曝光台 注意防骗
网曝天猫店富美金盛家居专营店坑蒙拐骗欺诈消费者
5
Where Are We Today
Major Identity Management Thrusts:
– FICC, FPKIPA, HSPD-12 and eAuthentication on Unclas Fabric
– DoD-DNI Joint Efforts on the Classified Fabrics
– CNSS for National Security Systems
Major Access Management Thrusts:
– Federal Backend Attribute Exchange (derivative of HSPD-12)
– DoD-DNI Joint Efforts on the Classified Fabrics
– IC/DoD Authorization & Attribute Services Tiger Team
Advancing ABAC/ICABAAD
Proposed Attribute Standards & Interfaces for the 3 fabrics
DoD is Member of the Federal IdAM Federation
External Partners are Following Our Lead With Their Investments
6
Expansion of DoD Approved External PKI
Memo of July 22, 2008
The following PKIs are approved for use with DoD
information systems upon successful completion of
interoperability testing.
FBCA member PKIs cross certified at Medium
Hardware or High Assurance Levels
PKI members of other PKI Bridges that are cross
certified at FBCA Medium Hardware or High Assurance
Levels
PKIs that Assert the Federal PKI Common Policy
Medium Hardware or High Assurance Levels
Also, Approved Foreign, Allied, Coalition partner and
other External PKIs (described in attachment to memo)
7
Participants:
AstraZeneca
Bristol-Myers-Squibb
Genzyme
GlaxoSmithKline
Johnson & Johnson
Merck
Nektar
Organon
Pfizer
Procter & Gamble
Roche
Sanofi-Aventis
Federal
Bridge
Certipath
(Aero/Def)
SAFE
(Bio/Pharma)
Higher
Education
Identity Federations
Cross Certified:
D of Defense D of Justice
Gov Printing Office D of State
D of Treasury USPS
Patent & Trademark Ofc DHS
DEA CSOS Wells Fargo
State of Illinois DoD ECAs
Identrust & ORC (ACES)
Participants (TSCP)
Cross Certified:
Boeing
Lockheed Martin
Northrop Grumman
Raytheon
EADS/Airbus
CSP:
Exostar, SITA, ARINC
Pending:
MoDUK
Other TSCP:
BAE Systems
Rolls Royce
Finmechannica
September 18, 2008
Shared Service Providers
VeriSign, Inc.
Cybertrust
Operational Research Consultants, Inc.
The Department of the Treasury
Entrust Managed Services
Exostar LLC
U.S. Government Printing Office
PKI Bridges
Red: eAuth Level 4
Memo- July 22, 2008
Fed Bridge Status: http://www.cio.gov/fpkia/crosscert.htm
Federal
Common
Policy
Root
Purpose
– Ensure that certificates are technically interoperable with DoD
systems, and certificate revocation information can be obtained by
DoD systems
Content
– Tests interoperability using Direct Trust method
– Tests interoperability using Cross-Certification method
– Use cases: Client Authentication to a Generic Web Site
Digital Signing and/or Encrypting Email
Status
– DISA is scheduling qualified* Certipath member PKIs for JITC testing
beginning o/a 8 September 2008
– Developing Interoperating MOA for non-Federal external PKIs
Internal DoD legal requirement
Covers Responsibilities, Termination of interoperating, Liabilities, etc.
*PKIs from other PKI Bridges, cross certified with the FBCA at the Medium Hardware level of Assurance
Interoperability Testing of Approved External PKI
Memo July 22, 2008
9
Test Plan – Developed in testing between JITC and DoS
http://jitc.fhu.disa.mil/pki/pke_lab/partner_pki_testing/partner_pki_status.html
Federal Partner Test Schedule
– State – Complete
– Treasury 18-19 Sep
– DHS (using Treasury as SSP) October
– Discussions started DOJ, Others
Other Bridge Testing (Certipath)
– Enterprise Sponsor Test Start Date
Boeing Army FCS 16-17 Sep
Lockheed Army FCS 22-23 Sep
Northrop G Navy SUPSHIP 24-25 Sep
Raytheon 24-25 Sep
Exostar + UAL USAF Exec Fleet TBD
10
JITC Interoperability Testing
Recent and Emerging Successes
DoD Approved External PKI List Extended
Joint Lessons Learned Information System
Future Combat System Collaboration
Security Cooperation Information Portal (Foreign Military Sales)
Synchronized Predeployment and Operational Tracker (SPOT)
Defense Industrial Base Critical Infrastructure Protection
11
Partner Expectations
中国航空网 www.aero.cn
航空翻译 www.aviation.cn
本文链接地址:
航空资料31(156)