Skip to Content
[CAIDA - Cooperative Association for Internet Data Analysis logo]
The Cooperative Association for Internet Data Analysis
www.caida.org > funding : : cybersecurity
(DHS N66001-08-C-2029) Cybersecurity: Leveraging the Science and Technology of Internet Mapping for Homeland Security
The CAIDA Cybersecurity Project "Leveraging the Science and Technology of Internet Mapping for Homeland Security" (contract N66001-08-C-2029 with the DHS Science and Technology Directorate) started in March 2008, and received supplemental funding in July 2011.
Sponsored by:Department of Homeland Security (DHS)

Statement of Work

Funded by the DHS Science and Technology Directorate, contract N66001-08-C-2029, we have delivered the most comprehensive Internet router-level and AS-level Internet topology data sets ever made available to researchers and government agencies. The data are richly annotated with AS business relationships, size, and geography-related attributes. We have also deployed a new Internet topology data acquisition infrastructure available to vetted researchers for macroscopic Internet measurement projects relevant to DHS's cybersecurity R&D needs.

In the three years since the original proposal, the scope of the problem has expanded sufficiently to warrant additional work on the measurement and supporting analysis tools to stay current with the state-of-the-art technology in the field, to facilitate transfer of the technologies developed to other public and private sectors, and to improve utility and accessibility of the resulting data. We propose to accomplish the following additional tasks, which increase the functionality, accuracy, and usability of the tools and data developed and provided under the terms of the current project. Each task further advances DHS capabilities to meet public and private sector needs to understand and protect essential U.S. information infrastructure.

Task 1: Improve traceroute-based Internet topology mapping methodology

1aEvaluate a new alias resolution technique based on IP pre-specified timestamps (developed at the University of Washington, presented at IMC2010) as part of our Multi-Approach Alias Resolution System (MAARS) process
1bEnable execution of interactive real-time requests to run topology and reachability probes from user-specified Ark nodes to user-specified destinations ("topology-on-demand" demonstrated at CATCH-2009 conference)

Task 2: Release MIDAR code for alias resolution

2aRelease a simple stand-alone corroboration tool running on a single machine that can be used to confirm/refute a suspected alias set of a small size (< 200 addresses)
2bRelease software to support a full MIDAR run on a single machine that can be used to find aliases in a moderate size set of addresses (< 40 thousand)
2cRelease software to support a full MIDAR run using coordinated measurements on multiple machines as necessary to find aliases in a large set of addresses (>l 1 million)

Task 3: Add router-level graph visualization to AS-rank web pages

3aDevelop the necessary back-end database support
3bCreate an informative and scalable visualization of routers belonging to a given AS augmented with annotations for ownership, geography, and peering attributes
3cEnable a graphic interface for users to suggest corrections of false topology inferences

Task 4: Improve geolocation comparison study

4aPurchase licenses for Quova and Akamai geolocation services
4bUpdate and refine our geolocation comparison methodologies
4cExtend the previous limited comparison study to include a broader range of geolocation providers
4dDisseminate the methodology and findings

Milestones

MonthTask 1
Improved topo map
Task 2
MIDAR release
Task 3
Router viz
Task 4
Geolocation
JulyEvaluate new technique
August
SeptemberRelease 2aDemo a prototype viz
OctoberPrototype topo-on-demand
NovemberProduce new ITDKDemo an annotated vizPurchase licenses
DecemberCollect data
JanuaryAnalyze data
FebruaryWeb interface to TODGraphic user interfaceAnalyze data
MarchRelease 2bWrite report
AprilRelease 2cFinish report

Deliverables

#Associated TaskDeliverable DescriptionTypeDue dateStatus
1Task 1Functionality to execute topology measurements on-demanddemoDec 2011
2Task 3Visualization of router-level topology for a given ASdemoDec 2011
3Task 2MIDAR alias resolution codesoftwareApr 2012
4Task 4Results of an expanded geolocation comparison studyreportApr 2012

Related Links

  Last Modified: Tues Jan-17-2012 12:51:46 PDT
  Page URL: http://www.caida.org/funding/cybersecurity/index.xml