Publications till 2010
- Gaps in standardisation related to resilience of communication networks. The study provides five recommendations for future standardisation activities. In addition, the report identifies a number of detailed areas where the SDOs are expected to work in order to facilitate greater assurance of resilience in networks.
- Study on "the costs of DNSSEC deployment". Deploying a new technology requires investment in software, hardware and human resources. In the case of DNSSEC the cost of these investments is not well defined and this uncertainty can hinder its deployment. This study analyses the costs involved in deploying DNSSEC in a registry, registrar, zone operator or recursive resolver operator.
- Stocktaking report on the “Technologies enhancing resilience of public communication networks in the EU member states”. This report presents the results of a survey conducted to a number of service providers in the EU on the state-of-the-art of deployment of three technologies, MPLS, IPv6 and DNSSEC and their impact on improved network resilience. The report also addresses open issues identified by the representatives of the service providers interviewed.
- "Resilience Features of IPv6, DNSSEC and MPLS and Deployment Scenarios". In this study an overview of the characteristics of the selected technologies is given, their public eCommunication network's resilience enhancing features are analysed and other properties that one has to be aware of in order to make a decision about their deployment are outlined. Furthermore, a number of deployment scenarios for the technologies are presented.
- Privacy Features of European eID Card Specifications. The aim of this paper is to allow easy comparison between privacy features offered by European eID card specifications and thereby to facilitate identification of best practice.
- Security Issues in the Context of Authentication Using Mobile Devices. Throughout this paper we will look at different use-cases for electronic authentication using mobile devices. We will identify the security risks which need to be overcome, give an opinion about their relevance, and present mechanisms that help mitigate these risks.
- Mapping IDABC Authentication Assurance Levels to SAML v2.0. This report documents ENISA's evaluation of the feasibility of using SAML (as well as other alternative machine readable formats) to express IDABC Authentication Assurance Levels.
- Pan-European eIDM initiatives. This report charts the origins and scope of the ambitions for European eID interoperability, and looks specifically at how these are reflected in three specific initiatives.
- “Technologies for Improving the Resilience of the Networks”, article written by P. Saragiotis and D. Ikonomou at ENISA Quarterly Review, Vol. 5, No. 1, Jan-Apr 2009.
- “Protecting the Domain Name System”, article issued by P. Saragiotis and D. Ikonomou at ENISA Quarterly Review, Vol. 4, No. 4, Oct-Dec 2008
Positionpapers till 2010
- "How to strengthen the EU legislation, improve international cooperation and secure the growing market of internet services", January 2008. Position paper presented to the LIBE Committee of the European Parliament at the public hearing entitled "Data Protection and Search Engines on Internet (eg: the Google-DoubleClick case)". ENISA was asked to present a position statement on strengthening EU legislation, improving international cooperation and securing the growing market of internet services.
- "Security Issues and Recommendations for Online Social Networks", October 2007. Several SNS are now among the top 10 most visited websites globally. The commercial success of the multi-billion Euro SNS industry depends heavily on the number of users it attracts. Combined with the strong human desire to connect, this encourages design and online behaviour where security and privacy are not always the first priority. Users are often not aware of the size or nature of the audiences accessing their information and the sense of intimacy created by being among digital friends often leads to a ‘digital hangover’ – disclosures and digital “memories” that cannot be forgotten the morning after.
Presentations till 2010
- 'Technologies with the potential to enhance resilience - An overview on the activities of ENISA', Demosthenes Ikonomou, 5th International Conference on Critical Information Infrastructures Security, Athens 23-24, September, 2010.
- "Towards a Comprehensive Study of Supply Chain Integrity", Slawomir Gorniak, TIPS'09 (in conjunction with IEEE Globecom 2009), Honolulu, Hawaii, USA, December 2009
- "The costs of DNSSEC deployment", Panagiotis Saragiotis, Internet Days 2009, DNSSEC tools and experiences workshop, 5 November, Stockholm, Sweden
- “Technologies to improve public eCommunications resilience”, Panagiotis Saragiotis at DNSSEC and IPv6 deployment workshop, organized by .SE, Stockholm, Sweden, October 2008
- "Security at the Digital Cocktail Party", Slawomir Gorniak, SECURE 2008 conference, Warsaw, Poland, October 2008
- "ENISA Activities", L. Marinos and D. Ikonomou at the Industry Seminar on Information Security, organised by ISO/IEC JTC1 SC27, Limassol, Cyprus, October, 2008
- "Enisa 2008", International conference for ccTLD registries and registrars of CIS, Central and Eastern Europe, Sofia, Bulgaria, September 2008
- "Design considerations for improving networks resilience", by Panagiotis Saragiotis, NIS'08 Summer School, Greece, September 2008
- "Improving Resilience in Public eCommunication Networks", Panagiotis Saragiotis, at Inbox-Outbox, London, UK
Video till 2010
- ENISA video spot on resilience, May 2009.
- Presentations and the videos of the Conference on 'TRUST IN THE INFORMATION SOCIETY', 10-11 February 2010, León, Spain.
Press releases till 2010
- Improving resilience: 3 recommendations, 28th May 2009
- Privacy and eID, 3rd February 2009
- Report on European eIDM, 29th January 2009
- Access everywhere - secure nowhere, 21st November 2008
- EU Agency investigates the potential to improve Internet security by protecting Domain Name Systems (DNS), 16th September 2008