you set the focus
The iLab Experience
a blended learning hands-on course concept
WWW Security / Your Exercise Topic Pitch
2018-05-8
The iLab Experience a blended learning hands-on course concept you - - PowerPoint PPT Presentation
The iLab Experience a blended learning hands-on course concept you set the focus WWW Security / Your Exercise Topic Pitch 2018-05-8 10.4. Kick Off, IPv6 1 IPv6 BGP 17.4. 2 Minilab 1 2 mini labs Advanced Wireless Playground BGP 24.4.
you set the focus
The iLab Experience
a blended learning hands-on course concept
WWW Security / Your Exercise Topic Pitch
2018-05-8
YE 1st Lecture IoT DIY HW YE Topic Outline Kick Off, IPv6 IoT Smart Space SW & measr Advanced Wireless Playground Minilab 2 YE Didactics, Tools & iAdvise YE Review Presentation YE Final Presentation, Wrap-Up
10.4. 17.4. 24.4. (1.5.) 8.5. 15.5. (22.5.) 29.5. 5.6. (12.6.) 19.6. 26.6. 3.7.BGP Minilab 1 WWW Security Your Exercise Topic Pitch summer term 2018
10.7.Giving good Feedback Prepare Your Exercise Prepare Your Exercise
10Agenda
We want your Feedback!
Individual Feedback goo.gl/YuGj74Collaborative Memory
what are the most important things to remember from the last lab?
you set the focus
The iLab Experience
a blended learning hands-on course concept
Your Exercise
Topic Pitch — the topics make sense round… May 8, 2018
create YOUR own LAB
upside-down classroom
DNS BGP
Common Ground for all Topics
Introductory Tutorial DNS & GO
that a resolver would carry out (respectively: what dig +trace does)
What next?
12pm (noon).
Now open the envelope.
Each team prepares its topic from the envelope
want to communicate to those doing your planned lab?
theoretical background will one get?
imagine as interesting work done during the hands-on?
You make it interesting…
Available Topics
DNS delegations to other zones & querying DNS with GO
We introduce the complexity of the DNS by demonstrating how often zones have nameservers in
aspects.
domains for A, NS, SOA records
MassDNS
Querying the DNS at scale is a difficult task. Tools exist that address this, e.g.
reveal, e.g. NS responsibility for many domains by big companies such as GoDaddy or outsourcing to CloudFlare.
Internet scale
it with Python
DNSSec with Linux Tools and GO
DNSSEC is an advocated technology to make the integrity of DNSSEC records
how DNSSEC is meant to be deployed and how it is deployed in practice.
domains)
Scanning DNS and DNSSec and mapping results to ASN/ Geolocations
Students bring together what they have learned in previous tasks. They are now asked to carry out an empirical study of 10,000 domains for DNS and DNSSEC records and analyze the results. They map IP addresses to ASN and geographic location.
by common NS names
RPKI Validation
Student study RPKI setup and look for problematic practices such as too large prefix definitions. The final step is to run the IP addresses through RPKI Validator, a tool that verifies an RPKI ROA given an IP
DANE-TLSA
DANE-TLSA is an IETF standard that started with huge promise and, so far, has seen little deployment. TLSA allows to define the expected certificate or public key of an HTTPS connection in a DNS record. It is an instructive example of the divergence between cryptography and
verify them.
CAA
CAA is an IETF standard that allows a domain to specify which CAs are allowed to issue a certificate for the domain. It is a simple and successful standard. In this task, students learn how to retrieve, parse, and evaluate CAA records.
cert
to first impression one might have)
Certificate Transparency and OCSP revocation
Certificate Transparency is possibly the most influential security technology
CT works and develop code to audit domain setups that use CT.
compares with what it sees in the TLS connection
go-tlsscanner, BGPStream, and AS dynamics
Routing on the Internet is decided using the BGP protocol. Since ca. 2016, CAIDA provides a live stream of BGP announcements, hence considerably extending visibility into Internet routing. In this task, students learn to look for potential anomalies in BGP (i.e. hijacks) and map the prefixes back to potentially affected domains.
hashes (we provide the go-tlsscan tool - or even the data set, because it runs very
Focussing
Lecture PreLab Lab
Details Context Narrow Broad
exam
Repetition of main learning outcome PreLab PreLab Lecture Lab Oral Attestation*
Somehow “Stable” Internal Tests Student RunFeedback Revision
~2h Didactics Lecture
didactic concept | authoring tutorial | topic selection | assignment review teams~30-35 Team Prepares Exercise
slides for talk | prelab | lab | slides | tutor support~2h First Lecture Presentation
presentation | feedback | quality alignment~20-25h
Review
review another team~2h Final Presentation
how is it now | what did you change/ learn | your take home?~2h Received Feedback Pres.
presentation | feedback | quality alignment~10-12 Revising new lab
updating learning material 9 11 13 14Giving Feedback Lecture
presentation | feedback | quality alignment 12 5 8 1 2 3 4 5 6 7 8 9 10 11 12 13 BGP IPv6 2 mini labs SEC Advanced WL 14 Your Exercise IoT1 IoT2Which Topics are Suitable?
component, …
How to find a topic?
http://thehackernews.com/2016/05/openssl-vulnerability.html?m=1Example for lab learning goals
…)
Route redirects, …)
Example workflow for a lab preparation
(VERY important: what shall the take home be?)
This is the playground: 6x Quad Core fast PC with 3-4 usable LAN interfaces per machine. 2x Cisco 881 Router 2x Ethernet switch 2x Work Place with KVM
Available Equipment Reminder
Your Exercise Sequence
Voting Outline 1st Lecture Review Final Lecture
Get topic ideas Present 1st ideas Introduce the relevant background to your topic Get and give feedback Present the main learning points and background. 5.6. 19.6. 26.6. 3.7. 10.7. 29.5. 14.5. underlined = you present something hereDidactics Giving Feedback
8.5. Intense TutoringWhat are you expected to do next?
inspiration.
Topic Template
1 2 3 4
Constructive Alignment Teaching Goals!
What is required until the five minute outline?
(lab)
Your lecture
peer grading
presentation (both talk!)
* 1st structure => mature structureplanned improvements
Expected Artefacts
your exercise
Marc-Oliver Pahl 2017 5.6. 19.6. 26.6. 3.7. 10.7. 29.5. 8.5. Intense TutoringEnjoy =)
Flickr:nist6dh