NSDL security tasks for fraud detection
Submitted by shuvam on Fri, 2009-05-08 19:52
NSDL has asked us to implement (i) extended logging of Web access details, (ii) geo-location, and (iii) implementing user-track cookies. This is being done currently by Prashant Keshvani. In a week's time, Prashant Shendre will join it.
»
- Login to post comments
- Printer-friendly version
- Send to friend
Meeting with Shuvam on 21 May 2009
Review of the tasks done in last one week. A task list for
next few days is as follows. Next status will be exchanged
on Monday, 25 May 2009.
mod_dumpio for following:
combo and build in-memory hash to log information only once.
such combo key. This time stamp can be used later for garbage
collection.
opened once in a life time of the Apache
certain MIME types only. (eg. file attachments upload shall
not be logged at all.
certain size
sanitizes the i/p data for before processing request, log, it,
etc.
modify data in any way, even in corner cases.
stored in file contains binary data. If yes, make copy
of the string, and modify the copy to replace it with
"X" before logging. In such case, also add extra header
X-DUMPIO-BINARY to indicate the same.
(even if it is dynamic content), MIME type and full HTTP
response header have to be logged.
and do comparative study, including features, cost, license,
etc.
product. Before that, discuss those screens with Shuvam
by preparing it on the paper.
and action to be taken for exceptional conditions -- e.g.
session id is null. In case session id does not exists, log
it explicitly irrespective of what is kept in the hash array.
Meeting with Shuvam on 12 May 2009
This documents requires re-formatting. I will figure out
how to use UL and LI tags within Drupal and correct it.
-- kishan
Following tasks have to be performed:
to downstream components
5 stratum and 2 ref
hostname to IP address mapping must work.
components?
Homework for preparing presentation?
Presentation to NSDL
What to inform Yatin?
meeting
Drill-down report
A diagram have to be inserted here. Broadly it covers
following and drill down can happen from any link to
any other link for a given duration.