crypto Review](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/1-2-1.Crypto-Review.pdf) | |
|
|
| | - symmetric encryption | | | |
|
|
| | - asymmetric encryption | | | |
|
|
| | - digital signatures | | | |
|
|
| | - hash functions | | | |
|
|
| | - certificates & trust anchors | | | |
|
|
| Session 3-4 | Cryptography Applications / PGP | maz | | |
|
|
| | - gpg | | [1-3-1 PGP](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/1-3-1.PGP.pdf) | |
|
|
| | - PGP Lab | alisha & urpan | [1-3-2 PGP Lab](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/1-3-2.PGP-Lab.pdf) | |
|
|
| | | | [pgp_chrome_lab](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/pgp_chrome_lab.pdf) | |
|
|
| **Day 2** | **Topic** | **Inst** | **Presentations** | |
|
|
| | | | | |
|
|
| Session 1 | Cryptography Applications | | | |
|
|
| | - ssh | randy | [2-1-1 SSH](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-1-1.ssh.pdf) | |
|
|
| Session 2 | Cryptography Applications | maz | | |
|
|
| | - VPNs, IPsec, TLS | | [2-2-1 VPN IPsec TLS](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-2-1.vpn-tls.pdf) | |
|
|
| Session 3 | OpenVPN & pfSense | randy | [2-3-1 OpenVPN](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-3-1.openvpn.pdf) | |
|
|
| | Wireshark | maz | [Wireshark](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-3-2.PacketCapture_Wireshark.pdf) | |
|
|
| Session 4 | Network Infrastructure | urpan | | |
|
|
| | - router and switch protection | urpan | [2-4-1 Routers & Switches](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-4-1.routers-switches.pdf) | |
|
|
| | - filtering at the border | maz | [2-4-2 Filtering at Border](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-4-2.Filtering-at-border.pdf) | |
|
|
| | - DNS Rate Limiting | randy | [3.4.4 DNS Rate Limiting](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/3-4-4.dns-rate-limit.pdf) | |
|
|
| | | | | |
|
|
| **Day 3** | **Topic** | **Inst** | **Presentations** | |
|
|
| | | | | |
|
|
| Session 1 | Network Infrastructure | | | |
|
|
| | - archiving | urpan | [2-4-4 Archiving](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/2-4-4.Archiving.pdf) | |
|
|
| | - firewalls | maz | [3-1-1 Firewalls](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/3-1-1.firewalls.pdf) | |
|
|
| | - Logging and Monitoring | maz | [3-1-2 Logging-monitoring](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/3-1-2.logging-monitoring.pdf) | |
|
|
| | - anomaly detection | maz | [3-1-3 Anomalies](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/3-1-3.anomaly.pdf) | |
|
|
| | - Sick Host Detection | maz | [3-1-4 Sick Hosts](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/3-1-4.sick-hosts.pdf) | |
|
|
| Session 2 | IDS | maz | | |
|
|
| | - IDS pragmatics - snort | | [3-2-1.snort](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/3-2-1.snort-ids.pdf) | |
|
|
| Session 3-4 | DNS & DNS Security | alisha | [dns & dns security](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/dns_security.pdf) | |
|
|
| | - dns | | | |
|
|
| | - auth & slave | | | |
|
|
| | - Dns Security | | | |
|
|
| | | | | |
|
|
| **Day 4** | **Topic** | **Inst** | **Presentations** | |
|
|
| | | | | |
|
|
| Session 1 | Protecting Hosts from Net | maz | | |
|
|
| | - hosts | | [4-1-1 Hosts](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-1-1.hosts.pdf) | |
|
|
| | - Recovery Plan! | | [4-1-2 wipe, recovery](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-1-2.wipe-etc.pdf) | |
|
|
| Session 2 | Virus, Mail and Browsing | | | |
|
|
| | - Anti-virus | maz | [4-2-1 Anti-virus](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-2-1.anti-virus.pdf) | |
|
|
| | - Safe Mail Practices | randy | [4-2-2 Safer Mail](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-2-2.safer-mail.pdf) | |
|
|
| | - Safe Browsing Practices | randy | [4-2-3 Safer browsing](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-2-3.safer-browsing.pdf) | |
|
|
| | - File & Disk Encryption | randy | [4-2-4 File & Disk Encryption](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-2-4.file-encrypt.pdf) | |
|
|
| Session 3 | Inter-Host Protocols | | | |
|
|
| | - sftp, ... | randy | [4-3-2 sftp & scp](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-3-2.scp%2Bsftp.pdf) | |
|
|
| | - Covert Channels, TOR, Steganography | randy! | [4-3-2 CovertChannels](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-3-2.Covert-Channels.pdf) | |
|
|
| | | | | |
|
|
| Session 4 | Inter-Network Cooperation | maz | | |
|
|
| | - Communities and Cooperation | | [4-4-1 Security Communities](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/4-4-1.inter-network-cooperation.pdf) | |
|
|
| | | | | |
|
|
| **Day 5** | **Topic** | **Inst** | **Presentations** | |
|
|
| | Thimphu Drubchen | | | |
|
|
| | | | | |
|
|
| **Day 6** | **Topic** | **Inst** | **Presentations** | |
|
|
| | | | | |
|
|
| Session 1 | Virtual Box & !pfSense | randy | [6-1 Install VirtualBox & pfSense](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/6-1.vbox-pfsense.pdf) | |
|
|
| Session 2 | Configure OpenVPN | randy | [6-2 Configure OpenVPN Server](https://wiki.rg.net/raw-attachment/wiki/Btnog2Sec/6-2.openvpn-server.pdf) | |
|
|
| | | | | | |