<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE raweb PUBLIC "-//INRIA//DTD " "raweb2.dtd">
<raweb xml:lang="en" year="2011">
  <identification id="madynes" isproject="true">
    <shortname>MADYNES</shortname>
    <projectName>Management of dynamic networks and services</projectName>
    <theme-de-recherche>Networks and Telecommunications</theme-de-recherche>
    <domaine-de-recherche>Networks, Systems and Services, Distributed Computing</domaine-de-recherche>
    <structure_exterieure type="Labs">
      <libelle>Laboratoire lorrain de recherche en informatique et ses applications (LORIA)</libelle>
    </structure_exterieure>
    <structure_exterieure type="Organism">
      <libelle>CNRS</libelle>
    </structure_exterieure>
    <structure_exterieure type="Organism">
      <libelle>Université de Lorraine</libelle>
    </structure_exterieure>
    <UR name="Nancy"/>
    <keywords>
      <term>Ambient Computing</term>
      <term>Monitoring</term>
      <term>Network Protocols</term>
      <term>Peer-to-Peer</term>
      <term>Security</term>
      <term>Self-Management</term>
    </keywords>
    <moreinfo/>
  </identification>
  <team id="uid1">
    <person key="madynes-2006-idm72374457424">
      <firstname>Olivier</firstname>
      <lastname>Festor</lastname>
      <affiliation>INRIA</affiliation>
      <categoryPro>Chercheur</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Team Leader, Research Director (DR) 20% of his time since November 1st, 2011, INRIA</moreinfo>
      <hdr>oui</hdr>
    </person>
    <person key="madynes-2006-idm72374453680">
      <firstname>Isabelle</firstname>
      <lastname>Chrisment</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Professor, ESIAL, Henri Poincaré - Nancy 1 University</moreinfo>
      <hdr>oui</hdr>
    </person>
    <person key="calligramme-2006-idm133559971616">
      <firstname>Céline</firstname>
      <lastname>Simon</lastname>
      <affiliation>INRIA</affiliation>
      <categoryPro>Assistant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>INRIA</moreinfo>
    </person>
    <person key="madynes-2006-idm72374443216">
      <firstname>Laurent</firstname>
      <lastname>Andrey</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Associate Professor, Nancy 2 University</moreinfo>
    </person>
    <person key="madynes-2006-idm72374419456">
      <firstname>Rémi</firstname>
      <lastname>Badonnel</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Associate Professor, ESIAL, Henri Poincaré - Nancy 1 University</moreinfo>
    </person>
    <person key="madynes-2006-idm72374440480">
      <firstname>Laurent</firstname>
      <lastname>Ciarletta</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Associate Professor, ENSMN - Lorraine National Polytechnic Institute</moreinfo>
    </person>
    <person key="madynes-2010-idm163901556320">
      <firstname>Abdelkader</firstname>
      <lastname>Lahmadi</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Associate Professor, ENSEM - Lorraine National Polytechnic Institute</moreinfo>
    </person>
    <person key="madynes-2006-idm72374434624">
      <firstname>Emmanuel</firstname>
      <lastname>Nataf</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Associate Professor, Nancy 2 University</moreinfo>
    </person>
    <person key="madynes-2006-idm72374431984">
      <firstname>André</firstname>
      <lastname>Schaff</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Enseignant</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Professor, ESIAL,Henri Poincaré - Nancy 1 University</moreinfo>
      <hdr>oui</hdr>
    </person>
    <person key="madynes-2010-idm163901543568">
      <firstname>Alexandre</firstname>
      <lastname>Boeglin</lastname>
      <affiliation>INRIA</affiliation>
      <categoryPro>Technique</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Engineer, Industrial grant</moreinfo>
    </person>
    <person key="madynes-2006-idm72374408832">
      <firstname>Mohamed</firstname>
      <lastname>Nassar</lastname>
      <affiliation>INRIA</affiliation>
      <categoryPro>Technique</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Research Engineer, Industrial grant (-08/2011)</moreinfo>
    </person>
    <person key="madynes-2010-idm163901531232">
      <firstname>Cyril</firstname>
      <lastname>Auburtin</lastname>
      <affiliation>INRIA</affiliation>
      <categoryPro>Technique</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Engineer, Industrial grant (-11/2011)</moreinfo>
    </person>
    <person key="madynes-2011-idm124047254608">
      <firstname>Andrea</firstname>
      <lastname>Oroseanu</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>Technique</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Engineer, Industrial grant (-06/2011)</moreinfo>
    </person>
    <person key="madynes-2008-idm507633090576">
      <firstname>Sheila</firstname>
      <lastname>Becker</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Co-tutelle with University of Luxembourg (10/2008- )</moreinfo>
    </person>
    <person key="madynes-2011-idm124047248464">
      <firstname>Martin</firstname>
      <lastname>Barrere</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Industrial grant (01/2011- )</moreinfo>
    </person>
    <person key="madynes-2009-idm231958288896">
      <firstname>Oussema</firstname>
      <lastname>Dabbebi</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Industrial grant (10/2009- )</moreinfo>
    </person>
    <person key="madynes-2007-idm860520384">
      <firstname>Tom</firstname>
      <lastname>Leclerc</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Industrial grant with regional co-sponsoship (-09/2011)</moreinfo>
    </person>
    <person key="madynes-2007-idm860523488">
      <firstname>Julien</firstname>
      <lastname>Siebert</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>MADYNES-MAIA cooperation. Industrial grant with regional co-sponsoship (-09/2011 )</moreinfo>
    </person>
    <person key="madynes-2009-idm231957303456">
      <firstname>Juan Pablo</firstname>
      <lastname>Timpanaro</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Industrial grant with regional co-sponsoship (01/2010- )</moreinfo>
    </person>
    <person key="madynes-2007-idm860494368">
      <firstname>Gérard</firstname>
      <lastname>Wagener</lastname>
      <affiliation>UnivFr</affiliation>
      <categoryPro>PhD</categoryPro>
      <research-centre>Nancy</research-centre>
      <moreinfo>Co-tutelle with University of Luxembourg (-09/2011)</moreinfo>
    </person>
  </team>
  <presentation id="uid2">
    <bodyTitle>Overall Objectives</bodyTitle>
    <subsection id="uid3" level="1">
      <bodyTitle>Overall Objectives</bodyTitle>
      <p>The goal of the MADYNES research group is to design, to validate and to deploy novel management and security paradigms together with supporting software architectures and solutions that are
      able to cope with the growing dynamicity and the scalability issues induced by the ubiquitous Internet.</p>
      <p>The project develops applied research activities in the following areas :</p>
      <simplelist>
        <li id="uid4">
          <p noindent="true"><b>Autonomous Management</b>:</p>
          <simplelist>
            <li id="uid5">
              <p noindent="true">the design of models and methods enabling 
              <b>self organization and self-management</b>of networked entities and services,</p>
            </li>
            <li id="uid6">
              <p noindent="true">the evaluation of management architectures based on 
              <b>peer-to-peer and overlay principles</b>,</p>
            </li>
            <li id="uid7">
              <p noindent="true">the investigation of novel approaches to the representation of 
              <b>management information</b>,</p>
            </li>
            <li id="uid8">
              <p noindent="true">the modeling and 
              <b>performance evaluation</b>of management infrastructures and activities.</p>
            </li>
          </simplelist>
        </li>
        <li id="uid9">
          <p noindent="true"><b>Functional Areas</b>instanciate autonomous management functions :</p>
          <simplelist>
            <li id="uid10">
              <p noindent="true">the 
              <b>security plane</b>where we focus on buidling closed-loop approaches to protect networking assets,</p>
            </li>
            <li id="uid11">
              <p noindent="true">the 
              <b>service configuration</b>where we aim at providing solutions covering the delivery chain from discovery to delivery in dynamic networks,</p>
            </li>
            <li id="uid12">
              <p noindent="true"><b>monitoring</b>where we aim at building solutions to characterize and detect unwanted service behaviour.</p>
            </li>
          </simplelist>
        </li>
      </simplelist>
      <p>The next generation Internet is the main application field of our research. Its architecture and the services that it is planned to support offer all dynamic and scalability features that we
      address in the complementary research directions of the project.</p>
    </subsection>
  </presentation>
  <fondements id="uid13">
    <bodyTitle>Scientific Foundations</bodyTitle>
    <subsection id="uid14" level="1">
      <bodyTitle>Evolutionary needs in network and service management</bodyTitle>
      <p>The foundation of the MADYNES research activity is the ever increasing need for automated monitoring and control within networked environments. This need is mainly due to the increasing
      dependency of both people and goods towards communication infrastructures as well as the growing demand towards services of higher quality. Because of its strategic importance and crucial
      requirements for interoperability, the management models were constructed in the context of strong standardization activities by many different organizations over the last 15 years. This has
      led to the design of most of the paradigms used in today's deployed approaches. These paradigms are the Manager/Agent interaction model, the Information Model paradigm and its container,
      together with a naming infrastructure called the Management Information Base. In addition to this structure, five functional areas known under the FCAPS
      <footnote id="uid15" id-text="1">Fault, Configuration, Accounting, Performance and Security</footnote>acronym are associated to these standards.</p>
      <p>While these models were well suited for the specific application domains for which they were designed (telecommunication networks or dedicated protocol stacks), they all show the same
      limits. Especially they are unable:</p>
      <orderedlist>
        <li id="uid16">
          <p noindent="true">to deal with any form of dynamicity in the managed environment,</p>
        </li>
        <li id="uid17">
          <p noindent="true">to master the complexity, the operating mode and the heterogeneity of the emerging services,</p>
        </li>
        <li id="uid18">
          <p noindent="true">to scale to new networks and service environments.</p>
        </li>
      </orderedlist>
      <p>These three limits are observed in all five functional areas of the management domain (fault, configuration, accounting, performance and security) and represent the major challenges when it
      comes to enable effective automated management and control of devices, networks and services in the next decade.</p>
      <p>MADYNES addresses these challenges by focusing on the design of management models that rely on inherently dynamic and evolving environments. The project is centered around two core
      activities. These activities are, as mentioned in the previous section, the design of an autonomous management framework and its application to three of the standard functional areas namely
      security, configuration and performance.</p>
    </subsection>
    <subsection id="uid19" level="1">
      <bodyTitle>Autonomous management</bodyTitle>
      <subsection id="uid20" level="2">
        <bodyTitle>
          <b>Models and methods for a self-management plane</b>
        </bodyTitle>
        <p>Self organization and automation are fundamental requirements within the management plane in today's dynamic environments. It is necessary to automate the management processes and enable
        management frameworks to operate in time sensitive evolving networks and service environments. The automation of the organization of devices, software components, networks and services is
        investigated in many research projects and has already led to several solution proposals. While these proposals are successful at several layers, like IP auto-configuration or service
        discovery and binding facilities, they did not enhance the management plane at all. For example, while self-configuration of IP devices is commonplace, no solution exists that provides strong
        support to the management plane to configure itself (e.g. finding the manager to which an agent has to send traps or organizing the access control based on locality or any other context
        information). So, this area represents a major challenge in extending current management approaches so that they become self-organized.</p>
        <p>Our approach is bottom-up and consists in identifying those parameters and framework elements (manager data, information model sharing, agent parameters, protocol settings, ...) that need
        dynamic configuration and self-organization (like the address of a trap sink). For these parameters and their instantiation in various management frameworks (SNMP, Netconf, WBEM, ...), we
        investigate and elaborate novel approaches enabling fully automated setup and operation in the management plane.</p>
      </subsection>
      <subsection id="uid21" level="2">
        <bodyTitle>
          <b>Design and evaluation of P2P-based management architectures</b>
        </bodyTitle>
        <p>Over the last years, several models have emerged and gained wide acceptance in the networking and service world. Among them, the overlay networks together with the P2P paradigms appear to
        be very promising. Since they rely mainly on fully decentralized models, they offer excellent fault tolerance and have a real potential to achieve high scalability. Mainly deployed in the
        content delivery and the cooperation and distributed computation disciplines, they seem to offer all features required by a management framework that needs to operate in a dynamic world. This
        potential however needs an in depth investigation because these models have also many characteristics that are unusual in management (e.g. a fast and uncontrolled evolution of the topology or
        the existence of a distributed trust relationship framework rather than a standard centralized security framework).</p>
        <p>Our approach envisions how a complete redesign of a management framework is done given the characteristics of the underlying P2P and overlay services. Among the topics of interest we study
        the concept of management information and operations routing within a management overlay as well as the distribution of management functions in a multi-manager/agent P2P environment. The
        functional areas targeted in our approach by the P2P model are network and service configuration and distributed monitoring. The models are to be evaluated against highly dynamic frameworks
        such as ad-hoc environments (network or application level) and mobile devices.</p>
      </subsection>
      <subsection id="uid22" level="2">
        <bodyTitle>
          <b>Integration of management information</b>
        </bodyTitle>
        <p>Representation, specification and integration of management information models form a foundation for network and service management and remains an open research domain. The design and
        specification of new models is mainly driven by the appearance of new protocols, services and usage patterns. These need to be managed and exposed through well designed management information
        models. Integration activities are driven by the multiplication of various management approaches. To enable automated management, these approaches need to inter-operate which is not the case
        today.</p>
        <p>The MADYNES approach to this problem of modeling and representation of management information aims at:</p>
        <orderedlist>
          <li id="uid23">
            <p noindent="true">enabling application developers to establish their management interface in the same workspace, with the same notations and concepts as the ones used to develop their
            application,</p>
          </li>
          <li id="uid24">
            <p noindent="true">fostering the use of standard models (at least the structure and semantics of well defined models),</p>
          </li>
          <li id="uid25">
            <p noindent="true">designing a naming structure that allows the routing of management information in an overlay management plane, and</p>
          </li>
          <li id="uid26">
            <p noindent="true">evaluating new approaches for management information integration especially based on management ontologies and semantic information models.</p>
          </li>
        </orderedlist>
      </subsection>
      <subsection id="uid27" level="2">
        <bodyTitle>
          <b>Modeling and benchmarking of management infrastructures and activities</b>
        </bodyTitle>
        <p>The impact of a management approach on the efficiency of the managed service is highly dependent on three factors:</p>
        <simplelist>
          <li id="uid28">
            <p noindent="true">the distribution of the considered service and their associated management tasks,</p>
          </li>
          <li id="uid29">
            <p noindent="true">the management patterns used (e.g. monitoring frequency, granularity of the management information considered),</p>
          </li>
          <li id="uid30">
            <p noindent="true">the cost in terms of resources these considered functions have on the managed element (e.g. method call overhead, management memory footprint).</p>
          </li>
        </simplelist>
        <p>While the first factor was investigated in several research projects so far, none of the other two were investigated at all. The lack of such benchmarking data and models simply makes the
        objective evaluation of the operational costs of a management approach impossible. This may be acceptable in backbone networks where processing and communication resources can be tuned very
        easily (albeit sometimes at a non negligible cost). This is not true in constrained environments like devices constrained by battery or processing power as found in wireless networks for
        which the lack of management cost models is a serious concern.</p>
        <p>MADYNES addresses this problem from multiple viewpoints: communication patterns, processing and memory resources consumption. Our goal is to provide management patterns combining several
        management technologies if needed so as to optimize the resources consumed by the management activity imposed by the operating environment.</p>
        <p>Therefore, we establish 
        <i>abacuses</i>for management frameworks and in parallel we collect data on current management practice. These data will form the core of the “Constraints-based management tuning activity”
        that we are working on and can be used for rigorous comparison among distribution and processing of management activities.</p>
      </subsection>
    </subsection>
    <subsection id="uid31" level="1">
      <bodyTitle>Functional areas</bodyTitle>
      <subsection id="uid32" level="2">
        <bodyTitle>
          <b>Security management</b>
        </bodyTitle>
        <p>Securing the management plane is vital. While several proposals are already integrated in the existing management frameworks, they are rarely used. This is due to the fact that these
        approaches are completely detached from the enterprise security framework. As a consequence, the management framework is “managed” separately with different models; this represents a huge
        overhead. Moreover the current approaches to security in the management plane are not inter-operable at all, multiplying the operational costs in a heterogeneous management framework.</p>
        <p>The primary goal of the research in this activity is the design and the validation of a security framework for the management plane that will be open and capable to integrate the security
        services provided in today's management architectures. Management security interoperability is of major importance in this activity.</p>
        <p>Our activity in this area aims at designing a generic security model in the context of multi-party / multi-technology management interactions. Therefore, we develop research on the
        following directions:</p>
        <orderedlist>
          <li id="uid33">
            <p noindent="true">Abstraction of the various access control mechanisms that exist in today's management frameworks. We are particularly interested in extending these models so that they
            support event-driven management, which is not the case for most of them today.</p>
          </li>
          <li id="uid34">
            <p noindent="true">Extension of policy and trust models to ease and to ensure coordination among managers towards one agent or a subset of the management tree. Provisional policies are of
            great interest to us in this context.</p>
          </li>
          <li id="uid35">
            <p noindent="true">Evaluation of the adequacy of key distribution architectures to the needs of the management plane as well as selecting reputation models to be used in the management of
            highly dynamic environments (e.g. multicast groups, ad-hoc networks).</p>
          </li>
        </orderedlist>
        <p>A strong requirement towards the future generic model is that it needs to be instantiated (with potential restrictions) into standard management platforms like SNMP, WBEM or Netconf and to
        allow interoperability in environments where these approaches coexist and even cooperate. A typical example of this is the security of an integration agent which is located in two management
        worlds.</p>
        <p>Since 2006 we have also started an activity on security assessment. The objective is to investigate new methods and models for validating the security of large scale dynamic networks and
        services. The first targeted service is VoIP.</p>
      </subsection>
      <subsection id="uid36" level="2">
        <bodyTitle>
          <b>Configuration: automation of service configuration and provisioning</b>
        </bodyTitle>
        <p>Configuration covers many processes which are all important to enable dynamic networks. Within our research activity, we focus on the operation of tuning the parameters of a service in an
        automated way. This is done together with the activation topics of configuration management and the monitoring information collected from the underlying infrastructure. Some approaches exist
        today to automate part of the configuration process (download of a configuration file at boot time within a router, on demand code deployment in service platforms). While these approaches are
        interesting they all suffer from the same limits, namely:</p>
        <orderedlist>
          <li id="uid37">
            <p noindent="true">they rely on specific service life cycle models,</p>
          </li>
          <li id="uid38">
            <p noindent="true">they use proprietary interfaces and protocols.</p>
          </li>
        </orderedlist>
        <p noindent="true">These two basic limits have high impacts on service dynamics in a heterogeneous environment.</p>
        <p>We follow two research directions in the topic of configuration management. The first one aims at establishing an abstract life-cycle model for either a service, a device or a network
        configuration and to associate with this model a generic command and programming interface. This is done in a way similar to what is proposed in the area of call control in initiatives such
        as Parlay or OSA.</p>
        <p>In addition to the investigation of the life-cycle model, we work on technology support for distributing and exchanging configuration management information. Especially, we investigate
        policy-driven approaches for representing configurations and constraints while we study XML-based protocols for coordinating distribution and synchronization. Off and online validation of
        configuration data is also part of this effort.</p>
      </subsection>
      <subsection id="uid39" level="2">
        <bodyTitle>
          <b>Performance and availability monitoring</b>
        </bodyTitle>
        <p>Performance management is one of the most important and deployed management function. It is crucial for any service which is bound to an agreement about the expected delivery level.
