usenix conference policies
You are here
A Secure Architecture for the Range-Level Command and Control System of a National Cyber Range Testbed
Michael Rosenstein and Frank Corvese, Applied Visions Inc., Secure Decisions Division
In recent years, cyber security researchers have become burdened by the time and cost necessary to instantiate secure testbeds suitable for analyzing new threats or evaluating emerging technologies [1]. To alleviate this, DARPA initiated the National Cyber Range (NCR) program to develop the architecture and software tools needed for a secure, self-contained cyber testing facility. Among NCR’s goals was the development of a range capable of rapid and automated reconfiguration of resources, broad scalability, and support for running simultaneous experiments at different security levels [2].
In this paper we present our architecture for the Range-level Command & Control System (RangeC2) developed as part of the Johns Hopkins University Applied Physics Laboratory’s implementation of the NCR [3]. Our discussion includes the RangeC2’s functional and non-functional requirements, the rationale behind its partitioning into layered subsystems, an analysis of each subsystem’s fundamental mechanisms, and an in-depth look at their processing paradigms and data flows.
To meet the demands of this range, the RangeC2 was required to perform three primary jobs: 1) management of all range resources; 2) management of numerous concurrent experiments; and 3) enforcement of each experiment’s resource security and perimeter isolation. Our discussion of the architecture will show how these requirements were met while overcoming the RangeC2’s most critical challenges.
Open Access Media
USENIX is committed to Open Access to the research presented at our events. Papers and proceedings are freely available to everyone once the event begins. Any video, audio, and/or slides that are posted after the event are also free and open to everyone. Support USENIX and our commitment to Open Access.
title = {A Secure Architecture for the {Range-Level} Command and Control System of a National Cyber Range Testbed },
booktitle = {5th Workshop on Cyber Security Experimentation and Test (CSET 12)},
year = {2012},
address = {Bellevue, WA},
url = {https://www.usenix.org/conference/cset12/workshop-program/presentation/rosenstein},
publisher = {USENIX Association},
month = aug
}
connect with us