23.05.2015 Views

Space Link Extension - Service Management - CCSDS

Space Link Extension - Service Management - CCSDS

Space Link Extension - Service Management - CCSDS

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

DRAFT RECOMMENDED STANDARD FOR SPACE LINK EXTENSION SERVICE MANAGEMENT<br />

2.4.2.7 Auditing<br />

This SLE-SM Recommended Standard does not define explicit security auditing<br />

requirements or capabilities. Security auditing, if required, is expected to be negotiated and<br />

implemented bilaterally between the spaceflight mission and the service provider.<br />

2.4.3 POTENTIAL THREATS AND ATTACK SCENARIOS<br />

The SLE-SM services do not carry communications that originate or terminate at the<br />

spacecraft, so compromise of the SLE-SM services does not allow an attacker to directly<br />

attack the spacecraft. Rather, the threat is one of denial of service.<br />

Without the appropriate security measures, attackers may masquerade as legitimate users to:<br />

a) delete in-place configuration profiles or Trajectory Predictions that the legitimate<br />

users expect to be in place when they attempt to create <strong>Service</strong> Packages that<br />

reference those entities;<br />

b) intercept, modify, and reissue a Create<strong>Service</strong>PackageInvocation such<br />

that the resulting invocation is unschedulable or creates a <strong>Service</strong> Package that is<br />

unusable by the MDOS;<br />

c) replace or delete existing <strong>Service</strong> Packages;<br />

d) cause the creation of bogus <strong>Service</strong> Packages that tie up resources that are needed by<br />

spaceflight missions;<br />

e) cause switches to alternate scenarios that are not consistent with reality, causing loss<br />

of space link sessions (e.g., switching to a launch slip scenario when the launch<br />

actually occurs on time).<br />

2.4.4 CONSEQUENCES OF NOT APPLYING SECURITY<br />

The consequence of not applying security to the SLE-SM services is possible denial of<br />

service. Denial of service can result in degraded mission performance, increased operations<br />

costs, and even loss of mission if service is denied during a critical mission phase.<br />

<strong>CCSDS</strong> 910.11-R-2 Page 2-16 March 2008

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!