Data Center Facility/Operation Technology and Security: Difference between revisions

From OpenCompute
Jump to navigation Jump to search
Line 34: Line 34:
To start we are focusing on what a baseline physical security standard would look like for a data center, what types of communications standards and protocols would best enable secure comms of this equipment and how we best monitor it for security issues.  
To start we are focusing on what a baseline physical security standard would look like for a data center, what types of communications standards and protocols would best enable secure comms of this equipment and how we best monitor it for security issues.  


Physical Security Workstream <br>
·        Workstream Lead - [mailto:jmarcelo.campos@roxtec.com Marcelo Campos] (Roxtec)


Monitoring & Logging Workstream <br>  
'''Physical Security Workstream''' <br>
·        Workstream Lead -   [mailto:ejwong@google.com Eehern Wong] (Google)
* Workstream Lead - [mailto:jmarcelo.campos@roxtec.com Marcelo Campos] (Roxtec)


Secure Communication Guidelines Workstream <br>
'''Monitoring & Logging Workstream''' <br>
·        Workstream Lead -  [mailto:sascott@fb.com Steve Scott] (Facebook)
* Workstream Lead -  [mailto:ejwong@google.com Eehern Wong] (Google)
 
'''Secure Communication Guidelines Workstream''' <br>
* Workstream Lead -  [mailto:sascott@fb.com Steve Scott] (Facebook)
 
 
 
----
*''If you would like to participate in any of the above workstreams, please reach out to [mailto:anallathamby@fb.com Anita Nallathamby] or the corresponding workstream lead.'' 
 
*''OCP community membership is required for participation in individual workstreams.''
 
----


==Get Involved==
==Get Involved==

Revision as of 18:09, 26 February 2021

OCP-datacenter-v1-17a3x.png

Welcome

Welcome to the OCP Operation Technology and Security Sub-Project. The Industrial Control Systems (ICS) that run our data centers are frequently designed with availability as the focus rather than mitigation of security risk or vulnerability. This has presented a unique security challenge across multiple industries from manufacturing to datacenters. We find this type of equipment is often lacking security fundamentals. Security fundamentals such as modern communication, authentication and authorization mechanisms that we would expect in critical equipment attached to a network are often missing.

Security issues with this type of equipment are not unique to data centers but are present in multiple industries such as manufacturing and energy. By combining efforts across multiple organizations and industries we can begin to drive a marked increase in the security of these systems and environments. The project's scope is focused on communications, authentication, monitoring and management.


This Project is open to the public and we welcome all those who would like to be involved.
Disclaimer: Please do not submit any confidential information to the Project Community. All presentation materials, proposals, meeting minutes and/or supporting documents are published by OCP and are open to the public in accordance to OCP's Bylaws and IP Policy. This can be found on the OCP OCP Policies page. If you have any questions please contact OCP.

Project Leadership

Incubation Committee Representative

- TBD (Rackspace)

Project Lead

- Rob Coyle (PCX)
- Anand Ramesh (Google)

Sub-project Leads

- Joey Arato (Facebook)
- Jon Littell (Google)

Documents

- OTS Background

Current Workstreams

To start we are focusing on what a baseline physical security standard would look like for a data center, what types of communications standards and protocols would best enable secure comms of this equipment and how we best monitor it for security issues.


Physical Security Workstream

Monitoring & Logging Workstream

Secure Communication Guidelines Workstream



  • If you would like to participate in any of the above workstreams, please reach out to Anita Nallathamby or the corresponding workstream lead.
  • OCP community membership is required for participation in individual workstreams.

Get Involved

- OTS Mailing List
- DCF Mailing List
- OCP DCF Website
- OCP Projects Calendar

Regular Project Calls

This project meets every second Wednesday of every month at 10:30am ET

- Call Link

Recordings from Past Calls

- February 10th, 2021