Skaion logo

powered by FreeFind

 

Skaion Services

While Skaion's primary focus is on customization and support of its Traffic Generation System for system testing and analysis, we provide other consulting services in areas of information technology security analysis, test and evaluation:

  • Test and Evaluation - application of intrusion detection system (IDS) evasion techniques and testing under load, etc. to systems in the Skaion network testbed;

  • Malicious Scenario Creation - development of adversary models and exploitation scenarios, producing scripts to implement that on a testbed network (currently a part of Skaion's work in support of ARDA BAA 03-03-FH);

  • Traffic Characterization - use of network analysis tools to characterize network traffic (such network analysis is performed in support of traffic generation with the TGS, but could be delivered as its own service).

 

Skaion Corporation Capabilities Brief

 

Skaion Network Research Testbed

Skaion hosts a pre-installed testbed of:

  • two linux routers, one inside and one outside the firewall
  • one linux firewall
  • over 9,000 simulated web servers
  • six multi-user traffic generators
  • two Linux server victim hosts
  • two Windows server victim hosts (a web server, an Exchange server/domain controller)
  • four Windows user hosts with single-user traffic generators installed

Skaion Network Research Testbed

Network traffic is generated via the Skaion TGS, and background traffic can include malicious traffic.

Installed sensors include: netflow, tcpdump, Dragon, Snort, application logs, some host-based logs

A control network is available for control of applications, and the testbed can be expanded per customer requirements.

The testbed can be used for scenario staging, or to run background traffic during a client scenario

Traffic collected during testbed exercises can be shipped as tcpdump files on hard drives, providing hundreds of gigabytes of data for analysis.

Skaion is also able to create novel exploits for customers on demand, for testing systems on zero-day attacks.

 



 Home | About | Products | Services | Research | News | Contact Us