Subject: Internet2 Network Security SIG
List archive
- From: Adair Thaxton <>
- To: "Curtis, Bruce" <>, "" <>
- Subject: Re: [netsec-sig] Netsec-SIG BOF draft agenda
- Date: Thu, 12 Dec 2024 18:32:29 +0000
- Arc-authentication-results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=internet2.edu; dmarc=pass action=none header.from=internet2.edu; dkim=pass header.d=internet2.edu; arc=none
- Arc-message-signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=NKMt7GAZ7Bt510PNaJlq/T1W8z91G5/dbhkYbHgWvks=; b=HAAUPoiJxM1qWmNIu4U3EafE2TWoSr5Ctrhx5+qH3bxvTPhy2pDbeBf9cZcweyJQZX+zXVCNFr0rmfgi6mNG4TlpuTSSFkd3X5B0vC/5kury0UPbjb7KEBdKhJjpGvK4DZo8rg7T6/QaZWty6yUScxB/50zWDyXmfZs334r4SyBwM3X+VdKBReUhDfHdkEkMLl2zRadqbnmWjIsiEQ0DHIVUUSkb2z4QxzNQcY1rUA+pLsdBYltXlRjWUy4VW1L1bqY8+WQlmFFgYbkjtDHybgXWDldiy1VKOtOeD/VcT3pQLXAYhRhGqJhHVrZp/zV8IozZq8++YxyrQ2Bw3gOC8g==
- Arc-seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=RPEmX+ydGlfiVFlQM0TT9U6HfCma6FSUS0k0JkD6jte5l6wL44MaHpsTjaSktrQLs9tE9hY8Kac0YXqsoYd4i9H6FcSekI9uOf10jtHi/EaFdRsrfHUCX2a3sMtahTW+L6eSbB8Z/vAd/1vcL7biTKrGjwDeab8rjXF8Sb2qJ8KkjismR9N+9gWysWBDkThCKVwjTZh3Vcnc/0RFPuvgubgbY6nC78bVzE54tRvZdbIMODD2eVtA/Z2cortOAGRsX0jnGv+1IzN4f8gRmcCV/LgYJ466drg/CfOgpo+F7BKnVgUVfVx5TorFmSFw19zT+kSPgThSAXfkWouBi7lAVw==
Meeting notes are updated – if I missed anything, feel free to add it.
From:
<> on behalf of Adair Thaxton <>
Date: Thursday, December 12, 2024 at 12:34 PM
To: Curtis, Bruce <>, <>
Subject: Re: [netsec-sig] Netsec-SIG BOF draft agenda
Please correct names and affiliations as necessary, I did my best
😊
https://spaces.at.internet2.edu/display/SWG/2024-12-12+Meeting+notes
From:
<> on behalf of "Curtis, Bruce" <>
Date: Wednesday, December 11, 2024 at 1:15 PM
To: <>
Subject: [netsec-sig] Netsec-SIG BOF draft agenda
Draft agenda from the co-chairs for the Network Security BoF for the Internet2 Network
Security Special Interest Group at 12:10 pm December 12 in Suffolk room at TechEx.
Submit additional agenda items in a reply or just bring them up at the meeting tomorrow.
Was anyone affected by the Crowdstrike problem?
Can you tell us how bad it was for you?
Who was not affected by Crowdstrike but use a product that has equivalent permissions and could cause the same issues? (Show of hands?)
The CUPS vulnerability - This was an interesting case study in disclosure and (mis) information. How did people react in the early stages (9.9! ) if at all?
There were claims by the person who reported the vulnerability that Apple was vulnerable also and counter claims by others that Apple had changed enough of CUPs to not be vulnerable.
Still waiting for the other shoe to drop.
Any expected issues on your campuses with Microsoft end of support for Windows 10 on October 14 2025?
Anybody affected by the open DNS resolver on AppleTV?
Have you all applied patches or work arounds for the Blast-RADIUS vulnerability?
Have stats that 95% of malware is delivered over encrypted sessions influenced anyones decisions about Next Generation Firewalls at your perimeter?
Do you use a VPN with MFA as a way to use MFA for legacy services that don’t support MFA? (Prompted by discussion at the #higherednetcomm day before EDUCAUSE)
Do you use a Policy Based VPN?
Are you happy with the grouping functions of your VPN or network? Would you be happier if devices could be in more than one role/group/segment?
ACU in Abilene presented at the #higherednetcomm day before Educauase that they are using TailScale which supports devices being in more than one group (ZeroTier supports this also).
Any IPv6 and security related topics? (IPv6 Privacy addresses and logs. NAT and logs.)
Anybody implemented EAP-TEAP? Allows EAP chaining and in theory allows Microsoft Windows to log onto eduroam with machine cert rather than user cert so machines
will be on the network even if no one is logged in. Useful for management. EAP-TEAP imple3mented in FreeRADIUS 3.2.3.
Anyone looking for help for a specific security issue at your campus?
Anyone looking for info on how others have handled a specific security issue at their campus?
Does anyone have interesting stories or reports on telemetry and/or flow analytics tools or data?
Reports on improvement in vulnerability management on your campus in the past year.
What are campuses current stances on border blocking and future plans? Is the Zero Trust movement influencing campuses to reduce border blocking? Or are campuses moving to more or different blocking at their borders?
Other reports, stories, comments etc?
What is Zero Trust? NIST SP 800-207
• Builds up trust by considering the entire context of the session being established
• Moves defenses from static, network-based perimeters to focus on users, assets, and resources
• Assumes no implicit trust based solely on network location or device ownership
• Focuses on protecting resources, not network segments
Bruce Curtis
Network Engineer / Information Technology
NORTH DAKOTA STATE UNIVERSITY
phone: 701.231.8527
|
Archive powered by MHonArc 2.6.24.