        Performance management needs models, metrics, associated instrumentation, data collection and aggregation infrastructures and advanced data analysis algorithms.</p>
        <p>Today, a programmable approach for end-to-end service performance measurement in a client server environment exists. This approach, called Application Response Measurement (ARM) defines a
        model including an abstract definition of a unit of work and related performance records; it offers an API to application developers which allows easy integration of measurement within their
        distributed application. While this approach is interesting, it is only a first step toward the automation of performance management.</p>
        <p>We are investigating two specific aspects. First we are working on the coupling and possible automation of performance measurement models with the upper service level agreement and
        specification levels. Second we are working on the mapping of these high level requirements to the lower level of instrumentation and actual data collection processes available in the
        network. More specifically we are interested in providing automated mapping of service level parameters to monitoring and measurement capabilities. We also envision automated deployment
        and/or activation of performance measurement sensors based on the mapped parameters. This activity also incorporates self-instrumentation (and when possible on the fly instrumentation) of
        software components for performance monitoring purpose.</p>
      </subsection>
    </subsection>
  </fondements>
  <domaine id="uid40">
    <bodyTitle>Application Domains</bodyTitle>
    <subsection id="uid41" level="1">
      <bodyTitle>Mobile, ad-hoc and constrained networks</bodyTitle>
      <p>The results coming out from MADYNES can be applied to any dynamic infrastructure that contributes to the delivery of value added services. While this is a potentially huge application
      domain, we focus on the following environments at the network level:</p>
      <orderedlist>
        <li id="uid42">
          <p noindent="true">multicast services,</p>
        </li>
        <li id="uid43">
          <p noindent="true">ad-hoc networks,</p>
        </li>
        <li id="uid44">
          <p noindent="true">mobile devices and IPv6 networks,</p>
        </li>
        <li id="uid45">
          <p noindent="true">voice over IP infrastructure.</p>
        </li>
      </orderedlist>
      <p>All these selected application areas exhibit different dynamicity features. In the context of multicast services, we focus on distribution, monitoring and accounting of key distribution
      protocols. On 
      <i>ad-hoc</i>and dynamic networks we are investigating the provisioning, monitoring, configuration and performance management issues.</p>
      <p>Concerning mobile devices, we are interested in their configuration, provisioning and monitoring. IPv6 work goes on in Information Models and, combined with SNMPv3, on self-configuration of
      the agents.</p>
    </subsection>
    <subsection id="uid46" level="1">
      <bodyTitle>Dynamic service infrastructures</bodyTitle>
      <p>At the service level, dynamics is also increasing very fast. We apply the results of our work on autonomous management on infrastructures which support dynamic composition and for which
      self-instrumentation and management automation is required.</p>
      <p>The target service environments are:</p>
      <simplelist>
        <li id="uid47">
          <p noindent="true">Voice over IP networks,</p>
        </li>
        <li id="uid48">
          <p noindent="true">peer-to-peer infrastructures,</p>
        </li>
        <li id="uid49">
          <p noindent="true">ambiant environments.</p>
        </li>
      </simplelist>
    </subsection>
  </domaine>
  <logiciels id="uid50">
    <bodyTitle>Software</bodyTitle>
    <subsection id="uid51" level="1">
      <bodyTitle>Voip bots</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374408832">
          <firstname>Mohamed</firstname>
          <lastname>Nassar</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
      </participants>
      <p>VoIPbot is a VoIP security tool created as a demonstrator of how attacks can be launched against VoIP/SIP services and users in a remotely and distributed manner. The environment contains
      bots that can be remotely managed over an Internet Relay Chat (IRC) channel from a cental manager. Our bots are currently able to perform the following tasks :</p>
      <simplelist>
        <li id="uid52">
          <p noindent="true">send SPAM over IP Telephony (SPIT),</p>
        </li>
        <li id="uid53">
          <p noindent="true">distributed denial of service through intensive generation of invite messages to a target device,</p>
        </li>
        <li id="uid54">
          <p noindent="true">active scanning of users through incremental options messages issuance to servers and response analysis,</p>
        </li>
        <li id="uid55">
          <p noindent="true">cracking through brute-force testing of passwords against an identified user account,</p>
        </li>
        <li id="uid56">
          <p noindent="true">simple device scanning and fingerprinting,</p>
        </li>
        <li id="uid57">
          <p noindent="true">target aware device fuzzing.</p>
        </li>
      </simplelist>
      <p>The tool is developed using the Java programming language. It uses the JAIN-SIP, JMF and PIRCBOT libraries. The tool is distributed under a GPL2 Open Source license. Reports show its use
      mainly in the testing business so far.</p>
    </subsection>
    <subsection id="uid58" level="1">
      <bodyTitle>SecSIP</bodyTitle>
      <participants>
        <person key="madynes-2010-idm163901556320">
          <firstname>Abdelkader</firstname>
          <lastname>Lahmadi</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
      </participants>
      <p><i>SecSip</i><footnote id="uid59" id-text="2"><ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://secsip.gforge.inria.fr/doku.php" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
        <allowbreak/>secsip.
        <allowbreak/>gforge.
        <allowbreak/>inria.
        <allowbreak/>fr/
        <allowbreak/>doku.
        <allowbreak/>php</ref></footnote>is developed by the team to defend SIP-based (The Session Initiation Protocol) services from known vulnerabilities. It presents a proactive point of defense between a SIP-based
      network of devices (servers, proxies, user agents) and the open Internet. Therefore, all SIP traffic is inspected and analyzed against authored Veto specification before it is forwarded to
      these devices. When initializing, the SecSIP runtime starts loading and parsing authored VeTo blocks to identify different variables, event patterns, operations and actions from each rule. It
      implements an input and output layer, to capture, inject, send and receive SIP packets from and to the network. Intercepted packets are moved to the SIP Packet parser module. The main function
      of this module is to extract different fields within a SIP message and trigger events specified within the definition blocks. During each execution cycle when a SIP message arrives, the SecSIP
      runtime uses a data flow acyclic graph network to find definition matching rules and triggers defined events. The paired events in each operator node are propagated over the graph until a
      pattern is satisfied. When the pattern is satisfied, the respective rule is fired and the set of actions is executed.</p>
      <p>SecSIP is freely available on the Internet and has been demonstrated in various High Security Labs exhibits in 2011.</p>
    </subsection>
    <subsection id="uid60" level="1">
      <bodyTitle>NDPMon</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374453680">
          <firstname>Isabelle</firstname>
          <lastname>Chrisment</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
          <moreinfo>contact</moreinfo>
        </person>
      </participants>
      <p>The Neighbor Discovery Protocol Monitor (
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://ndpmon.sf.net" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">NDPMon</ref>) is an IPv6 implemention of the well-known ArpWatch
      tool. NDPMon monitors the pairing between IPv6 and Ethernet addresses (NDP activities: new station, changed Ethernet address, flip flop...). NDPMon also detects attacks on the NDP protocol, as
      defined in RFC 3756 (bogon, fake Router Advertisements...). New attacks based on the Neighbor Discovery Protocol and Address Auto-configuration (RFC 2461 and RFC 2462) have been identified and
      integrated in the tool. An XML file describes the default behavior of the network, with the authorized routers and prefixes, and a second XML document containing the neighbors database is used.
      This second file can be filled during a learning phase. All NDP activities are logged in the syslog utility, and so the attacks, but these ones are also reported by mail to the administrator.
      Finally, NDPMon can detect stack vulnerabilities, like the assignment of an Ethernet broadcast address on an interface.</p>
      <p>NDPMon comes along with a WEB interface acting as a GUI to display the informations gathered by the tool, and give an overview of all alerts and reports. Thanks to color codes, the WEB
      interface makes possible for the administrator to have an history of what happened on his network and identify quickly problems. All the XML files used or produced by the daemon (neighbor
      cache, configuration file and alerts list) are translated in HTML via XSL for better readability. A statistic module is also integrated and gives informations about the discovery of the nodes
      and their type (MAC manufacturer distribution ...).</p>
      <p>The software package and its source code is freely distributed under an opensource license (LGPL). It is implemented in C, and is available through a SourceForge project at 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://ndpmon.sf.net" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
      <allowbreak/>ndpmon.
      <allowbreak/>sf.
      <allowbreak/>net</ref>. An open source community is now established for the tool which has distributions for several Operating Systems (Linux, FreeBSD, OpenBSD, NetBSD and Mac OS X). It is
      also integrated in FreeBSD ports at 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.freebsd.org/cgi/cvsweb.cgi/ports/net-mgmt/ndpmon/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
      <allowbreak/>www.
      <allowbreak/>freebsd.
      <allowbreak/>org/
      <allowbreak/>cgi/
      <allowbreak/>cvsweb.
      <allowbreak/>cgi/
      <allowbreak/>ports/
      <allowbreak/>net-mgmt/
      <allowbreak/>ndpmon/
      <allowbreak/></ref>. Binary distributions are also available for .deb and .rpm based Linux flavors.</p>
    </subsection>
    <subsection id="uid61" level="1">
      <bodyTitle>AA4MM</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374440480">
          <firstname>Laurent</firstname>
          <lastname>Ciarletta</lastname>
        </person>
        <person key="madynes-2007-idm860523488">
          <firstname>Julien</firstname>
          <lastname>Siebert</lastname>
          <moreinfo>main developer</moreinfo>
        </person>
      </participants>
      <moreinfo>
        <p>This work has been undertaken in a joint Phd Thesis between the Madynes and MAIA Teams. Vincent Chevrier (MAIA team, LORIA) has been the co-advisor of this PhD and correspondant for this
        software.</p>
      </moreinfo>
      <p>AA4MM (Agents and Artefacts for Multi-modeling and Multi-simulation) is a framework for coupling existing and heterogeneous models and simulators in order to model and simulate complex
      systems. This is the first implementation of the AA4MM meta-model proposed in Julien Siebert's PhD. It is written in Java and relies upon Java Messaging Services (JMS) for its distributed
      version.</p>
      <p>AA4MM can be downloaded at 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.loria.fr/~siebertj/aa4mm/index.html" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
      <allowbreak/>www.
      <allowbreak/>loria.
      <allowbreak/>fr/
      <allowbreak/>~siebertj/
      <allowbreak/>aa4mm/
      <allowbreak/>index.
