The most trusted source for computer security training, certification and research.



select a course
Lake Buena Vista, FL - February 1 - 9, 2009
Global Information Assurance Certification

SANS is a great place to enhance your technical and hands on skills and tools. I thoroughly recommend it.
-Aaron Waugh, Datacom NZ Ltd.

SPECIAL

Introduction to Control System Security for IT Professionals

Wednesday, February 4, 2009 : 9am - 5pm
Department of Homeland Security CSSP

The Department of Homeland Security National Cyber Security Division and Department of Energy NSTB in conjunction with the SANS SCADA Security Summit 2008 in Orlando, Fl, are offering two training courses on control systems cyber security. These training courses are instructed by industry experts and provide participants an enhanced understanding of the importance of control systems cyber security. Class seats are limited and registration will be closed once filled. These courses are free of charge to all attendees based upon available space. Registration limited to one course per person.


Who should attend: Technical staff that have IT security responsibilities or background, but with little or no previous experience in critical infrastructure control systems and their relationship to modern IT networks.

This course consists of several modules providing students with basic control systems definitions, identification of key components and protocols to major applications and architectures within critical infrastructure and key resources (CI/KR) sectors. Control systems network architectures, cyber threats and vulnerabilities, and mitigations will also be presented. The final training module addresses current and emerging government and industry activities focus on risk reduction and mitigation.

  • Detailed Topics Include
    • What happened to IPv5?
    • Vendor Support - Firewalls
    • Vendor Support - IDS/IPS
    • Addresses, Anycast and Autoconfiguration
    • QOS Support
    • Jumbo Payload
    • IPv6 Addresses
    • ":0000:" ambiguity
    • Address Management
    • IPv6 Address Breakdown
    • EUI-64
    • IPv6 Header
    • Traffic Class, Flow Label
    • IPv6 Tools, ping 6, tracert - 6
    • Hop-by-Hop Header
    • Padding Options
    • Fragmentation
    • IPv6 over Ethernet and ICMPv6
    • Using IPv6 across Ipv4 Networks.
    • Using IPv4 over IPv6 Networks.
    • DNS and IPv6, A6 Records
    • Reverse Resolution
    • Neighbor Advertisements
    • Autoconfig Security
    • Router Advertisement Packets
    • Dual Stack
    • ISATAP Interface IDs
    • Teredo
    • TRT (RFC3142)
    • RH Attacks
    • Covert IPv6 Header Channel
    • Joe 6 Pack
    • IPv6 Filtering
    • IPv6 and Snort 2.8
    • Ipvar, portvar
    • Mobile IPv6

SANS provides the most exhaustive, comprehensive security source available. Bring your hardhat, you're going to work!
-Richard Williams, Symark Software