The development is quite finished. I'm going to update KistaIP with the new versions and test so that it is actually working.
Not so much to report other than that the development phase continued. Much of my time have been used for unrelated work tasks, but in the end of the month I've finally stared to see the end of the tunnel.
Not so much to report other than that the development phase continued. One idea that I'm working on is to implement a XML protocol over E-mail, so that when a user certificate is created, data can automatically be transfered to the service provider.
This month I've continued the development of the certificate creation part. I was also investigating I and how I could use parts of the Oasis v2 software, but sadly it seems I will have to develop most of the things I need by myself. Thus development on the tool I have called RUM - Radius User Management has started. RUM will use a SQL database for managing users of Radius. The idea is to make my life as an admin/operator as easy as possible. Also the user activation process should become quicker.
Work on the auth system is progressing. This month have mostly been spent testing the system and then correcting bugs or even changing the basic model, trying to adapt according to the feedback. The first "normal" users were connected in mid-month. All 24 apartments of KistaIP house 12 are now required to authenticate with certificates. The tenants gave me valuable feedback and changes have been made accordingly. I consider the testing to have been successful.
I think it is worth mentioning here, since I think it relates somewhat to my thesis, that Im now running a "CSD" project at KTH in the role of principal. The project is about creating an Open Source Portal system and trying to create a billing system that potentially can create a new business model for Operators of Access Networks. The project started in mid-January and will continue until beginning of May. I hope to be able to use a prototype of the portal at KistaIP within a few months.
This month I spent most time getting the new authentication system basically running, which includes setting up Radius servers, creating CA chains, developing scripts, etc. I also had another set-back. The small company that I intended to help, by setting them up as the first commercial service using the new authentication system, suddenly quit (lack of funds probably).
I put myself as the first pilot of the new auth system. In the end of the month I was successfully connected 24/7 while automatically being authenticated without me needing to intervene. I'm quite optimistic about the potential for this system.
Much of my time during this month have been used in work not
directly related to this thesis.
Anyway I have been working on several different ideas for the next step
in the development
of the ON model. One of the ideas might solve both the "keeping local
traffic local"-problem and the MAC spoofing problem but it is yet purly
theoretical.
I'm also working on the design for a distribution model of the
certificates soon to be used at the KistaIP network - used for
implementing the IEEE 802.1x port based authentication protocol. I
think I have a solution that allows the practical use of EAP-TLS that
allow authentication essentially automatically without user
intervention and no passwords - i.e. you cannot forget the password
because you have none and thus users will stop using terribly insecure
passwords (e.g. names or dictionary words).
I'm changing the direction of the thesis back to the original
idea concerning services and the continued development of the Open
Operator Neutral Network (ON) model
by TSlab at KTH.
The main reason for this is that I realized that the sources
of info from the "swedish government's group on IT issues" are to few
and lack
any real depth. Thus I deem that I cannot do an analysis that
contributes much of value.
Another reason for me to switch back is that I have worked for many
years already
with the ON model of TSlab and I know I can make substantial
contributions to its
development.
Investigating sources of info about the work of the swedish
government's group on IT issues.
Investigating possibilities for service providers to distribute video
by broadcast and Video on Demand to customers using Set-Top-Boxes
(STB).
Especially free/inexpensive/open source solutions are of interest. Also
investigating how to set up a portal system intended for STBs. Setting
up a lab environment for testing.
Much of my time is required in preparing, then attending, the Swedish ICT week and a "mini fair" where network operators and service providers get to meet each other while demonstrating services.
Version 1.13 of ODBS online... but I'm not yet finished.
Mapping continues... Estimated to be about 80% finished.
Setback! The 'first' service providing company quits after several
years of trying to reach profitability.
Successfully helped one company reach new markets, but they only
connect through the Internet - not through the metropolitan network,
which is actually of small interest in this project.
Version 1.0 of ODBS online. There are still improvements
strongly requested so development continues.
Mapping continues... Estimated to be about 70% finished.
Still investigating how to connect...
Version 0.9 of ODBS online. Me and my co-workers actively use
it in day to day operation.
Mapping continues... Estimated to be 50% finished.
Investigating more potential broadband service providing companies.
Getting close to launching first service in one metropolitan network.
Beta of ODBS online. Not quite usable yet.
Mapping continues. Estimated to be 30% finished.
Working with one first potential company providing services in
broadband networks. Focussing on one metropolitan network which seems
especially suited for deployment new services. Investigating what
is required for actual launch of commercial testing of the first
service.
Building a data management system based on PHP4 and any SQL
database. From now called ODBS - Online DataBase System.
Harvesting data and mapping the metropolitan networks of sweden.
Establishing contacts with network operators and service providers.
Start of work. Investigating/planning how to build a system
which allows
easy but powerful access to large amounts of data.
Investigating how
to connect service providers to different metropolitan networks.
Investigating potential sources for mapping of metropolitan networks.