      <allowbreak/>html</ref>.</p>
    </subsection>
    <subsection id="uid62" level="1">
      <bodyTitle>MASDYNE</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374440480">
          <firstname>Laurent</firstname>
          <lastname>Ciarletta</lastname>
        </person>
        <person key="madynes-2007-idm860523488">
          <firstname>Julien</firstname>
          <lastname>Siebert</lastname>
          <moreinfo>main developer</moreinfo>
        </person>
      </participants>
      <moreinfo>
        <p>This work is undertaken in a joint Phd Thesis between the Madynes and MAIA Teams. Vincent Chevrier (MAIA team, LORIA) has been co-advisor of this PhD and correspondant for this
        software.</p>
        <p>Other contributors to this software are: Tom Leclerc (Madynes), Francois Klein, Christophe Torin, Marcel Lamenu, Guillaume Favre and Amir Toly.</p>
      </moreinfo>
      <p>MASDYNE (Multi-Agent Simulator of DYnamic Networks usErs) is a multi-agent simulator for modeling and simulating users behaviors in mobile ad hoc network. This software is part of joint work
      with MAIA team, on modeling and simulation of ubiquitous networks.</p>
      <p>It has been notably coupled with a network simulator (JANE : Java Adhoc Network Development Environment) to advanced behavior capabilities to standard network simulations.</p>
    </subsection>
  </logiciels>
  <resultats id="uid63">
    <bodyTitle>New Results</bodyTitle>
    <subsection id="uid64" level="1">
      <bodyTitle>Behavioral Fingerprinting</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
          <moreinfo>contact</moreinfo>
        </person>
      </participants>
      <p>Device fingerprinting aims to automatically determine the types (name and version of software, brand name and series of hardware) of remote devices for a given protocol. Hence, keeping an
      up-to-date inventory database of devices in use on a network is possible and helpful as for example to check remotely if unauthorized applications have been installed. Some types of devices for
      which vulnerabilities are known can be easily detected in order to patch them or at least send alerts to the owners. From a security point of view, attackers use specific tools to perform their
      attack which may also be detected rapidly thanks to fingerprinting. Most current systems rely only on signatures of differences in implementation of a given protocol stack and signatures are
      often outdated.</p>
      <p>We have designed a new fingerprinting scheme that is accurate even on protocol stacks that are completely identical, but which run on hardware having different capabilities (CPU power,
      memory resources, etc). Our fingerprinting scheme can learn distinctive patterns in the state machine of a particular implementation. We see such a pattern as a restricted tree finite state
      machine that provides additional time-related information about the transitions performed 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid0" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. The captured identification models were then used to automatically
      build attack prevention rules 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid1" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>.</p>
      <p>This work was done in cooperation with Jérôme Francois, Radu State and Thomas Engel from the Univeristy of Luxembourg.</p>
    </subsection>
    <subsection id="uid65" level="1">
      <bodyTitle>Management and monitoring of P2P networks</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374453680">
          <firstname>Isabelle</firstname>
          <lastname>Chrisment</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
        <person key="madynes-2009-idm231957303456">
          <firstname>Juan Pablo</firstname>
          <lastname>Timpanaro</lastname>
        </person>
      </participants>
      <p>Content pollution is one of the major issues affecting P2P file sharing networks. However, since early studies on FastTrack and Overnet, no recent investigation has reported its impact on
      current P2P networks. In 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid2" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>, we presented a method and the supporting architecture to quantify
      the pollution of contents in the KAD network. We first collected information on many popular files shared in this network. Then, we proposed a new way to detect content pollution by analyzing
      all filenames linked to a content with a metric based on the Tversky index and which gives very low error rates. By analyzing a large number of popular files, we showed that 2/3 of the contents
      are polluted, one part by index poisoning but the majority by a new, more dangerous, form of pollution that we call index falsification. This work was done, in collaboration with the University
      of Technology of Troyes, within the context of the ACDA-P2P
      <footnote id="uid66" id-text="3">Approche Collaborative pour la Détection d'Attaques dans les réseaux Pair à Pair</footnote>Project funded by GIS- 3SGS
      <footnote id="uid67" id-text="4">Groupement d'Intérêt Scientifique - Surveillance, Suretê et Sécurité des grands Systêmes</footnote>.</p>
      <p>BitTorrent is a widely deployed P2P file sharing protocol, extensively used to distribute digital content and software updates, among others. Recent actions against torrent and tracker
      repositories have fostered the move towards a fully distributed solution based on a distributed hash table to support both torrent search and tracker implementation. We conducted an analysis on
      one of the BitTorrent's DHT (Mainline DHT) and developed a monitoring architecture, so as to measure and discover security flaws on the network. In 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid3" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>we compared KAD DHT against BitTorrent DHT in terms of security by
      deploying different attacks on the network. We showed that the lack of security in Mainline DHT allows very efficient attacks that can easily impact the operation of the whole network. We also
      provided a peer-ID distribution analysis of the network, so as to adapt previous protection schemes to the Mainline DHT. The mechanisms are assessed through large-scale experiments on the real
      DHT-based BitTorrent tracker.</p>
      <p>If BitTorrent's Mainline DHT is exposed to several identified security issues, in parallel, the KAD DHT has been the core of intense research and was improved over years. We presented a
      study that motivates the integration of both worlds. We provided a performance comparison of both DHTs in terms of publishing efficiency. We investigated the security threats and showed that
      the current BitTorrent's Mainline DHT is more vulnerable to attacks than KAD while the download service of BitTorrent has much better performance. Given the strengths and weaknesses of both
      DHTs, we designed a hybrid architecture 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid4" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>, which is based on KAD's indexation mechanism and BitTorrent
      download protocol. On the one hand, the client is able to index its files in the well-known KAD DHT, taking advantage of KAD's security mechanism and its double-indexation scheme. On the other
      hand, the client uses the BitTorrent download protocol so as to download a given file, which has been proven to surpass KAD's. We implemented this hybrid architecture, that we called 
      <tt>hMule</tt>, as a unified KAD-BitTorrent file-sharing application , which is compatible with both P2P file sharing networks and provides the KAD advantages on indexation and the BitTorrent
      speed for transfer without losing backward compatibility.</p>
      <p>We started our research about being anonymous when downloading from BitTorrent. We conducted a set of measurements from High Security Lab aiming to characterize the usage of the I2P network,
      a low-latency anonymous network based on garlic routing 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid5" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. Our goal was to answer the following questions: what is the network
      used for? when is it used the most? which kind of applications the network designers should pay more attention to? We designed a distributed monitoring architecture for the I2P network and we
      showed that, through three one-week long experiments, we were able to identify 32% of all running applications, among web servers and file-sharing clients. Additionally, we identified 37% of
      published I2P applications, which turned out to be unreachable after their publication on the I2P distributed database.</p>
      <p>In parallel, we built-up a model of I2P encryption/decryption approach and using the Avispa tool, we able to find a possible attack on the network. Further work will be focused on probing
      right and on developing a proof-of-concept of this.</p>
    </subsection>
    <subsection id="uid68" level="1">
      <bodyTitle>Configuration security automation</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374419456">
          <firstname>Rémi</firstname>
          <lastname>Badonnel</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2011-idm124047248464">
          <firstname>Martin</firstname>
          <lastname>Barrere</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
      </participants>
      <p>The main research challenge addressed in this work has focused on enabling configuration security automation in autonomic networks and services. In particular our objective has been to
      increase vulnerability awareness in the autonomic management plane in order to prevent configuration vulnerabilities. The continuous growth of networking significantly increases the complexity
      of management. It requires autonomic networks and services, which are capable of taking in charge their own management by optimizing their parameters, adapting their configurations and ensuring
      their protection against security attacks. However, the operations and changes they execute during these management activities may generate vulnerable configurations. A first part of our work
      has therefore consisted in consolidating a security automation strategy for preventing vulnerabilities and maintaining safe configurations in autonomic infrastructures 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid6" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. This solution relies on the integration of configuration
      vulnerability descriptions into the management plane 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid7" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. The OVAL language, part of the SCAP protocol, has become the
      de-facto standard for specifying configuration vulnerabilities in a technical viewpoint. We have refined a mathematical modeling for mapping OVAL descriptions into policy rules which can be
      interpreted by the autonomic Cfengine configuration system. These policies enable the Cfengine system to assess and detect vulnerabilities. We have designed a functional architecture and
      formalized a translation algorithm for supporting this security automation. We have also prototyped an OVAL-to-Cfengine translation module, called Ovalyzer, and analyzed its interactions with
      the components of the Cfengine system. Based on vulnerability descriptions extracted from the official OVAL repository, we have performed an extensive set of experiments to quantify the
      performance and coverage of the Ovalyzer module. A second part of our work has consisted in investigating how our security automation solution can be extended to distributed configuration
      vulnerabilities. In SCAP-based traditional approaches, a distributed vulnerability is typically understood as the aggregation of individual configuration vulnerabilities which are spread in the
      network and might allow a multi-step attack. We have shown through the analysis of a case study that this definition does not offer a complete outlook of the problem. In particular, each
      network device can individually present a secure configuration, but when combined across the network, a global vulnerable configuration may be produced. In that context, we have introduced in 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid8" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>a mathematical definition for distributed vulnerabilities and have
      specified the DOVAL language (Distributed OVAL), on top of OVAL, as a means for describing these vulnerabilities in a machine readable manner. A case study in the area of VoIP networks and
      services has been considered for demonstrating the instantiation of DOVAL main constructs. The DOVAL descriptions constitute useful security definitions that in turn can be exploited for
      security automation. We have built a framework for supporting these distributed configuration vulnerabilities based on the Cfengine system. In particular, we have proposed and evaluated
      collaborative strategies and optimized algorithms for performing the assessment of DOVAL descriptions.</p>
    </subsection>
    <subsection id="uid69" level="1">
      <bodyTitle>Online Risk Management</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374419456">
          <firstname>Rémi</firstname>
          <lastname>Badonnel</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2009-idm231958288896">
          <firstname>Oussema</firstname>
          <lastname>Dabbebi</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
      </participants>
      <p>Telephony over IP has known a large scale deployment and has been supported by the standardization of dedicated signaling protocols. This service is however exposed to multiple attacks due
      to a lower confinement in comparison to traditional PSTN networks. While a large variety of methods and techniques has been proposed for protecting VoIP networks, their activation may seriously
      impact on the quality of such a critical service. Risk management provides new opportunities for addressing this challenge. In particular, our work aims at performing online risk management for
      VoIP networks and services. The purpose is to adapt the service exposure with respect to the threat potentiality, while maintaining a low security overhead. Based on the classification of VoIP
      attacks and the analysis of their properties, we have refined in 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid9" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>an extended risk modeling for IP telephony infrastructures. This
      modeling permits to cover a large spectrum of security attacks. It supports our online risk management strategy which is capable of dynamically activating or deactivating security safeguards in
      the VoIP infrastructure. The mitigation is based on the control of the service exposure using these safeguards. We have compared our solution to other traditional strategies, and have
      quantified the benefits and limits according to multiple performance criteria. We have also analyzed the impact of the risk model parameters on our mitigation, and showed to what extent the
      parameterization can be partially automated in 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid10" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. An important part of our efforts has focused in the year 2011 on
      extending our online risk management strategy to more distributed configurations 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid11" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. While our initial work was centered around Asterisk-based
      enterprise networks, we have taken a particular interest in P2PSIP networks. They constitute an open decentralized solution where the registration and location servers are implemented by a
      distributed hash table responsible for storing the bindings between the address-of-record SIP-URI and the contact SIP-URI. We have identified different attack sources and attack scenarios in
      these P2PSIP networks, considering the functional roles that are played by the SIP peers. The security threats are specific to the P2PSIP protocol or are the result of inheritance from the SIP
      layer and the peer-to-peer area. In that context, we have analyzed the instantiation of our online risk modeling by taking into account the properties and components of the P2PSIP architecture,
      and have established a portfolio of dedicated countermeasures, including replication-based an certification-based techniques. We have evaluated the strategy performance and scalability through
      an extensive set of experiments performed with the OMNET++ simulator. We also have quantified the complementarity of our solution with the RELOAD security framework which relies on a central
      certiﬁcate enrolment server.</p>
    </subsection>
    <subsection id="uid70" level="1">
      <bodyTitle>VoIP Security</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374443216">
          <firstname>Laurent</firstname>
          <lastname>Andrey</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
        <person key="madynes-2010-idm163901556320">
          <firstname>Abdelkader</firstname>
          <lastname>Lahmadi</lastname>
          <moreinfo>contact</moreinfo>
        </person>
      </participants>
      <p>In previous work, we have proposed the prevention system SecSIP 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid12" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>for SIP-based networks which uses a rule-based approach to build
      prevention specifications on SIP protocol activities that stop attacks exploiting an existing vulnerability before reaching their targets. We have pursued our efforts in VoIP security which led
      to two new contributions:</p>
      <simplelist>
        <li id="uid71">
          <p noindent="true">Building and maintaining prevention rules using the VeTo language can become a time consuming and error prone task, especially when addressing an important number of
          vulnerabilities discovered using a fuzzing tool. The discovered vulnerabilities using such process are usually based on a single exploit message with a malformed field or sequence of
          vulnerable messages. To reduce this effort, we have designed a generation method to produce VeTo specifications targeting those vulnerable messages. The method mainly characterizes a
          malformed field within an exploit message or the vulnerable sequence of messages and generates a set of VeTo rules specifications to prevent their exploit. The generated VeTo rules are then
          deployed and maintained on the SecSIP engine to be applied against the SIP traffic. The solution 
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid1" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>relies on generating rules using genetic algorithms operating on
          a a set of candidate regular expressions to match a malformed pattern within a SIP message, and evaluate their quality using a well defined fitness function to ensure that their are
          specific enough to only match exploit messages.</p>
        </li>
        <li id="uid72">
          <p noindent="true">SecSIP uses a plain text configuration file in which VeTo specifications are authored and managed manually. While extending the deployment of the framework beyond our own
          lab, support for remote configuration was required. Given the promise of Netconf, we naturally turned our investigations towards this protocol and embraced the YANG data-modeling framework.
          In 
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid13" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>we have presented the Yang model built for VeTo policies and the
          Netconf framework put in place.</p>
        </li>
      </simplelist>
      <p>We have developed a flexible SIP honeypot. It is flexible in the sense that a behavior can be externally and easily defined. The goal of such a honeypot is to be able to be quickly
      customized in response to an observation made on a more generic and large scale honeypot. If the initial observation is likely to be an attack the customized honeypot would eventually get
      deeper and more informative interactions with the attacker. The realization is a module of the Dionaea general framework for honeypot (successor of the well-known nepenthes framework) and we
      use the SIPP test tool as an engine to animate SIP interactions provided as automata in some XML file. More detail on the implementation can be found in 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid14" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>.</p>
    </subsection>
    <subsection id="uid73" level="1">
      <bodyTitle>VoIP Fraud</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
          <moreinfo>Contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374408832">
          <firstname>Mohamed</firstname>
          <lastname>Nassar</lastname>
        </person>
      </participants>
      <p>In the context of a cooperation with the University of Liege, we have addressed the problem of SPIT from a new perspective 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid15" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. Based on end-user feedback, we have proposed a scheme for
      generating SPIT signatures from the SIP INVITE messages. Hence it is possible to filter the next SPIT calls before ringing their destinations. The generated SPIT signatures are adaptive to the
      benign signaling traffic in the sense that they do not conflict with it. The generation of signatures is based on supervised machine learning techniques. We namely investigated decision trees
      with categorical at- tributes obtained by parsing the SIP messages.</p>
      <p>Our system works in two modes: a batch and an online mode. The batch mode consists on training the decision tree over a labeled (spit, normal) data-set and then trans- forming the tree into
      an if-else rule-set. In online mode, the successive learnt signatures are aggregated and the possible conflicts are resolved. Experimenta- tion on off-the-shelf SPIT tools showed the efficiency
      of our approach to find the good signatures. However, experiments show that the J48 decision tree is easily defeated using some obfuscation techniques. We therefore proposed a generalisation
      approach to translate the tree into an if-else rule-set shows instead good robust- ness against such attacks. The overall framework provides suitable performance for operational deployment in
      terms of learning time, required memory, size of 18the rule-set and the call setup delay. The different parameters of the system (i.e. size of the different buffers and windows) are easily
      configurable.Different SPIT signatures may imply different SPIT capabilities. For example, a spitter may break a Captcha test by brute-forcing a DTMF guess. Another spitter may start talking by
      a human-like congratulation in order to bypass a Turing test. One of the goals of our approach is to provide a framework for applying reinforcement learning techniques and hence increasing the
