21-25 September 2009
Security Monitoring in EGEE

Daniel Kouril (CESNET)

The Operational Security Coordination Team of EGEE (OSCT) provides an operational response to security threats against the EGEE infrastructure. Apart from handling security incidents, the group also focuses on other areas, with security monitoring being one of the key ones. On the poster we will present the latest achievements of the monitoring activity of the OSCT, as well as future work plans.

In particular, we will present a campaign using system Pakiti to acquire information about security patches applied in EGEE. We will describe how the Pakiti server collects and evaluates data about packages installed and outline its further development.

Utilizing results of collaboration between the OAT and OSCT, we will also demonstrate ways how security-related probes can be integrated with the new EGEE monitoring framework based on Nagios.

Finally, tools that trace users' activities on the grid using the L&B service and log files generated by grid components will be presented.

