|
UCR's
Communications Worker Rate Methodology Implemented and in Production.
Based on the UCSD Communications Worker model,
UCR has implemented a Communications Worker fee to recover network
operations and renewal & replacement costs. C&C's Communications
Worker fee (unlike UCSD's) does NOT recover costs associated with
traditional voice services (dial tone, instruments, etc.). C&C
has posted two journals to the general ledger and revenue is currently
tracking to projections. The narrative supporting the methodology
is posted at http://cnc.ucr.edu/communications/comm_narrative.pdf.
Background, rates, and other information can be found at http://cnc.ucr.edu/communications/recharge_program.htm.
Packeteer Traffic Shaping System Installed;
Cisco VPN Implementation Pending.
C&C has acquired and installed a Packeeter
Traffic Shaping box. Please visit http://www.packeteer.com/.
The unit will be used exclusively for dorm traffic and will help
C&C appropriately allocate and manage bandwidth for some 5,000
student housing ports. C&C has also acquired (and will install
shortly) a VPN server for campus-wide deployment. The unit will
not only be utilized for off-campus (remote) secure connectivity,
but for wireless authentication and security as well.
Go to Packeteer Traffic Shaping System
Alcatel Phone Switch Operational and
Implementation Nearing Completion.
UCR's new Alcatel phone switch is now operational.
C&C is supporting a mix of Alcatel digital phones, Mitel and
Merlin "legacy" multi-line phones, and about 6,000 analog
devices. C&C will upgrade the remaining campus voice infrastructure
during the next four years with a mix of technologies depending
on the emergence of computer telephony, IP video conferencing,
etc. Currently, C&C and Alcatel (and Verizon, the implementation
partner) are negotiating concerning final implementation issues
and the reconciliation of "items delivered" versus "items
bid". This was a huge, very difficult undertaking for C&C,
Alcatel, and Verizon.
Intel Based Firewall Development Completed
and Product Deployed.
C&C has completed development of an Intel
/ Linux firewall and has deployed it into UCR's production network.
The firewall is designed to protect specific campus subnets with
particularly important data / systems. C&C has also submitted
a plan to Academic Planning and Budget that would allow C&C
to hire an analyst on a fee-for-service basis to support the distributed
firewall.
The department firewall hardware is a single-board
computer in a rack-mount enclosure (850MHz. Intel CPU, 256Mb of
memory, and four 10/100 interfaces). The hardware is using FreeBSD
4.6 as an OS, and is set up to be a bridging firewall. In this
mode one ethernet interface is designated as unprotected, and
another is the protected, or inside interface, and the two are
joined by kernel code that looks at each incoming packet and compares
it to rules that determined whether the packet is to be allowed
through or not.
The rules are part of a package called IP filter,
and provide much flexibility in constructing rules to meet the
needs of individual departments. In general it is envisioned that
all traffic will be allowed from a department out (to UCR's LAN
or the internet), but much tighter restrictions will be used to
examine and restrict incoming traffic.
The systems will also
be built to be easy to manage and maintain. Methods will be in
place to make rules easy to change and implement (with a way to
quickly change back to the previous ruleset in case of disaster),
and a change control system will track rule modifications. The
operating system itself will also be tracked, so that security
updates or significant OS releases can be easily implemented.
Finally, there will be a way to monitor the firewalls to see number
of packets dropped and other metrics so that baseline characteristics
of each department firewall can be plotted.
New Residence Hall now On-Line.
The Pentland II Residence Hall is now On-Line.
C&C has added an additional 700 10/100 ports. The total number
of student 10/100 ports supported by C&C is now over 6,200.
Recruitment Underway for Network Security
Analyst.
C&C is recruiting for a network security
analyst. This position is in addition to the firewall analyst
that will be hired on a fee-for-service basis.
|