      efficiency of the filtering process. The reinforcement learning aims at selecting the best challenge to be used when a given SPIT signature is detected. Basically the re-inforcement learning
      maintains a table matching each signature with the best challenge response discovered so far. The table is continuously updated using a trial and error scheme.</p>
      <p>We did validate the approach on multiple data-sets otbained from Voice over IP operators members of the SCAMSTOP project.</p>
    </subsection>
    <subsection id="uid74" level="1">
      <bodyTitle>Pervasive computing</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374440480">
          <firstname>Laurent</firstname>
          <lastname>Ciarletta</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2007-idm860520384">
          <firstname>Tom</firstname>
          <lastname>Leclerc</lastname>
        </person>
        <person key="madynes-2007-idm860523488">
          <firstname>Julien</firstname>
          <lastname>Siebert</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
        <person key="madynes-2006-idm72374431984">
          <firstname>André</firstname>
          <lastname>Schaff</lastname>
        </person>
      </participants>
      <moreinfo>
        <p>Vincent Chevrier(MAIA Team)</p>
      </moreinfo>
      <p>In Pervasive or Ubiquitous Computing, a growing number of communicating/computing devices are collaborating to provide users with enhanced and ubiquitous services in a seamless way. Madynes
      is focusing on the networking aspects of ubiquitous systems. We cooperate with the Maia (and Trio) team(s) to be able to encompass issues and research questions that combine both networking and
      cognitive aspects.</p>
      <p>Pervasive Computing is about interconnected and situated computing resources providing us(ers) with contextual services. These systems, embedded in the fabric of our daily lives, are
      complex: numerous interconnected and heterogeneous entities are exhibiting a global behavior impossible to forecast by merely observing individual properties. Firstly, users physical
      interactions and behaviors have to be considered. They are influenced and influence the environment. Secondly, the potential multiplicity and heterogeneity of devices, services, communication
      protocols, and the constant mobility and reorganization also need to be addressed. Our research on this field as detailed in 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid16" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>is going towards both closing the loop between humans and systems
      and taming the complexity, using multi-modeling (to combine the best of each domain specific model) and co-simulation (to design, develop and evaluate) as part of a global conceptual and
      practical toolbox.</p>
      <p>In 2011 we worked on the following research topics :</p>
      <simplelist>
        <li id="uid75">
          <p noindent="true">Multi-models of these Pervasive Computing environments (including the users in the modeling and the simulations). We have been focusing on the collaborative simulations
          of dynamic networks/elements, namely P2P and adhoc networks using agents to drive those simulations. This work is done in collaboration with the MAIA team. The results have been extensively
          described in the PhD thesis of Julien Siebert 
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid17" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>.</p>
        </li>
        <li id="uid76">
          <p noindent="true">Study of service discovery protocols, contextual metrics in adhoc networks, and Service Discovery in adhoc networks using an hybrid model between cluster-like (WCPD) and
          MPR-based (OLSR) broadcasting. The results have been extensively described in the PhD thesis (Contributions for Advanced Service Discovery in Ad hoc Networks) of Tom Leclerc 
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid18" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. In this thesis, we consider service discovery in MANETs, that
          are a collection of devices that communicate with each other over a wireless medium. Such networks are formed spontaneously whenever devices are in transmission range without any
          preexisting infrastructure. The main characteristic of MANETs is the high dynamics of nodes (induced by the users moving around), the volatile wireless transmissions, the user behavior, the
          services and their usage. We've proposed a complete solution for service discovery in ad hoc networks, from the underlying network up to the service discovery itself. A first contribution,
          is the Stable Linked Structure Flooding (SLSF) protocol that creates stable based cluster structure and thereby provides scalable and efficient message dissemination. The second
          contribution is the Stable Linked Structure Routing (SLSR) protocol that uses the SLSF dissemination structure to enable routing capabilities. Using those protocols as basis, we propose to
          improve service discovery by additionally considering context awareness and adaptation.</p>
        </li>
        <li id="uid77">
          <p noindent="true">Context awareness and mobility/usage models</p>
          <p>We contributed on improving simulations by coupling simulators and models that, together, can model and simulate the variety and richness of ad hoc related usage scenarios and their
          human characteristic. A guideline for all of our contributions was to be able to integrate and/or consider context and context awareness in both the proposed protocols and the related
          research tools and models. On one hand, The proposed protocols all have the capacity to adapt their efforts according to certain metrics, that represent the context. The simulator coupling
          architecture, on the other hand, permits to model and design scenarios in which the context, such as the service usages or the human behavior, has an impact and matters.</p>
        </li>
        <li id="uid78">
          <p noindent="true">Energy-constraint geolocalization, addressing, routing and management of wireless devices: a research collaboration with Fireflies RTLS was started in March 2009 and is
          ongoing. The initial work has been extended in a joint work with the TRIO Team and leads towards finding a global energy-cost function, and life expectancy of the wireless sensor
          system.</p>
        </li>
      </simplelist>
      <p>In the future work, we plan to apply those results to Cyper Physical Systems, within the Aetournos (Airborne Embedded auTonomOUs Robust Network of Objects and Sensors) platform at Loria. We
      aim at developing cross-layer solutions to robust routing between flying drones.</p>
      <p>We are also working inside a CPER project towards management solutions of wireless network sensors (project ECOSUR) used to control Smart Spaces.</p>
    </subsection>
    <subsection id="uid79" level="1">
      <bodyTitle>Co-Simulation and multi-modeling</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374440480">
          <firstname>Laurent</firstname>
          <lastname>Ciarletta</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2007-idm860523488">
          <firstname>Julien</firstname>
          <lastname>Siebert</lastname>
        </person>
        <person key="madynes-2007-idm860520384">
          <firstname>Tom</firstname>
          <lastname>Leclerc</lastname>
        </person>
      </participants>
      <moreinfo>
        <p>Vincent Chevrier (MAIA team, LORIA) and Tomas Navarette are external collaborators.</p>
      </moreinfo>
      <subsection id="idp12646944" level="2">
        <bodyTitle>Multiagent approach for multimodeling and simulation coupling.</bodyTitle>
        <participants>
          <person key="madynes-2006-idm72374440480">
            <firstname>Laurent</firstname>
            <lastname>Ciarletta</lastname>
            <moreinfo>contact</moreinfo>
          </person>
          <person key="madynes-2007-idm860523488">
            <firstname>Julien</firstname>
            <lastname>Siebert</lastname>
          </person>
        </participants>
        <moreinfo>
          <p>Vincent Chevrier (MAIA team, LORIA) is an external collaborator.</p>
        </moreinfo>
        <p>this work has been extensively detailed in Julien Siebert's PhD thesis 
        <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid17" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>and partially in Tom Leclerc's , with an application to ubiquitous
        adhoc networks and services.</p>
        <p>This work has been done between the fields of ubiquitous networks and multi-agent based simulation. The main context is to study mutual influences existing between ubiquitous network
        performances and their users behaviours. We have highlighted the need for reusing and coupling modelling and simulation softwares together in order to simultaneously integrate several
        abstraction levels in the study. We target those needs by a multiagent approach and we propose a metamodel : AA4MM. The core idea in AA4MM is to build a society of models, simulators and
        simulation softwares that solves the core challenges of multimodelling and simulation coupling in an homogeneous perspective. AA4MM major contributions are the possibility to easily reuse, to
        make interoperable and modular existing heterogeneous models and softwares, to manage scale changes and a simulation algorithm fully decentralized. We apply this metamodel to the field of
        ubiquitous networks in order to target the question of mutual influences between networks performances and users behaviours.</p>
      </subsection>
      <subsection id="idp12652496" level="2">
        <bodyTitle>Adaptive control of a complex system based on its multi-agent model</bodyTitle>
        <participants>
          <person key="madynes-2006-idm72374440480">
            <firstname>Laurent</firstname>
            <lastname>Ciarletta</lastname>
            <moreinfo>contact</moreinfo>
          </person>
          <person key="madynes-2007-idm860523488">
            <firstname>Julien</firstname>
            <lastname>Siebert</lastname>
          </person>
        </participants>
        <moreinfo>
          <p>Vincent Chevrier (MAIA team, LORIA) and Tomas Navarette are external collaborators and main investigators of this theme.</p>
        </moreinfo>
        <p>As a starting point, we are exploring how the behavior and other factors such as spatial and temporal dimensions are mutually influencing and the impact of parameters variability of our
        models in environment where collective behaviors can emerge 
        <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid19" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. We did comparison of five different models. These models are
        built upon the same individual behavior hypothesis of a collective phenomenon present in peer-to-peer file exchange networks: "free-riding". We studied a global analytical model and four
        multi-agent models. Multi-agent models include the space and time dimensions rarely seen in the literature discussing aggregated models of the collective phenomenon in question. We have
        demonstrated that one individual decision algorithm can lead to contradictory information.</p>
        <p>Using these results, we want to build a control mechanism for a complex/dynamic system. Specifically, we want to evaluate the effectiveness of creating a control mechanism based on a
        multi-agent model of the system.</p>
        <p>Multi-agent models can be adapted to that purpose since usual approaches using analytical models as a basis can be intractable when dealing with such systems; and if we consider that the
        available control actions are meant to be applied locally, a multi-agent model is necessary. We are currently working on a case study within the dynamic networks domain, namely the
        free-riding phenomenon present in peer-to-peer networks.</p>
        <p>We propose an architecture that gathers information from the system and uses it to parametrize and tune a set of multi-agent models. The outcome of simulations is used to decide which
        control actions have to be applied to the system, in order to achieve a predefined control objective. We consider that we do not have complete information to characterize the state of the
        system.</p>
      </subsection>
    </subsection>
    <subsection id="uid80" level="1">
      <bodyTitle>Sensor networks management</bodyTitle>
      <participants>
        <person key="madynes-2010-idm163901531232">
          <firstname>Cyril</firstname>
          <lastname>Auburtin</lastname>
        </person>
        <person key="madynes-2010-idm163901543568">
          <firstname>Alexandre</firstname>
          <lastname>Boeglin</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
        <person key="madynes-2010-idm163901556320">
          <firstname>Abdelkader</firstname>
          <lastname>Lahmadi</lastname>
        </person>
        <person key="madynes-2006-idm72374434624">
          <firstname>Emmanuel</firstname>
          <lastname>Nataf</lastname>
          <moreinfo>contact</moreinfo>
        </person>
      </participants>
      <p>6LowPAN networks denotes many embedded devices interconnected by a variety of links ranging from wireless technologies such as 802.15.4, bluetooth, Low Power Wifi to wired technologies such
      as low power PLC. The common property of such networks is the limited resources of their nodes in terms of power, computing, memory and communication. The network could be described with
      thousands of devices with very limited internal and external resources and their communication channels are low-bandwith, high loss rate and volatile links subject to failure over time. These
      networks rely on the 6LowPAN protocol defined by the IETF as an adaptation layer for the IPv6 protocol to address their low power and lossy properties.</p>
      <p>During the year 2011, we have started a research activity around the monitoring and security assessment of 6LowPAN networks. Our contributions are mainly as follows:</p>
      <simplelist>
        <li id="uid81">
          <p noindent="true">We are developing a novel approach to assign monitoring roles in 6LowPAN networks using available local information provided by the routing layer. The resulting
          monitoring architecture is adaptive taking benefit from the reactivity of the routing protocol when dynamic changes occur due to connectivity or nodes mobility. Our first simulations
          results reveal that our assignment approach is more efficient, less aggressive and less resources consuming than its competitors.</p>
        </li>
        <li id="uid82">
          <p noindent="true">We have also designed and implemented a piggybacking technique to deliver monitoring report into existing packets traveling through 6LowPAN networks. In our solution, we
          have extended the IPv6 Hop-by-Hop extension header with a new option which contains status data of monitored nodes. This technique can reduce the number of packets and bytes sent across the
          network since there is no specific monitoring packets competing with existing traffic. Monitoring data shares the routing path of application data packets until it reaches a management
          node. We have applied our piggybacking technique to discover coap-enabled management agents. Each agent in the deployed wireless sensor network piggybacks its identifier into the RPL
          routing protocol messages until it reaches a manager node.</p>
        </li>
        <li id="uid83">
          <p noindent="true">Regarding security management of these networks, we have developed a stateless fuzzing tool for the 6LowPAN protocol 
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid20" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. The tool is build upon the Scapy packets manipulation library.
          It provides different mutation algorithms to be applied on 6LowPAN messages. These messages are defined by interaction scenarios described in an XML format.</p>
        </li>
        <li id="uid84">
          <p noindent="true">Related also to security, we have modelled an ontology for intrusion detection system in sensor networks 
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid21" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>. The model exposes family of intrusions depending on their
          objectives. The service provided by the network, the communication channels and the security mechanisms are the main classes of the model.</p>
        </li>
      </simplelist>
    </subsection>
    <subsection id="uid85" level="1">
      <bodyTitle>High Security Lab</bodyTitle>
      <participants>
        <person key="madynes-2010-idm163901543568">
          <firstname>Alexandre</firstname>
          <lastname>Boeglin</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
        <person key="madynes-2006-idm72374408832">
          <firstname>Mohamed</firstname>
          <lastname>Nassar</lastname>
        </person>
      </participants>
      <p>The objective of the High Security Lab at INRIA Nancy Grant Est is to provide both the infrastructure and the legal envelope to researchers to perform sensitive security oriented
      experimentations. We do contribute to this laboratory by (1) designing and operating a large network telescope and (2) performing vulnerability assessment research, network data and malware
      collection and analysis.</p>
      <p>During the year 2011, some maintenance tasks have been carried out on the High Security lab:</p>
      <simplelist>
        <li id="uid86">
          <p noindent="true">the SDSL line, which previously had a capacity of 1Mbps, has been upgraded to a 2Mbps line, and traffic shaping rules have been added to the router, that allow honeypots
          to run alongside experiments, without impacting them,</p>
        </li>
        <li id="uid87">
          <p noindent="true">the storage capacity of our database server, which was starting to get full, has been multiplied by four, and existing data has been migrated to the new equipment.</p>
        </li>
      </simplelist>
      <p>A set of new experiments have also been deployed:</p>
      <simplelist>
        <li id="uid88">
          <p noindent="true">a server has been dedicated to a new variant of SGNet, for the VAMPIRE project. This one specifically targets attacks on SIP services, which the other one cannot do,</p>
        </li>
        <li id="uid89">
          <p noindent="true">in collaboration with the INRIA Nancy Grant Est IT service, we started to log public (thus anonymous) DNS queries and responses made by the research center's recursive
          DNS servers, to use the collected data as input set for experiments.</p>
        </li>
      </simplelist>
      <p>In 2011 we worked also on the automated analysis of malware taces to extract flow-level signatures of malware. We obtained early results regarding network flow-graphs and tested several
      clustering techniques to separate malware traffic.</p>
    </subsection>
    <subsection id="uid90" level="1">
      <bodyTitle>Sensas</bodyTitle>
      <participants>
        <person key="madynes-2010-idm163901531232">
          <firstname>Cyril</firstname>
          <lastname>Auburtin</lastname>
        </person>
        <person key="madynes-2010-idm163901543568">
          <firstname>Alexandre</firstname>
          <lastname>Boeglin</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
      </participants>
      <p>The goal of the 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://sensas.gforge.inria.fr/wiki/doku.php" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">SensAS</ref>ADT, which started in 2011, is to
      propose applications based on wireless sensor networks, building upon work that has been done through the 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.senslab.info/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">SensLab</ref>and 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://senstools.gforge.inria.fr/doku.php" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">SensTools</ref>projects.</p>
      <p>The Madynes team is responsible of the SensMGT part of the SensAS project, which focuses on sensor network management and configuration applications.</p>
      <p>First, we adapted the existing 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://code.google.com/p/contiki-snmp/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">contiki-snmp</ref>implementation to the SensLab
      WSN430 nodes. We did so by (1) reducing the memory footprint of the code and (2) by implementing several SNMP MIBs.</p>
      <p>To reduce the memory footprint, we had to disable some optional features and unused drivers of the Contiki OS.</p>
      <p>The MIBs that we chose to implement were:</p>
      <simplelist>
        <li id="uid91">
          <p noindent="true">the SNMPv2-MIB that provides generic system information,</p>
        </li>
        <li id="uid92">
          <p noindent="true">the IF-MIB that provides information ans stasistics about the network interface of the sensor,</p>
        </li>
        <li id="uid93">
          <p noindent="true">and the ENTITY-SENSOR-MIB, that provides access to the actual sensors data.</p>
        </li>
      </simplelist>
      <p>Then, we were facing a problem, as the Contiki versions provided by the SensTools project were only stable releases, and we found it difficult to track the development version of Contiki
      with them. We then decided to create our own 
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="https://gforge.inria.fr/projects/contiki-senslab/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">WSN430 drivers</ref>and platform
      definition for Contiki, well integrated with the development repository, and reusing as much as possible of already existing code. Our next step in this direction will be to have our
      contribution officially integrated in the Contiki OS.</p>
      <p>And finally, we devised and implemented a COAP server discovery protocol using the piggybacking technique, which allows every node that offers COAP resources to announce itself to the
      grounded root of the sensor network, without requiring the transmission of additional packets.</p>
    </subsection>
  </resultats>
  <contrats id="uid94">
    <bodyTitle>Contracts and Grants with Industry</bodyTitle>
    <subsection id="uid95" level="1">
      <bodyTitle>INRIA-ALBLF HIMA</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374419456">
          <firstname>Rémi</firstname>
          <lastname>Badonnel</lastname>
        </person>
        <person key="madynes-2009-idm231958288896">
          <firstname>Oussema</firstname>
          <lastname>Dabbebi</lastname>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
          <moreinfo>Contact</moreinfo>
        </person>
      </participants>
      <descriptionlist>
        <label>Dates</label>
        <li id="uid96">
          <p noindent="true">July 2008 - December 2011</p>
        </li>
        <label>Partners</label>
        <li id="uid97">
          <p noindent="true">Alcatel Lucent, INRIA.</p>
        </li>
      </descriptionlist>
