Reference no: EM133879735
Applied Cryptography
Security Project
Project Overview
Your goal is to design, build, test and analyse secure client/server applications using different cryptographic ciphers, protocols and principles.
Important aspects of this project include:
Using a variety of cryptographic mechanisms, e.g., symmetric key encryption, public key authentication, to build a secure application.
Applying industry tools to build secure applications, e.g., OpenSSL, Python Crypto primitives.
Observing and analysing cryptographic protocols, e.g., packet capture with Wireshark.
Justifying the selection of cryptographic algorithms, parameters, and protocols.
Working in a team to design, test and analyse security systems.
Complex Computing Problems
While most knowledge and skills needed to complete the project are covered in the unit in some form, you will have to research and explore them further to complete the project. That research may include discussions with the Unit Coordinator or other related experts.
The project requirements are deliberately broad and open-ended. Your task is to consider the requirements, including conflicting requirements (e.g., functionality vs performance vs security vs time available), explore various approaches (including industry best practices), and narrow down the requirements. This will likely be an iterative process, where you will develop a design, test, and then realise requirements (and subsequently design and implementation) may need adjusting. Along the way, you will encounter issues you have not frequently faced before and will need to apply your problem- solving skills to address those issues. The Unit Coordinator will act as a client and will clarify requirements when needed. This project requires you to solve a complex computing problem, which is a key attribute expected of ICT graduates (as defined by the Australian Computer Society and the Seoul Accord, which gives recognition to ICT degrees worldwide). Looking for last-minute assignment help? Grab it now!
What do you have to do?
You are required to build, test and analyse the following client/server applications:
Application 1. CSV Secure File Sync: a Python-based client/server application that allows client users to store CSV data files locally and on a server in a secure manner.
Application 2. Secure Web App: A web application with a server using HTTPS in two different configurations: a "secure" configuration using recommended cryptographic mechanisms; and an "insecure" configuration that exposes one or more weaknesses.
REPORT
The report, in the form of Markdown files on your GitHub repository, must include:
Design of the CSV Secure File Sync software, including selection of security mechanisms, diagram of protocol, and justification of design choices.
Design of the Secure Web App, including description of the setup, design choices and parameter selection for the web server (both secure and insecure settings).
A brief overview of scripts, code, configuration files included in the GitHub repository that were used for build or testing of the application.
Test results, including packet capture files, screenshots and descriptions, demonstrating successful operation of each application.
Detailed explanation of the security protocols used for each application, referring to cryptographic mechanisms used, specific parameters and relevant packet captures.
Analysis of the security of the applications, including identification of flaws or possible attacks (with detailed description of how those attacks could be performed).
Each student must summarise and reflect on their contributions.
|
Discuss how the issue affects system functionality
: Discuss how the issue affects system functionality, data management, and the communication of requirements to stakeholders.
|
|
What type of system-organization of compensation
: If you were to work at an advertising agency, what type of system / organization of compensation, for example, fixed fee system, cost-plus agreement,
|
|
Specific resources you will use for your environmental scan
: My target industry or company, and position will be...? List specific resources you will use for your environmental scan.
|
|
Discuss strategies that promote trust between patients
: For better results with his clients, J.J must secure trust with his patients. Discuss strategies that promote trust between patients and health care providers.
|
|
Design, build, test and analyse secure client
: COIT13240 Applied Cryptography, CQUniversity - design, build, test and analyse secure client/server applications using different cryptographic ciphers, protocol
|
|
What fears do you have regarding seeing psychiatric patients
: What skills do you currently have that you believe will be helpful? What fears do you have regarding seeing psychiatric patients?
|
|
How you plan to introduce your plan
: Implementation Plan: Include information about how you plan to introduce your plan and teach students and paraeducators the rules and procedures.
|
|
What recommendations would you make
: We learned about how ERP systems have changed and evolved based on the needs of the organization. What recommendations would you make?
|
|
Risk for the consumer in possibly making wrong decision
: How does each company deal with the question of the service quality offered and the risk for the consumer in possibly making a wrong decision
|