      <p>This joint lab brings together research teams from INRIA and Alcatel Lucent Bell Labs for addressing the key challenges of autonomous networking in three critical areas: semantic networking,
      high manageability and self-organized networks. Our activity is part of the joint initiative dedicated to high manageability, and focuses on security management aspects with the Alcatel-Lucent
      Bell Labs teams on network security. Our work in this joint lab concerns the automation of security management. It includes a first activity related to fuzzing, which includes the improvement
      of the KiF framework as well as the design of novel fuzzing models for Alcatel-Lucent specific protocols. A second activity of the joint lab aims at investigating to what extent risk management
      strategies can be applied to VoIP infrastructures. The objective is to design and experiment dynamic risk management methods and techniques for voice oriented critical services.</p>
    </subsection>
    <subsection id="uid98" level="1">
      <bodyTitle>VAMPIRE</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374443216">
          <firstname>Laurent</firstname>
          <lastname>Andrey</lastname>
        </person>
      </participants>
      <descriptionlist>
        <label>Dates</label>
        <li id="uid99">
          <p noindent="true">March 2000 - February 2012</p>
        </li>
        <label>Partners</label>
        <li id="uid100">
          <p noindent="true">EURECOM, INRIA Nancy Grand-Est (MADYNES), Orange Labs, Symantec</p>
        </li>
      </descriptionlist>
      <p>VAMPIRE is a research project funded by the French Research Agency (ANR, VERSO ANR-08-VERS-017) coordinated by the team. The goal of the project to investigate new thread security issues
      induced by Voice Over IP (VoIP) protocols and web2.0. Madynes has the lead on this project.</p>
      <p>In this project, we do work on VoIP fuzzing methods, fingerprinting algorithms and Programmable honeypots.</p>
    </subsection>
    <subsection id="uid101" level="1">
      <bodyTitle>MAPE</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374453680">
          <firstname>Isabelle</firstname>
          <lastname>Chrisment</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2011-idm124047254608">
          <firstname>Andrea</firstname>
          <lastname>Oroseanu</lastname>
        </person>
      </participants>
      <descriptionlist>
        <label>Dates</label>
        <li id="uid102">
          <p noindent="true">January 2008 - July 2011</p>
        </li>
        <label>Partners</label>
        <li id="uid103">
          <p noindent="true">LIP6-CNRS UPMC Paris 6, INRIA Nancy Grand-Est (MADYNES)</p>
        </li>
      </descriptionlist>
      <p>MAPE (Measurement and Analysis of Peer-to-peer Exchanges for pedocriminality fighting and traffic profiling) is a research project funded by the French Research Agency (ANR). The goal of the
      project is to measure and analyze peer-to-peer exchanges for paedocriminality fighting and traffic profiling.</p>
      <p>The main MADYNES contributions to this project are related to the active measurements and the analysis at the application level. The active measurement requires the design of a distributed
      measurement infrastructure, in order to achieve the best complementarity among the different measurement clients. The issues in the analysis at the application level raises some research
      questions about how communities are structured and how this can be observed both active and passive measurements.</p>
    </subsection>
    <subsection id="uid104" level="1">
      <bodyTitle>ACDA-P2P</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374453680">
          <firstname>Isabelle</firstname>
          <lastname>Chrisment</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2011-idm124047254608">
          <firstname>Andrea</firstname>
          <lastname>Oroseanu</lastname>
        </person>
      </participants>
      <descriptionlist>
        <label>Dates</label>
        <li id="uid105">
          <p noindent="true">April 2010 - December 2011</p>
        </li>
        <label>Partners</label>
        <li id="uid106">
          <p noindent="true">UTT , LORIA (MADYNES)</p>
        </li>
      </descriptionlist>
      <p>ACDA P2P (Approche collaborative pour la detection d'attaques dans les reseaux pair a pair) is a research project funded by the GIS 3SGS which aims at strengthening and developing a
      multidisciplinary community in the field of the surveillance, of the safety and of the safety(security) of the big systems.</p>
      <p>The goal of this project is to propose a new monitoring architecture, which is able to observe the peers behavior and to collect measurements relevant to detect attacks while not being
      intrusive and detectable. KAD and BitTorrent will be studied as target P2P networks.</p>
      <p>We focus more specifically on collaboration between distributed probes in charge of directly detecting attacks if possible, or collecting data for a further analyzis. This collaboration
      induces new challenges:</p>
      <simplelist>
        <li id="uid107">
          <p noindent="true">coordination of collected measurements in order to have a global view of the network;</p>
        </li>
        <li id="uid108">
          <p noindent="true">design of indicators revealing a malicious behavior;</p>
        </li>
        <li id="uid109">
          <p noindent="true">optimization of data collection through learning methods;</p>
        </li>
        <li id="uid110">
          <p noindent="true">security issues to avoid vulnerabilities and weaknesses.</p>
        </li>
      </simplelist>
    </subsection>
    <subsection id="uid111" level="1">
      <bodyTitle>SCAMSTOP</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374408832">
          <firstname>Mohamed</firstname>
          <lastname>Nassar</lastname>
        </person>
      </participants>
      <descriptionlist>
        <label>Dates</label>
        <li id="uid112">
          <p noindent="true">April 2010 - December 2011</p>
        </li>
        <label>Partners</label>
        <li id="uid113">
          <p noindent="true">INRIA Nancy Grand Est (MADYNES)</p>
        </li>
      </descriptionlist>
      <p>In traditional telecommunication, various experts estimate that fraud accounts for annual losses at an average of 5% of the operators revenue and still increasing at a rate of more than 10%
      yearly. Hence, with the openness and low cost structure of voice over IP (VoIP) service one can expect an even higher threat of fraud and higher losses of revenue making fraud and misuse of
      services one of the main challenges to VoIP providers. Fraud detection has been an active research and development area in the world of banking and credit card industry. In the VoIP area, there
      is still hardly any research or products that can assist providers in detecting anomalous behaviour. To fill in this gap, SCAMSTOP will provide a complete framework/solution for automatic fraud
      detection that alarms providers when suspicious behaviour is detected. The design of the SCAMSTOP fraud detection tools will be based on two aspects. On the one side, SCAMSTOP will use well
      known methods for statistical behavioural modelling and anomaly detection that have proven their efficiency in the area of credit card, banking and telecommunication and apply them to Internet
      telephony services. Of special interest here is characterizing the normal usage behaviour while taking into consideration the offered service plans and service structure. On the other side,
      innovative approaches based on multi-protocol event correlation that takes into account the specific nature of VoIP protocols and components will be developed. This solution will not only be
      designed to achieve a high detection rate but it will also be optimized to be resource efficient as well. To assess the efficiency and usability of the developed tools and mechanisms, the
      SCAMSTOP fraud detection system will be intensively tested and probed throughout the project. The consortium is a healthy mixture of SMEs including VoIP service provider, VoIP security and
      signalling products manufacturers as well as reputed research organizations.</p>
      <p>We have developped an integrated environment that allows an operator to perform various clustering activities on call detail records and use profiles. In a cooperation with the University of
      Liege, we have also investigated alternative methods to detect fraud in Voice over IP systems. A decision tree approach was designed to automatically classify INVITE messages as SPIT or normal
      based only on the content and order of their fields. A supporting architecture enabling user reporting of SPIT was also designed in this work.</p>
    </subsection>
    <subsection id="uid114" level="1">
      <bodyTitle>FIREFLIES RTLS</bodyTitle>
      <participants>
        <person key="madynes-2006-idm72374440480">
          <firstname>Laurent</firstname>
          <lastname>Ciarletta</lastname>
          <moreinfo>contact</moreinfo>
        </person>
        <person key="madynes-2006-idm72374457424">
          <firstname>Olivier</firstname>
          <lastname>Festor</lastname>
        </person>
      </participants>
      <moreinfo>
        <p>Priyadarsi Nanda (University of Technology of Sydney), Ye-Qiong Song, Bilel Nefzi and Hugo Cruz Sanchez (TRIO research team, INRIA Nancy-Grand-Est) are contributing to this activity. Tom
        Leclerc and Alexandre Boeglin have been ponctually participating.</p>
      </moreinfo>
      <descriptionlist>
        <label>Dates</label>
        <li id="uid115">
          <p noindent="true">March 2009 - December 2012</p>
        </li>
        <label>Partners</label>
        <li id="uid116">
          <p noindent="true">FIREFLIES RTLS</p>
        </li>
      </descriptionlist>
      <p>As part of our effort in Pervasive Computing research, we've started to work with Firelies RTLS, a French startup specialized in advanced geolocation services. They aim at providing
      long-term and resilient location service for high value assets using active RFID tags.</p>
      <p>In 2011, the project has been refocused towards energy-constraints addressing, routing and management. This explains the joint-work with the TRIO team, and the arrival and Pr. Nanda from the
      University of Sydney. We are in the process of conducting a thorough evaluation of the Fireflies framework against standards and state of the art solutions in those areas. We are both building
      a local testbed and an extended simulation environment with a set of usage scenarii that are to be fed by real experiments. We are also working in improving the depth (number of hops) and the
      overall life-span of the sensor network in line with their application needs.</p>
    </subsection>
  </contrats>
  <international id="uid117">
    <bodyTitle>Partnerships and Cooperations</bodyTitle>
    <subsection id="uid118" level="1">
      <bodyTitle>Regional Initiatives</bodyTitle>
      <p>The TEAM is involved in several actions of the regional CPER (Contrat Plan Etat Region) initiative on networked security as well as in the security of industrial networked systems
      initiative. We are also involved in the smart living intiative of the CPER where we provide our expertise on embedded operating systems and sensors.</p>
    </subsection>
    <subsection id="uid119" level="1">
      <bodyTitle>National Initiatives</bodyTitle>
      <p>The team is participating in several national research projects : ANR MAPE and coordinator of the ANR VAMPIRE project. In addition the team is involved in one P2P project with the University
      of Troyes (GIS 3S).</p>
    </subsection>
    <subsection id="uid120" level="1">
      <bodyTitle>European Initiatives</bodyTitle>
      <subsection id="uid121" level="2">
        <bodyTitle>Think tanks and european institutes</bodyTitle>
        <p>Olivier Festor is member of the Future Media Internet think tank at the European Commission, part of the european Future Internet Assembly. In 2011, the think tank did contribute to the
        FIA events and issue one white paper on the Future Media Internet Architecture  
        <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="#madynes-2011-bid22" location="biblio" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest"/>.</p>
        <p>Since november 1st 2011, Olivier Festor is the Director of Research of the European Institute of Innovation and Technology EIT ICT Labs.</p>
      </subsection>
      <subsection id="uid122" level="2">
        <bodyTitle>Academics cooperations</bodyTitle>
        <p>MADYNES has an ongoing collaboration with the university of Luxembourg on network security. Two joint thesis are part of this collaboration : the thesis of Gerard Wagener on high
        interaction honeypot models and the thesis of Sheila Becker on game theory-based protocol fuzzing.</p>
        <p>We are also members of the EUNICE consortium. EUNICE has been established to foster the mobility of students, faculty members and research scientists working in the field of information
        and communication technologies and to promote educational and research cooperations between its member institutions. The major event of EUNICE is an annual summer school which brings together
        lecturers, researchers, students and people from the industry across Europe for one week of presentations, discussions and networking. Isabelle Chrisment is member of EUNICE technical
        committee.</p>
      </subsection>
      <subsection id="uid123" level="2">
        <bodyTitle>FP7 Projects</bodyTitle>
        <subsection id="uid124" level="3">
          <bodyTitle>Univerself</bodyTitle>
          <sanspuceslist>
            <li id="uid125">
              <p noindent="true">Title: Univerself</p>
            </li>
            <li id="uid126">
              <p noindent="true">Type: COOPERATION (ICT)</p>
            </li>
            <li id="uid127">
              <p noindent="true">Defi: The Network of the Future</p>
            </li>
            <li id="uid128">
              <p noindent="true">Instrument: Integrated Project (IP)</p>
            </li>
            <li id="uid129">
              <p noindent="true">Duration: September 2010 - August 2013</p>
            </li>
            <li id="uid130">
              <p noindent="true">Coordinator: Alcatel Lucent Bellabs (France)</p>
            </li>
            <li id="uid131">
              <p noindent="true">Others partners: Alcatel-Lucent Bell Labs (France), Alcatel Lucent Ireland Limited (Ireland), Alcatel-Lucent Deutschland AG (Germany), NEC Europe Ltd. (Germany),
              Thales Communications SA (France), France Telecom SA (France), Telecom Italia S.p.A (Italia), Telefonica Investigacion y Desarrollo (Spain), Fraunhofer-Gesellschaft Zur Foerderung Der
              Angewandten Forschung E.V (Germany), Interdisciplinary Institute for Broadband Technology (Belgium), Inria (France), VTT Technical Research Centre of Finland (Finland), University
              College London (UK), University of Surrey (UK), National and Kapodistrian University of Athens (Greece), University of Piraeus Research Centre (Greece), Universiteit Twente (The
              Netherlands)</p>
            </li>
            <li id="uid132">
              <p noindent="true">See also: 
              <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.univerself-project.eu/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">www.
              <allowbreak/>univerself-project.
              <allowbreak/>eu/
              <allowbreak/></ref></p>
            </li>
            <li id="uid133">
              <p noindent="true">Abstract: This FP7 european integrated project aims at consolidating the autonomic methods and techniques supporting the management of the future Internet, and at
              integrating these methods into a unified management framework. The objective of this framework is to address the management issues of the evolving Internet through the self-organisation
              of the control plane and the empowerment of the management plane with cognition.</p>
            </li>
          </sanspuceslist>
          <p>Our work in the Univerself project mainly concerns the security and safety challenges posed by the unified management framework, in particular the prevention of configuration
          vulnerabilities.</p>
        </subsection>
        <subsection id="uid134" level="3">
          <bodyTitle>FI-WARE</bodyTitle>
          <sanspuceslist>
            <li id="uid135">
              <p noindent="true">Title: Future Internet Core Platform</p>
            </li>
            <li id="uid136">
              <p noindent="true">Type: COOPERATION (ICT)</p>
            </li>
            <li id="uid137">
              <p noindent="true">Defi: PPP FI: Technology Foundation: Future Internet Core Platform</p>
            </li>
            <li id="uid138">
              <p noindent="true">Instrument: Integrated Project (IP)</p>
            </li>
            <li id="uid139">
              <p noindent="true">Duration: May 2011 - April 2014</p>
            </li>
            <li id="uid140">
              <p noindent="true">Coordinator: Telefonica (Spain)</p>
            </li>
            <li id="uid141">
              <p noindent="true">Others partners: Telefonica I+D (Spain), SAP AG (Germany), IBM, Thales (France), Telecom Italia (Italy), Orange Labs - France Telecom (France), Nokia Siemens Networks
              (Germany), Deutsche Telekom (Germany), Technicolor (France), Ericsson (Sweden), ATOS ORIGIN S.A.E (Space), Engineering Ingegneria Informatica S.p.A (Italy), Alcatel-Lucent Deutschland
              AG (Germany), Alcatel-Lucent Italia S.p.A (Italy), Siemens AG (Germany), Intel (Ireland), NEC Europe Ltd. (Germany), Fraunhofer Institute for Open Communication Systems FOKUS (Germany),
              Inria (France), Universidad Politecnica de Madrid (Spain), University of Duisburg-Essen (Germany), University of Rome - Sapienza (Italy), University of Surrey (UK),</p>
            </li>
            <li id="uid142">
              <p noindent="true">See also: 
              <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.fi-ware.eu/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
              <allowbreak/>www.
              <allowbreak/>fi-ware.
              <allowbreak/>eu/
              <allowbreak/></ref></p>
            </li>
            <li id="uid143">
              <p noindent="true">Abstract: The goal of the FI-WARE project is to advance the global competitiveness of the EU economy by introducing an innovative infrastructure for cost-effective
              creation and delivery of services, providing high QoS and security guarantees. FI-WARE is designed to meet the demands of key market stakeholders across many different sectors, e.g.,
              healthcare, telecommunications, and environmental services. The project unites major European industrial actors in an unique effort never seen before.</p>
              <p>The key deliverables of FI-WARE will deliver an open architecture and implementation of a novel service infrastructure, building upon generic and reusable building blocks developed
              in earlier research projects. This infrastructure will support emerging Future Internet (FI)ervices in multiple Usage Areas, and will exhibit significant and quantifiable improvements
              in the productivity, reliability and cost of service development and delivery - building a true foundation for the Future Internet.</p>
            </li>
          </sanspuceslist>
          <p>The MADYNES contributions to the FI-WARE project are :</p>
          <simplelist>
            <li id="uid144">
              <p noindent="true">a fuzzing framework for the Internet of Things part dimension of the FI-WARE platform. More specifically we will instanciate the KIF framework to a SCADA case
              study;</p>
            </li>
            <li id="uid145">
              <p noindent="true">a smartphone level flow monitoring appliance;</p>
            </li>
            <li id="uid146">
              <p noindent="true">integration facility of OVAL specifications into the FI-WARE ecosystem.</p>
            </li>
          </simplelist>
        </subsection>
        <subsection id="uid147" level="3">
          <bodyTitle>SCAMSTOP</bodyTitle>
          <sanspuceslist>
            <li id="uid148">
              <p noindent="true">Title: SCAMSTOP</p>
            </li>
            <li id="uid149">
              <p noindent="true">Type: CAPACITIES (Research for SMEs)</p>
            </li>
            <li id="uid150">
              <p noindent="true">Instrument: Research for the Benefit of SMEs (SME)</p>
            </li>
            <li id="uid151">
              <p noindent="true">Duration: January 2010 - December 2011</p>
            </li>
            <li id="uid152">
              <p noindent="true">Coordinator: Fraunhofer Institute for Open communication Systems FhG Fokus (Germany)</p>
            </li>
            <li id="uid153">
              <p noindent="true">Others partners: TEI of Mesolonghi (Greece), Inria (France), Telio (Norway), Voz Telecom (Spain), PDM &amp; FC (Portugal)</p>
            </li>
            <li id="uid154">
              <p noindent="true">See also: 
              <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.sme-scamstop.eu/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
              <allowbreak/>www.
              <allowbreak/>sme-scamstop.
              <allowbreak/>eu/
              <allowbreak/></ref></p>
            </li>
            <li id="uid155">
              <p noindent="true">Abstract: SCAMSTOP will provide a complete framework/solution for automatic fraud detection that alarms providers when suspicious behaviour is detected. Thereby,
              SCAMTOP will make fraud detection not only simpler but much faster as well. The developed tools can be used by VoIP/ISP providers to protect their services against losses due to fraud
              and to identify previously uncollected revenue sources.</p>
            </li>
          </sanspuceslist>
          <p>We do contribute to this project by the design and implementation of fraud detection mechanisms based on advanced clustering techniques.</p>
        </subsection>
      </subsection>
    </subsection>
    <subsection id="uid156" level="1">
      <bodyTitle>International Initiatives</bodyTitle>
      <p>We actively participate to the Internet Research Task Force (IRTF) Network Management Research Group (
      <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://www.irtf.org/charter?gtype=rg&amp;group=nmrg" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">NMRG</ref>). Since march 1st 2011,
      Olivier Festor was named co-chair of this research group within IRTF. The group did organize one meeting in Quebec in july 2011. A workshop on flow-level management will be held in conjunction
      with the next IETF (march 2012) in Paris.</p>
      <subsection id="uid157" level="2">
        <bodyTitle>INRIA International Partners</bodyTitle>
        <p>We have established a strong cooperation with the team of Thomas Djotio at the Polytechnical Superior National School (PSNS) of the Yaoundé University. We curretnly have two joint Ph.D.
        students and regular exchanges of researchers.</p>
      </subsection>
      <subsection id="uid158" level="2">
        <bodyTitle>Visits of International Scientists</bodyTitle>
        <subsection id="uid159" level="3">
          <bodyTitle>Invited researchers and professors</bodyTitle>
          <p>Ramin Sadre from University of Twente, spent 3 weeks in the team, working on anomaly detection based on flow analysis.</p>
          <p>Pr Priyadarsi Nanda fom the University fo technology, Sydney Australia spent 6 months on the team working on new naming schemes and advanded routing on wireless sensor networks.</p>
        </subsection>
        <subsection id="uid160" level="3">
          <bodyTitle>Internships</bodyTitle>
          <sanspuceslist>
            <li id="uid161">
              <p noindent="true">Balkiss Souissi (from Feb 2011 until Aug 2011)</p>
              <sanspuceslist>
                <li id="uid162">
                  <p noindent="true">Subject: A self-monitoring approach for RPL-enabled wireless sensor networks</p>
                </li>
                <li id="uid163">
                  <p noindent="true">Institution: Ecole Nationale d'Ingénieurs de Tunis (ENIT) (Tunisia)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid164">
              <p noindent="true">Cesar Bernardini (from Mar 2011 until Oct 2011)</p>
              <sanspuceslist>
                <li id="uid165">
                  <p noindent="true">Subject: An Offensive Security Tool for 6lowpan Networks</p>
                </li>
                <li id="uid166">
                  <p noindent="true">Institution: Universidad Nacional de Cordoba (Argentina)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid167">
              <p noindent="true">Bilel Saadallah (from Mar 2011 until Aug 2011)</p>
              <sanspuceslist>
                <li id="uid168">
                  <p noindent="true">Subject: Passive Monitoring of 802.15.4/6LowPan-enabled Wireless Sensor Networks</p>
                </li>
                <li id="uid169">
                  <p noindent="true">Institution: Ecole Nationale des Sciences de l'Informatique (Tunisia)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid170">
              <p noindent="true">Lucia Masola</p>
              <sanspuceslist>
                <li id="uid171">
                  <p noindent="true">Subject: Collaborative Sharing of Vulnerability Descriptions in Autonomic Networks</p>
                </li>
                <li id="uid172">
                  <p noindent="true">Institution: Universidad Nacional del Centro de la Provincia de Buenos Aires (Argentina)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid173">
              <p noindent="true">Fran cois Despaux</p>
              <sanspuceslist>
                <li id="uid174">
                  <p noindent="true">Subject: Highly Modular SIP Honeypot</p>
                </li>
                <li id="uid175">
                  <p noindent="true">Institution: Universidad de la Republica (Uruguay)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid176">
              <p noindent="true">Damian Vicino</p>
              <sanspuceslist>
                <li id="uid177">
                  <p noindent="true">Subject: Design and Implementation of a Multi-Protocol Peer-to-Peer Client</p>
                </li>
                <li id="uid178">
                  <p noindent="true">Institution: Universidad de Buenos Aires (Argentina)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid179">
              <p noindent="true">Prabhjot Prabhjot Singh</p>
              <sanspuceslist>
                <li id="uid180">
                  <p noindent="true">Subject: NETCONF Friendly Firewall Configuration Models</p>
                </li>
                <li id="uid181">
                  <p noindent="true">Institution: IIT Bombay (India)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
          <sanspuceslist>
            <li id="uid182">
              <p noindent="true">Imen Mahjri (from Mar 2011 until Aug 2011)</p>
              <sanspuceslist>
                <li id="uid183">
                  <p noindent="true">Subject: Exploring cognitive techniques for sensor networks management</p>
                </li>
                <li id="uid184">
                  <p noindent="true">Institution: Ecole Nationale des Sciences de l'Informatique (Tunisia)</p>
                </li>
              </sanspuceslist>
            </li>
          </sanspuceslist>
        </subsection>
      </subsection>
    </subsection>
  </international>
  <diffusion id="uid185">
    <bodyTitle>Dissemination</bodyTitle>
    <subsection id="uid186" level="1">
      <bodyTitle>Animation of the scientific community</bodyTitle>
      <p>Olivier Festor is the Co-Chair together with Aiko Pras from University of Twente of the IFIP Working-Group 6.6 on Network and systems management. This working group is actively involved the
      animation of most major conferences in this research area and organizes frequent meetings and workshops on the domain. He is also co-chair of the IRTF Network Management Research Group.</p>
      <p>In march 2011, Olivier Festor has been appointed as the Co-chair together with Lisandro Zambenedetti Grandvile from the Federal University of Rio Grande do Sul (UFRGS) of the Internet
      Research Task Force (IRTF) Network Management Research Group.</p>
      <p>Olivier Festor chaired sessions at the following conferences: IEEE ICC CSMA symposium.</p>
      <p>Olivier Festor served as a TPC Member of the following 2011 events: 3rd ACM Workshop on Assurable and Usable Security Configuration (SafeConfig); Security track of the 4th IFIP International
      Conference on New Technologies, Mobility and Security (NTMS 2011); Colloque Francophone sur l'IngÈnierie des protocoles (CFIP 2011); IEEE POLICY 2011 (International Conference), ISPS 2011;
      International Workshop on Networks and Services Security (NSS'2011); IEEE International Conference on Communications ICC 2011 (TPC member of CISS and CSMA tracks); IEEE ICDM 2011 Workshop on
      Data Mining in Networks (DAMNET).</p>
      <p>Olivier Festor has been appointed General Chair for IFIP AIMS'2011 and TPC Co-Chair for IEEE/IFIP International Conference on Network and Service Management (CNSM'2011). He was also Tutorial
      co-chair for the 15th IFIP/IEEE International Conference on Integrated Management (IM'2011).</p>
      <p>Olivier Festor is member of the board of editors of the Springer Journal of Network and Systems Management. He is member of the editorial board of the IEEE Transactions on Network and
      Service Management.</p>
      <p>Olivier Festor served as an expert for the CIFRE Ph.D. programme at the ANRT. He also served as an expert for the european commission in the area of network and service management. In 2011,
      Olivier Festor served as an expert for the review of the french national research council. He also served on the 2011 committee for academic scientific excellence bonus allocation (+400
      applications have been processed by this committee in 2011).</p>
      <p>Isabelle Chrisment was TPC Co-chair of CFIP'2011 and of IFIP AIMS'2011. She was member of the TPC of 2th joint TC6 and TC11 International IFIP Conference on Communications and Multimedia
      Security (CMS'2011) and of NOTERE 2011. She was also member of the steering committee of SARSSI 2011.</p>
      <p>Isabelle Chrisment served as an expert to evaluate projects for ANR and also for DIM Logiciel et systèmes complexes(LSC) from Île-de-France area.</p>
    </subsection>
    <subsection id="uid187" level="1">
      <bodyTitle>Teaching</bodyTitle>
      <p>There is a high demand on networking courses in the various universities in which LORIA is par. This puts high pressure on MADYNES members which are all in charge of numerous courses in this
      domain. Especially the team professors and associate professors ensure more than the required amount of teaching obligation in their respective institutions: IUT, bachelor, master, ESIAL and
      École des Mines de Nancy engineering schools. In this section, we only enumerate the courses that are directly related to our research activity.</p>
      <p>Within the Master degree, SSR (Services, Security and Networks) specialization, Isabelle Chrisment is in charge of the course entitled 
      <i>Advanced Networking</i>. This course is one of the five foundation courses given to the students that follow a research and professional cursus in Networking in Nancy.</p>
      <p>André Schaff is the Director of the ESIAL Engineering School. Isabelle Chrisment is co-directing the school and is in charge of the students recruitement process. Remi Badonnel is heading
      the Telecommunications and Networks specialization of the 2nd and 3rd years at the ESIAL engineering school. They teach the networking related courses in this cursus.</p>
      <p>Laurent Ciarletta is heading the specialization Safe Systems Architecture of the Computer Science and IT department of the Ecole des Mines de Nancy ("Grande Ecole", Engineering School,
      Master degree level). He is most notably in charge of Advanced Networking, Middleware, Component-based software development, Pervasive Computing, Networking and Systems courses at the Ecole des
      Mines de Nancy. He is also co-responsible for the IPISO Master (Ecole des Mines de Paris - Nancy - Saint Etienne) and specifically the Software Architecture class. Notably, he is co-responsible
      for the "Businesses: the digital challenge 
      <i>Entreprises : le défi numérique</i>, a class within the ARTEM alliance (ICN - Business School, Ecole des Mines de Nancy, Ecole d'Art / School of Art).</p>
      <p>In 2011, Olivier Festor and Abdelkader Lahmadi did setup a new course at the ENSEM engineering school on distributed systems and distributed algorithms.</p>
    </subsection>
    <subsection id="uid188" level="1">
      <bodyTitle>Tutorials, invited talks, panels, presentations</bodyTitle>
      <p>In addition to the presentation of all papers published in conferences in 2011, the team members made the following public talks:</p>
      <simplelist>
        <li id="uid189">
          <p noindent="true">Olivier Festor did participate to the Dagstuhl Seminar 11042 entitled: 
          <i>Learning from the Past: Implications for the Future Internet and its Management ?</i>This seminar took place from January 27-30, 2011 in Schloss Dagstuhl, Germany.</p>
        </li>
        <li id="uid190">
          <p noindent="true">Alexandre Boeglin gave a presentation entitled 
          <i/>at IETF 81 in Quebec City, Canada in the IRTF-NMRG session in july 2011.</p>
        </li>
      </simplelist>
    </subsection>
    <subsection id="uid191" level="1">
      <bodyTitle>Commissions</bodyTitle>
      <p>Team members participated to the following Ph.D. defense committees :</p>
      <simplelist>
        <li id="uid192">
          <p noindent="true">Amélie Medem, Ph.D. in Computer Science from Université Pierre et Marie Curie - Sorbonne Universités. Title: 
          <i>Conception de mécanismes d'amélioration de la gestion d'incidents dans les réseaux IP</i>, February 2011. (Olivier Festor)</p>
        </li>
        <li id="uid193">
          <p noindent="true">Patrick Battistello, Ph.D. in Computer Science from Telecom Bretagne. Title: 
          <i>Protocole d'etablissement d'appels sécurisés limitant les risques de (D)DOS et de SPIT ‡ l'interconnexion entre opérateurs</i>, April 2011. (Olivier Festor)</p>
        </li>
        <li id="uid194">
          <p noindent="true">Sinan Hatahet, Ph.D. in Computer Science from University of Technology of Compiègne. Title: 
          <i>Security in Unstructured P2P Systems</i>, April 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid195">
          <p noindent="true">Gérard Wagener, joint Ph.D. in Computer Science from University of Luxembourg and INPL. Title 
          <i>Self-Adaptive Honeypots Coercing and Assessing Attacker Behaviour</i>, June 2011. (Olivier Festor)</p>
        </li>
        <li id="uid196">
          <p noindent="true">Thibault Cholez, Ph.D. in Computer Science from University Henri Poincaré, Nancy 1. Title 
          <i>Supervision des réseaux P2P structurés appliquée à la sécurité des contenus</i>, June 2011. (Isabelle Chrisment et Olivier Festor)</p>
        </li>
        <li id="uid197">
          <p noindent="true">Guilherme Koslovski, Ph.D. in Computer Science from ENS Lyon. Title: 
          <i>Dynamically provisioned Virtual Infrastructures: specification, allocation and execution</i>, June 2011. (Olivier Festor)</p>
        </li>
        <li id="uid198">
          <p noindent="true">Tigran Avanesov, Ph.D. in Computer Science from University Henri Poincaré, Nancy 1. Title 
          <i>Résolution de contraintes de déductibilité. Application à la composition de services Web sécurisés</i>, September 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid199">
          <p noindent="true">Houssein Wehbe, Ph.D. in Computer Science from University of Rennes 1. Title 
          <i>Transmission de flux vidéo en direct sur les réseaux pair à pair : optimisation de l'overlay et de la retransmission</i>, September 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid200">
          <p noindent="true">Tony Bourdier, Ph.D. in Computer Science from University Henri Poincaré, Nancy 1. Title 
          <i>Méthodes algébriques pour la formalisation et l'analyse de politiques de sécurité</i>, October 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid201">
          <p noindent="true">Jörn Franke, Ph.D. in Computer Science from University Henri Poincaré, Nancy 1. Title 
          <i>Coordination of Distributed Activities in Dynamic Situations. The Case of Inter-organizational Crisis Management</i>, October 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid202">
          <p noindent="true">Cristian Rosa, Ph.D. in Computer Science from University Henri Poincaré, Nancy 1. Title 
          <i>Performance and Correctness Assessment of Distributed Systems</i>, October 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid203">
          <p noindent="true">Abdelhamid Salah Brahim, Ph.D. in Computer Science from Université Pierre et Marie Curie - Sorbonne Universités. Title 
          <i>Information diffusion and community structure in a blog network</i>, December 2011. (Isabelle Chrisment)</p>
        </li>
        <li id="uid204">
          <p noindent="true">Johan Mazel, Ph.D. in Computer Science from INSA Toulouse. Title: 
          <i>Unsupervised Network Anomaly Detection</i>, December 2011. (Olivier Festor)</p>
        </li>
      </simplelist>
      <p>Team members participated in the following academic recruitment committees :</p>
      <simplelist>
        <li id="uid205">
          <p noindent="true">Isabelle Chrisment did lead a Professor position in mathematics recruitment committee in Nancy University.</p>
        </li>
        <li id="uid206">
          <p noindent="true">Olivier Festor was member of a Professor position recruitment committee in computer science at the Joseph Fourier University in Grenoble.</p>
        </li>
        <li id="uid207">
          <p noindent="true">Laurent Ciarletta was member of an Associate Professor position recruitment committee in computer science in Nancy University.</p>
        </li>
      </simplelist>
    </subsection>
  </diffusion>
  <biblio id="bibliography" html="bibliography" numero="10" titre="Bibliography">
    <biblStruct dedoublkey="1842" id="madynes-2011-bid32" type="book" rend="year" n="cite:CHRISMENT:2011:INRIA-00628157:1">
      <identifiant type="hal" value="inria-00628157"/>
      <identifiant type="doi" value="10.1007/978-3-642-21484-4"/>
      <monogr>
        <title level="m">Managing the Dynamics of Networks and Services, Proceedings of the 5th International Conference on Autonomous Infrastructure, Management and Security, AIMS 2011.</title>
        <title level="s">Lecture Notes in Computer Science</title>
        <author>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName>
            <foreName>Alva</foreName>
            <surname>Couch</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName>
            <foreName>Martin</foreName>
            <surname>Waldburger</surname>
            <initial>M.</initial>
          </persName>
        </author>
        <imprint>
          <biblScope type="volume">6734</biblScope>
          <publisher>
            <orgName>Springer</orgName>
          </publisher>
          <dateStruct>
            <month>June</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00628157/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00628157/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="5514" id="madynes-2011-bid33" type="phdthesis" rend="year" n="cite:CHOLEZ:2011:TEL-00608907:1">
      <identifiant type="hal" value="tel-00608907"/>
      <monogr>
        <title level="m">Supervision des réseaux pair à pair structurés appliquée à la sécurité des contenus</title>
        <author>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">Université Henri Poincaré - Nancy I</orgName>
          </publisher>
          <dateStruct>
            <month>June</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://tel.archives-ouvertes.fr/tel-00608907/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>tel.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>tel-00608907/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">THESE</note>
    </biblStruct>
    <biblStruct dedoublkey="5311" id="madynes-2011-bid18" type="phdthesis" rend="year" n="cite:LECLERC:2011:TEL-00642xxx:1">
      <identifiant type="hal" value="tel-00608907"/>
      <monogr>
        <title level="m">Contributions for Advanced Service Discovery in Ad hoc Networks</title>
        <author>
          <persName key="madynes-2007-idm860520384">
            <foreName>Tom</foreName>
            <surname>Leclerc</surname>
            <initial>T.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">Université Henri Poincaré - Nancy I</orgName>
          </publisher>
          <dateStruct>
            <month>November</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://tel.archives-ouvertes.fr/tel-00608907/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>tel.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>tel-00608907/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">THESE</note>
    </biblStruct>
    <biblStruct dedoublkey="5267" id="madynes-2011-bid17" type="phdthesis" rend="year" n="cite:SIEBERT:2011:TEL-00642034:1">
      <identifiant type="hal" value="tel-00642034"/>
      <monogr>
        <title level="m">Approche multi-agent pour la multi-modélisation et le couplage de simulations. Application à l'étude des influences entre le fonctionnement des réseaux ambiants et le
        comportement de leurs utilisateurs.</title>
        <author>
          <persName key="madynes-2007-idm860523488">
            <foreName>Julien</foreName>
            <surname>Siebert</surname>
            <initial>J.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">Université Henri Poincaré - Nancy I</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://tel.archives-ouvertes.fr/tel-00642034/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>tel.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>tel-00642034/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">THESE</note>
    </biblStruct>
    <biblStruct dedoublkey="5496" id="madynes-2011-bid34" type="phdthesis" rend="year" n="cite:WAGENER:2011:TEL-00627981:1">
      <identifiant type="hal" value="tel-00627981"/>
      <monogr>
        <title level="m">Self-Adaptive Honeypots Coercing and Assessing Attacker Behaviour</title>
        <author>
          <persName key="madynes-2007-idm860494368">
            <foreName>Gérard</foreName>
            <surname>Wagener</surname>
            <initial>G.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">Institut National Polytechnique de Lorraine - INPL</orgName>
          </publisher>
          <dateStruct>
            <month>June</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://tel.archives-ouvertes.fr/tel-00627981/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>tel.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>tel-00627981/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="bnote">Thèse en co-tutelle entre l'INPL et l'Université du Luxembourg sous la direction Commune de Thomas Engel et Olivier Festor avec la participation de Radu State</note>
      <note type="typdoc">THESE</note>
    </biblStruct>
    <biblStruct dedoublkey="1449" id="madynes-2011-bid12" type="article" rend="year" n="cite:LAHMADI:2011:INRIA-00594861:1">
      <identifiant type="hal" value="inria-00594861"/>
      <analytic>
        <title level="a">SecSIP : un environnement de protection pour la voix sur IP</title>
        <author>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr id="rid01930" x-editorial-board="yes" x-international-audience="no">
        <idno type="issn">I-NtFd29</idno>
        <title level="j">Techniques de l'Ingenieur</title>
        <imprint>
          <biblScope type="number">IN 130</biblScope>
          <dateStruct>
            <month>February</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00594861/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00594861/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="0849" id="madynes-2011-bid19" type="article" rend="year" n="cite:NAVARRETEGUTIERREZ:2011:HAL-00640079:1">
      <identifiant type="hal" value="hal-00640079"/>
      <identifiant type="doi" value="10.3166/ria.25.625-651"/>
      <analytic>
        <title level="a">Impact des dimensions spatiale et temporelle dans la modélisation d'un phénomène collectif de type free-riding</title>
        <author>
          <persName>
            <foreName>Tomas</foreName>
            <surname>Navarrete Gutierrez</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2007-idm860523488">
            <foreName>Julien</foreName>
            <surname>Siebert</surname>
            <initial>J.</initial>
          </persName>
          <persName key="madynes-2006-idm72374440480">
            <foreName>Laurent</foreName>
            <surname>Ciarletta</surname>
            <initial>L.</initial>
          </persName>
          <persName key="maia-2006-idm402315166384">
            <foreName>Vincent</foreName>
            <surname>Chevrier</surname>
            <initial>V.</initial>
          </persName>
        </author>
      </analytic>
      <monogr id="rid01801" x-editorial-board="yes" x-international-audience="no">
        <idno type="issn">0992-499X</idno>
        <title level="j">Revue d'Intelligence Artificielle</title>
        <imprint>
          <biblScope type="volume">25</biblScope>
          <biblScope type="number">5</biblScope>
          <dateStruct>
            <year>2011</year>
          </dateStruct>
          <biblScope type="pages">625–651</biblScope>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.archives-ouvertes.fr/hal-00640079/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>hal-00640079/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="4666" id="madynes-2011-bid6" type="inproceedings" rend="year" n="cite:BARRERE:2011:HAL-00614085:1">
      <identifiant type="hal" value="hal-00614085"/>
      <analytic>
        <title level="a">Supporting Vulnerability Awareness in Autonomic Networks and Systems with OVAL</title>
        <author>
          <persName key="madynes-2011-idm124047248464">
            <foreName>Martin</foreName>
            <surname>Barrere</surname>
            <initial>M.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">Network and Service Management -CNSM'11</title>
        <loc>Paris, France</loc>
        <imprint>
          <dateStruct>
            <month>October</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.archives-ouvertes.fr/hal-00614085/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>hal-00614085/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid543737">
          <title>International Conference on Network and Service Management</title>
          <num>7</num>
          <abbr type="sigle">CNSM</abbr>
        </meeting>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="4830" id="madynes-2011-bid7" type="inproceedings" rend="year" n="cite:BARRERE:2011:HAL-00580315:1">
      <identifiant type="hal" value="hal-00580315"/>
      <analytic>
        <title level="a">Towards Vulnerability Prevention in Autonomic Networks and Systems</title>
        <author>
          <persName key="madynes-2011-idm124047248464">
            <foreName>Martin</foreName>
            <surname>Barrere</surname>
            <initial>M.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">Proceedings of the 5th International Conference on Autonomous Infrastructure, Management and Security - AIMS 2011</title>
        <loc>Nancy, France</loc>
        <imprint>
          <dateStruct>
            <month>June</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.archives-ouvertes.fr/hal-00580315/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>hal-00580315/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid112928">
          <title>International Conference on Autonomous Infrastructure, Management and Security</title>
          <num>5</num>
          <abbr type="sigle">AIMS</abbr>
        </meeting>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="3099" id="madynes-2011-bid30" type="inproceedings" rend="year" n="cite:CHOLEZ:2011:INRIA-00596677:1">
      <identifiant type="hal" value="inria-00596677"/>
      <analytic>
        <title level="a">Détection de pairs suspects dans le réseau pair à pair KAD</title>
        <author>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Christopher</foreName>
            <surname>Hénard</surname>
            <initial>C.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
          <persName key="madynes-2006-idm72374428832">
            <foreName>Guillaume</foreName>
            <surname>Doyen</surname>
            <initial>G.</initial>
          </persName>
          <persName>
            <foreName>Rida</foreName>
            <surname>Khatoun</surname>
            <initial>R.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">SAR-SSI 2011: 6ème Conf. sur la Sécurité des Architectures Réseaux et Systèmes d'Information</title>
        <loc>La Rochelle, France</loc>
        <imprint>
          <publisher>
            <orgName type="organisation">IEEE</orgName>
          </publisher>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00596677/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00596677/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid53380">
          <title>Conférence sur la Sécurité des Architectures Réseaux et des Systêmes d'information</title>
          <num>6</num>
          <abbr type="sigle">SAR-SSI</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Financement GIS - 3SGS - Projet ACDAP2P</note>
    </biblStruct>
    <biblStruct dedoublkey="3014" id="madynes-2011-bid16" type="inproceedings" rend="year" n="cite:CIARLETTA:2011:INRIA-00584928:1">
      <identifiant type="hal" value="inria-00584928"/>
      <analytic>
        <title level="a">Co-simulation and multi-models for Pervasive Computing as a complex system</title>
        <author>
          <persName key="madynes-2006-idm72374440480">
            <foreName>Laurent</foreName>
            <surname>Ciarletta</surname>
            <initial>L.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">14th International Conference on Human-Computer Interaction - HCI International 2011</title>
        <loc>Orlando, États-Unis</loc>
        <imprint>
          <publisher>
            <orgName>Springer</orgName>
          </publisher>
          <dateStruct>
            <month>July</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00584928/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00584928/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid284520">
          <title>International Conference on Human Computer Interaction</title>
          <num>14</num>
          <abbr type="sigle">HCI</abbr>
        </meeting>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="2283" id="madynes-2011-bid9" type="inproceedings" rend="year" n="cite:DABBEBI:2011:HAL-00580317:1">
      <identifiant type="hal" value="hal-00580317"/>
      <analytic>
        <title level="a">A Broad-Spectrum Strategy for Runtime Risk Management in VoIP Enterprise Architectures</title>
        <author>
          <persName key="madynes-2009-idm231958288896">
            <foreName>Oussema</foreName>
            <surname>Dabbebi</surname>
            <initial>O.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">Proceedings of the 12th IFIP/IEEE International Symposium on Integrated Network Management - IEEE IM'2011</title>
        <loc>Dublin, Irlande</loc>
        <imprint>
          <publisher>
            <orgName>IEEE</orgName>
          </publisher>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <biblScope type="pages">7</biblScope>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.archives-ouvertes.fr/hal-00580317/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>hal-00580317/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid100192">
          <title>IFIP IEEE International Symposium on Integrated Network Management</title>
          <num>12</num>
          <abbr type="sigle">IM</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Laboratoire Commun Alcatel Lucent INRIA</note>
    </biblStruct>
    <biblStruct dedoublkey="3169" id="madynes-2011-bid10" type="inproceedings" rend="year" n="cite:DABBEBI:2011:HAL-00580314:1">
      <identifiant type="hal" value="hal-00580314"/>
      <analytic>
        <title level="a">Econometric Feedback for Runtime Risk Management in VoIP Architectures</title>
        <author>
          <persName key="madynes-2009-idm231958288896">
            <foreName>Oussema</foreName>
            <surname>Dabbebi</surname>
            <initial>O.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">Proceedings of the 5th International Conference on Autonomous Infrastructure, Management and Security - AIMS 2011</title>
        <loc>Nancy, France</loc>
        <imprint>
          <dateStruct>
            <month>June</month>
            <year>2011</year>
          </dateStruct>
          <biblScope type="pages">12</biblScope>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.archives-ouvertes.fr/hal-00580314/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>archives-ouvertes.
          <allowbreak/>fr/
          <allowbreak/>hal-00580314/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid112928">
          <title>International Conference on Autonomous Infrastructure, Management and Security</title>
          <num>5</num>
          <abbr type="sigle">AIMS</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Laboratoire Commun Alcatel Lucent INRIA</note>
    </biblStruct>
    <biblStruct dedoublkey="2646" id="madynes-2011-bid28" type="inproceedings" rend="year" n="cite:DOCARMO:2011:INRIA-00594857:1">
      <identifiant type="hal" value="inria-00594857"/>
      <analytic>
        <title level="a">Artemisa: an Open-Source Honeypot Back-end to Support Security in VoIP Domains</title>
        <author>
          <persName>
            <foreName>Rodrigo</foreName>
            <surname>Do Carmo</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374408832">
            <foreName>Mohamed</foreName>
            <surname>Nassar</surname>
            <initial>M.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">IFIP/IEEE International Symposium on Integrated Network Management - IM 2011</title>
        <loc>Dublin, Irlande</loc>
        <imprint>
          <publisher>
            <orgName>IEEE</orgName>
          </publisher>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00594857/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00594857/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid100192">
          <title>IFIP IEEE International Symposium on Integrated Network Management</title>
          <num>12</num>
          <abbr type="sigle">IM</abbr>
        </meeting>
      </monogr>
      <affiliation>
        <country>AR</country>
      </affiliation>
    </biblStruct>
    <biblStruct dedoublkey="4289" id="madynes-2011-bid29" type="inproceedings" rend="year" n="cite:JEROME:2011:HAL-00645299:1">
      <identifiant type="hal" value="hal-00645299"/>
      <analytic>
        <title level="a">PTF: Passive Temporal Fingerprinting</title>
        <author>
          <persName key="madynes-2006-idm72374402896">
            <foreName>Jérome</foreName>
            <surname>François</surname>
            <initial>J.</initial>
          </persName>
          <persName>
            <foreName>Abdelnur</foreName>
            <surname>Humberto</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374446480">
            <foreName>Radu</foreName>
            <surname>State</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">IFIP/IEEE IM'2011</title>
        <loc>Dublin, Irlande</loc>
        <imprint>
          <publisher>
            <orgName>IEEE</orgName>
          </publisher>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <biblScope type="pages">8</biblScope>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00645299/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00645299/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid424294">
          <title>IFIP/IEEE International Symposium on Integrated Network Management</title>
          <num>2011</num>
          <abbr type="sigle">IFIP/IEEE IM</abbr>
        </meeting>
      </monogr>
      <affiliation>
        <country>LU</country>
      </affiliation>
    </biblStruct>
    <biblStruct dedoublkey="3222" id="madynes-2011-bid0" type="inproceedings" rend="year" n="cite:FRANCOIS:2011:HAL-00641831:1">
      <identifiant type="hal" value="hal-00641831"/>
      <analytic>
        <title level="a">Enforcing Security with Behavioral Fingerprinting</title>
        <author>
          <persName key="madynes-2006-idm72374402896">
            <foreName>Jérome</foreName>
            <surname>François</surname>
            <initial>J.</initial>
          </persName>
          <persName key="madynes-2006-idm72374446480">
            <foreName>Radu</foreName>
            <surname>State</surname>
            <initial>R.</initial>
          </persName>
          <persName>
            <foreName>Thomas</foreName>
            <surname>Engel</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">7th International Conference on Network and Service Management - CNSM 2011</title>
        <loc>Paris, France</loc>
        <imprint>
          <dateStruct>
            <month>October</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00641831/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00641831/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid293260">
          <title>International Conference on Networking and Services</title>
          <num>7</num>
          <abbr type="sigle">ICNS CNSM</abbr>
        </meeting>
      </monogr>
      <affiliation>
        <country>LU</country>
      </affiliation>
    </biblStruct>
    <biblStruct dedoublkey="3221" id="madynes-2011-bid31" type="inproceedings" rend="year" n="cite:JEROME:2011:HAL-00644696:1">
      <identifiant type="hal" value="hal-00644696"/>
      <analytic>
        <title level="a">Enforcing Security with Behavioral Fingerprinting</title>
        <author>
          <persName key="madynes-2006-idm72374402896">
            <foreName>Jérome</foreName>
            <surname>François</surname>
            <initial>J.</initial>
          </persName>
          <persName key="madynes-2006-idm72374446480">
            <foreName>Radu</foreName>
            <surname>State</surname>
            <initial>R.</initial>
          </persName>
          <persName>
            <foreName>Thomas</foreName>
            <surname>Engel</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">IFIP/IEEE in cooperation wit ACM CNSM'2011</title>
        <loc>Paris, France</loc>
        <imprint>
          <dateStruct>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00644696/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00644696/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid543737">
          <title>International Conference on Network and Service Management</title>
          <num>7</num>
          <abbr type="sigle">CNSM</abbr>
        </meeting>
      </monogr>
      <affiliation>
        <country>LU</country>
      </affiliation>
    </biblStruct>
    <biblStruct dedoublkey="4896" id="madynes-2011-bid21" type="inproceedings" rend="year" n="cite:KENFACK:2011:INRIA-00586889:1">
      <identifiant type="hal" value="inria-00586889"/>
      <analytic>
        <title level="a">Une ontologie pour la description des intrusions dans les RCSFs.</title>
        <author>
          <persName>
            <foreName>Hubert Ngankam</foreName>
            <surname>Kenfack</surname>
            <initial>H. N.</initial>
          </persName>
          <persName>
            <foreName>Thoma</foreName>
            <surname>Djotio Ndié</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2006-idm72374434624">
            <foreName>Emmanuel</foreName>
            <surname>Nataf</surname>
            <initial>E.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">CFIP 2011 - Colloque Francophone sur l'Ingénierie des Protocoles</title>
        <loc>Sainte Maxime, France</loc>
        <imprint>
          <publisher>
            <orgName type="organisation">UTC</orgName>
          </publisher>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00586889/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00586889/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid40996">
          <title>Colloque Francophone sur l'Ingénierie des Protocoles</title>
          <num>2011</num>
          <abbr type="sigle">CFIP</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Session Sécurité Réseau</note>
      <affiliation>
        <country>CM</country>
      </affiliation>
    </biblStruct>
    <biblStruct dedoublkey="3512" id="madynes-2011-bid27" type="inproceedings" rend="year" n="cite:LAHMADI:2011:INRIA-00594854:1">
      <identifiant type="hal" value="inria-00594854"/>
      <analytic>
        <title level="a">Hinky: Defending Against Text-based Message Spam on Smartphones</title>
        <author>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName>
            <foreName>Laurent</foreName>
            <surname>Delosière</surname>
            <initial>L.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">IEEE International Conference on Communications ICC2011</title>
        <loc>Kyoto, Japon</loc>
        <imprint>
          <dateStruct>
            <month>June</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00594854/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00594854/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid81826">
          <title>IEEE International Conference on Communications</title>
          <num>2011</num>
          <abbr type="sigle">ICC</abbr>
        </meeting>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="3433" id="madynes-2011-bid1" type="inproceedings" rend="year" n="cite:LAHMADI:2011:INRIA-00586832:1">
      <identifiant type="hal" value="inria-00586832"/>
      <analytic>
        <title level="a">Génération automatique de politiques de sécurité pour SecSIP</title>
        <author>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">CFIP 2011 - Colloque Francophone sur l Ingénierie des Protocoles</title>
        <loc>Sainte Maxime, France</loc>
        <imprint>
          <publisher>
            <orgName type="organisation">UTC</orgName>
          </publisher>
          <dateStruct>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00586832/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00586832/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid40996">
          <title>Colloque Francophone sur l'Ingénierie des Protocoles</title>
          <num>2011</num>
          <abbr type="sigle">CFIP</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Session Sécurité Réseau</note>
    </biblStruct>
    <biblStruct dedoublkey="5031" id="madynes-2011-bid13" type="inproceedings" rend="year" n="cite:LAHMADI:2011:INRIA-00595825:1">
      <identifiant type="hal" value="inria-00595825"/>
      <analytic>
        <title level="a">YANG-Based Configuration Modeling - The SecSIP IPS Case Study</title>
        <author>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374434624">
            <foreName>Emmanuel</foreName>
            <surname>Nataf</surname>
            <initial>E.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">IFIP/IEEE International Symposium on Integrated Network Management</title>
        <loc>Dublin, Irlande</loc>
        <imprint>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00595825/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00595825/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid100192">
          <title>IFIP IEEE International Symposium on Integrated Network Management</title>
          <num>11</num>
          <abbr type="sigle">IM</abbr>
        </meeting>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="2979" id="madynes-2011-bid2" type="inproceedings" rend="year" n="cite:MONTASSIER:2011:INRIA-00619965:1">
      <identifiant type="hal" value="inria-00619965"/>
      <analytic>
        <title level="a">Content Pollution Quantification in Large P2P networks : a Measurement Study on KAD</title>
        <author>
          <persName>
            <foreName>Guillaume</foreName>
            <surname>Montassier</surname>
            <initial>G.</initial>
          </persName>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2006-idm72374428832">
            <foreName>Guillaume</foreName>
            <surname>Doyen</surname>
            <initial>G.</initial>
          </persName>
          <persName>
            <foreName>Rida</foreName>
            <surname>Khatoun</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">11th IEEE International Conference on Peer-to-Peer Computing (IEEE P2P'11)</title>
        <loc>Kyoto, Japon</loc>
        <imprint>
          <publisher>
            <orgName type="organisation">IEEE Communications Society</orgName>
          </publisher>
          <dateStruct>
            <month>August</month>
            <year>2011</year>
          </dateStruct>
          <biblScope type="pages">30-33</biblScope>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00619965/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00619965/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid296339">
          <title>International Conference on Peer-to-Peer Computing</title>
          <num>11</num>
          <abbr type="sigle">P2P</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Projet GIS 3SGS ACDAP2P</note>
    </biblStruct>
    <biblStruct dedoublkey="4920" id="madynes-2011-bid15" type="inproceedings" rend="year" n="cite:NASSAR:2011:HAL-00644821:1">
      <identifiant type="hal" value="hal-00644821"/>
      <analytic>
        <title level="a">Using Decision Trees for Generating Adaptive SPIT Signatures</title>
        <author>
          <persName key="madynes-2006-idm72374408832">
            <foreName>Mohamed</foreName>
            <surname>Nassar</surname>
            <initial>M.</initial>
          </persName>
          <persName>
            <foreName>Sylvain</foreName>
            <surname>Martin</surname>
            <initial>S.</initial>
          </persName>
          <persName>
            <foreName>Guy</foreName>
            <surname>Leduc</surname>
            <initial>G.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">ACM SIN'2011</title>
        <loc>Sydney, Australie</loc>
        <imprint>
          <publisher>
            <orgName>ACM</orgName>
          </publisher>
          <dateStruct>
            <month>November</month>
            <year>2011</year>
          </dateStruct>
          <biblScope type="pages">13-20</biblScope>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00644821/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00644821/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid524269">
          <title>International Conference on Security of Information and Networks</title>
          <num>3</num>
          <abbr type="sigle">SIN</abbr>
        </meeting>
      </monogr>
      <affiliation>
        <country>BE</country>
      </affiliation>
    </biblStruct>
    <biblStruct dedoublkey="2794" id="madynes-2011-bid3" type="inproceedings" rend="year" n="cite:TIMPANARO:2011:INRIA-00577043:1">
      <identifiant type="hal" value="inria-00577043"/>
      <analytic>
        <title level="a">BitTorrent's Mainline DHT Security Assessment</title>
        <author>
          <persName key="madynes-2009-idm231957303456">
            <foreName>Juan Pablo</foreName>
            <surname>Timpanaro</surname>
            <initial>J. P.</initial>
          </persName>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">4th IFIP International Conference on New Technologies, Mobility and Security - NTMS 2011</title>
        <loc>Paris, France</loc>
        <imprint>
          <publisher>
            <orgName type="organisation">IEEE</orgName>
          </publisher>
          <dateStruct>
            <month>February</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00577043/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00577043/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid293639">
          <title>International Conference on New Technologies, Mobility and Security</title>
          <num>4</num>
          <abbr type="sigle">NTMS</abbr>
        </meeting>
      </monogr>
      <note type="bnote">Projet GIS 3SGS ACDAP2P (Approche collaborative pour la détection d'attaques dans les réseaux pair à pair)</note>
    </biblStruct>
    <biblStruct dedoublkey="5019" id="madynes-2011-bid4" type="inproceedings" rend="year" n="cite:TIMPANARO:2011:INRIA-00595086:1">
      <identifiant type="hal" value="inria-00595086"/>
      <analytic>
        <title level="a">When KAD meets BitTorrent - Building a Stronger P2P Network</title>
        <author>
          <persName key="madynes-2009-idm231957303456">
            <foreName>Juan Pablo</foreName>
            <surname>Timpanaro</surname>
            <initial>J. P.</initial>
          </persName>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
      </analytic>
      <monogr x-international-audience="yes" x-proceedings="yes">
        <title level="m">HotP2P 2011</title>
        <loc>Anchorage, ALASKA, États-Unis</loc>
        <imprint>
          <dateStruct>
            <month>May</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00595086/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00595086/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
        <meeting id="cid327526">
          <title>International Workshop on Hot Topics in Peer-to-Peer Systems</title>
          <num>8</num>
          <abbr type="sigle">Hot-P2P</abbr>
        </meeting>
      </monogr>
    </biblStruct>
    <biblStruct dedoublkey="5603" id="madynes-2011-bid14" type="techreport" rend="year" n="cite:ANDREY:2011:HAL-00646691:1">
      <identifiant type="hal" value="hal-00646691"/>
      <monogr>
        <title level="m">A flexible SIP honeypot</title>
        <author>
          <persName key="madynes-2006-idm72374443216">
            <foreName>Laurent</foreName>
            <surname>Andrey</surname>
            <initial>L.</initial>
          </persName>
          <persName>
            <foreName>François</foreName>
            <surname>Despaux</surname>
            <initial>F.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>November</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00646691/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00646691/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Technical Report</note>
    </biblStruct>
    <biblStruct dedoublkey="6098" id="madynes-2011-bid8" type="techreport" rend="year" n="cite:BARRERE:2011:HAL-00646837:1">
      <identifiant type="hal" value="hal-00646837"/>
      <monogr>
        <title level="m">Towards the Assessment of Distributed Vulnerabilities in Autonomic Networks and Systems</title>
        <author>
          <persName key="madynes-2011-idm124047248464">
            <foreName>Martín</foreName>
            <surname>Barrère</surname>
            <initial>M.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00646837/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00646837/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Technical Report</note>
    </biblStruct>
    <biblStruct dedoublkey="5747" id="madynes-2011-bid20" type="techreport" rend="year" n="cite:BRANDINI:2011:HAL-00645948:1">
      <identifiant type="hal" value="hal-00645948"/>
      <monogr>
        <title level="m">Development of a fuzzing tool for the 6LoWPAN protocol</title>
        <author>
          <persName>
            <foreName>César</foreName>
            <surname>Brandini</surname>
            <initial>C.</initial>
          </persName>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <biblScope type="number">RR-7817</biblScope>
          <publisher>
            <orgName type="institution">INRIA</orgName>
          </publisher>
          <dateStruct>
            <month>November</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00645948/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00645948/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport Technique</note>
    </biblStruct>
    <biblStruct dedoublkey="5745" id="madynes-2011-bid38" type="techreport" rend="year" n="cite:CHOLEZ:2011:HAL-00644174:1">
      <identifiant type="hal" value="hal-00644174"/>
      <monogr>
        <title level="m">Détection et quantification de la pollution dans le réseau P2P KAD</title>
        <author>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Guillaume</foreName>
            <surname>Montassier</surname>
            <initial>G.</initial>
          </persName>
          <persName key="madynes-2006-idm72374428832">
            <foreName>Guillaume</foreName>
            <surname>Doyen</surname>
            <initial>G.</initial>
          </persName>
          <persName>
            <foreName>Rida</foreName>
            <surname>Khatoun</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00644174/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00644174/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport de recherche</note>
    </biblStruct>
    <biblStruct dedoublkey="6123" id="madynes-2011-bid40" type="techreport" rend="year" n="cite:CHOLEZ:2011:HAL-00644151:1">
      <identifiant type="hal" value="hal-00644151"/>
      <monogr>
        <title level="m">Vulnérabilités de la DHT de BitTorrent &amp; Identification des comportements malveillants dans KAD</title>
        <author>
          <persName key="madynes-2006-idm72374388848">
            <foreName>Thibault</foreName>
            <surname>Cholez</surname>
            <initial>T.</initial>
          </persName>
          <persName key="madynes-2009-idm231957303456">
            <foreName>Juan Pablo</foreName>
            <surname>Timpanaro</surname>
            <initial>J. P.</initial>
          </persName>
          <persName key="madynes-2006-idm72374428832">
            <foreName>Guillaume</foreName>
            <surname>Doyen</surname>
            <initial>G.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
          <persName>
            <foreName>Rida</foreName>
            <surname>Khatoun</surname>
            <initial>R.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>August</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00644151/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00644151/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport de recherche</note>
    </biblStruct>
    <biblStruct dedoublkey="5655" id="madynes-2011-bid26" type="techreport" rend="year" n="cite:DABBEBI:2011:HAL-00646815:1">
      <identifiant type="hal" value="hal-00646815"/>
      <monogr>
        <title level="m">A trust approach for mitigating attacks in RELOAD</title>
        <author>
          <persName key="madynes-2009-idm231958288896">
            <foreName>Oussema</foreName>
            <surname>Dabbebi</surname>
            <initial>O.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>October</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00646815/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00646815/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport de recherche</note>
    </biblStruct>
    <biblStruct dedoublkey="5867" id="madynes-2011-bid11" type="techreport" rend="year" n="cite:DABBEBI:2011:hal-00646808:1">
      <identifiant type="hal" value="hal-00646808"/>
      <monogr>
        <title level="m">Managing Risks in P2PSIP Architectures</title>
        <author>
          <persName key="madynes-2009-idm231958288896">
            <foreName>Oussema</foreName>
            <surname>Dabbebi</surname>
            <initial>O.</initial>
          </persName>
          <persName key="madynes-2006-idm72374419456">
            <foreName>Rémi</foreName>
            <surname>Badonnel</surname>
            <initial>R.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00646808/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00646808/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Research Report</note>
    </biblStruct>
    <biblStruct dedoublkey="6118" id="madynes-2011-bid37" type="techreport" rend="year" n="cite:LAHMADI:2011:HAL-00645913:1">
      <identifiant type="hal" value="hal-00645913"/>
      <monogr>
        <title level="m">VeTo: reference manual</title>
        <author>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <biblScope type="number">RT-7816</biblScope>
          <publisher>
            <orgName type="institution">INRIA</orgName>
          </publisher>
          <dateStruct>
            <month>November</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00645913/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00645913/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport de recherche</note>
    </biblStruct>
    <biblStruct dedoublkey="6017" id="madynes-2011-bid24" type="techreport" rend="year" n="cite:REBAHI:2011:HAL-00655087:1">
      <identifiant type="hal" value="hal-00655087"/>
      <monogr>
        <title level="m">SCAMSTOP - D4.1 Testing, integration and usage results</title>
        <author>
          <persName>
            <foreName>Yacine</foreName>
            <surname>Rebahi</surname>
            <initial>Y.</initial>
          </persName>
          <persName>
            <foreName>Nikolaos</foreName>
            <surname>Chatzis</surname>
            <initial>N.</initial>
          </persName>
          <persName>
            <foreName>Anatolii</foreName>
            <surname>Borodin</surname>
            <initial>A.</initial>
          </persName>
          <persName>
            <foreName>Tobias</foreName>
            <surname>Steinicke</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Bitritsa</foreName>
            <surname>Georgieva</surname>
            <initial>B.</initial>
          </persName>
          <persName key="madynes-2006-idm72374408832">
            <foreName>Mohamed</foreName>
            <surname>Nassar</surname>
            <initial>M.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
          <persName>
            <foreName>Theodoros</foreName>
            <surname>Kapourniotis</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Anastasios</foreName>
            <surname>Dagiuklas</surname>
            <initial>A.</initial>
          </persName>
          <persName>
            <foreName>Ch</foreName>
            <surname>Gogos</surname>
            <initial>C.</initial>
          </persName>
          <persName>
            <foreName>Panayitis</foreName>
            <surname>Alefragis</surname>
            <initial>P.</initial>
          </persName>
        </author>
        <imprint>
          <dateStruct>
            <month>November</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00655087/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00655087/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Contrat</note>
    </biblStruct>
    <biblStruct dedoublkey="5895" id="madynes-2011-bid5" type="techreport" rend="year" n="cite:TIMPANARO:2011:INRIA-00633574:1">
      <identifiant type="hal" value="inria-00633574"/>
      <monogr>
        <title level="m">Monitoring the I2P network</title>
        <author>
          <persName key="madynes-2009-idm231957303456">
            <foreName>Juan Pablo</foreName>
            <surname>Timpanaro</surname>
            <initial>J. P.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="institution">Inria</orgName>
          </publisher>
          <dateStruct>
            <month>October</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00633574/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00633574/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport de recherche</note>
    </biblStruct>
    <biblStruct dedoublkey="5818" id="madynes-2011-bid39" type="techreport" rend="year" n="cite:VICINO:2011:HAL-00645894:1">
      <identifiant type="hal" value="hal-00645894"/>
      <monogr>
        <title level="m">hMule: an unified KAD-BitTorrent file-sharing application</title>
        <author>
          <persName>
            <foreName>Damian</foreName>
            <surname>Vicino</surname>
            <initial>D.</initial>
          </persName>
          <persName>
            <foreName>Juan</foreName>
            <surname>Pablo Timpanaro</surname>
            <initial>J.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <biblScope type="number">RR-7815</biblScope>
          <publisher>
            <orgName type="institution">INRIA</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00645894/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00645894/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Rapport de recherche</note>
    </biblStruct>
    <biblStruct dedoublkey="5133" id="madynes-2011-bid22" type="misc" rend="year" n="cite:ALDUAN:2011:INRIA-00573841:1">
      <identifiant type="hal" value="inria-00573841"/>
      <monogr>
        <title level="m">Future Media Internet Architecture Reference Model (v1.0)</title>
        <author>
          <persName>
            <foreName>Maria</foreName>
            <surname>Alduan</surname>
            <initial>M.</initial>
          </persName>
          <persName>
            <foreName>Federico</foreName>
            <surname>Alvarez</surname>
            <initial>F.</initial>
          </persName>
          <persName>
            <foreName>Jan</foreName>
            <surname>Bouwen</surname>
            <initial>J.</initial>
          </persName>
          <persName>
            <foreName>Gonzalo</foreName>
            <surname>Camarillo</surname>
            <initial>G.</initial>
          </persName>
          <persName>
            <foreName>Pablo</foreName>
            <surname>Cesar</surname>
            <initial>P.</initial>
          </persName>
          <persName>
            <foreName>Pedros</foreName>
            <surname>Daras</surname>
            <initial>P.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
          <persName>
            <foreName>Ebroul</foreName>
            <surname>Izquierdo</surname>
            <initial>E.</initial>
          </persName>
          <persName>
            <foreName>Nikos</foreName>
            <surname>Laoutaris</surname>
            <initial>N.</initial>
          </persName>
          <persName>
            <foreName>Amar-Djalil</foreName>
            <surname>Mezaour</surname>
            <initial>A.-D.</initial>
          </persName>
          <persName>
            <foreName>Paul</foreName>
            <surname>Moore</surname>
            <initial>P.</initial>
          </persName>
          <persName>
            <foreName>Giovanni</foreName>
            <surname>Pau</surname>
            <initial>G.</initial>
          </persName>
          <persName>
            <foreName>George</foreName>
            <surname>Pavlou</surname>
            <initial>G.</initial>
          </persName>
          <persName>
            <foreName>Tomas</foreName>
            <surname>Piatrik</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Sergios</foreName>
            <surname>Soursos</surname>
            <initial>S.</initial>
          </persName>
          <persName>
            <foreName>Thomas</foreName>
            <surname>Steiner</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Christian</foreName>
            <surname>Timmerer</surname>
            <initial>C.</initial>
          </persName>
          <persName>
            <foreName>Thanasis</foreName>
            <surname>Tsiodras</surname>
            <initial>T.</initial>
          </persName>
          <persName>
            <foreName>Theodore</foreName>
            <surname>Zahariadis</surname>
            <initial>T.</initial>
          </persName>
        </author>
        <imprint>
          <dateStruct>
            <month>March</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00573841/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00573841/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="bnote">Future Media Internet Architecture Think Tank White Paper</note>
    </biblStruct>
    <biblStruct dedoublkey="5052" id="madynes-2011-bid23" type="mastersthesis" rend="year" n="cite:CLEMENTZ:2011:HAL-00655089:1">
      <identifiant type="hal" value="hal-00655089"/>
      <monogr>
        <title level="m">Classification de malware par traces réseau</title>
        <author>
          <persName>
            <foreName>Maxime</foreName>
            <surname>Clementz</surname>
            <initial>M.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">ESIAL</orgName>
            <address>
              <addrLine>Nancy</addrLine>
            </address>
          </publisher>
          <dateStruct>
            <month>October</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00655089/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00655089/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Masters thesis</note>
    </biblStruct>
    <biblStruct dedoublkey="5048" id="madynes-2011-bid36" type="mastersthesis" rend="year" n="cite:MAYZAUD:2011:HAL-00646336:1">
      <identifiant type="hal" value="hal-00646336"/>
      <monogr>
        <title level="m">Analyse des vulnérabilités du réseau pair à pair anonymisé I2P</title>
        <author>
          <persName>
            <foreName>Anthéa</foreName>
            <surname>Mayzaud</surname>
            <initial>A.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">ESIAL, Nancy, France</orgName>
            <address>
              <addrLine>Villers-lès-Nancy</addrLine>
            </address>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00646336/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00646336/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Masters thesis</note>
    </biblStruct>
    <biblStruct dedoublkey="5049" id="madynes-2011-bid25" type="mastersthesis" rend="year" n="cite:RUAS:2011:HAL-00655084:1">
      <identifiant type="hal" value="hal-00655084"/>
      <monogr>
        <title level="m">Analyse et visualisation de communautés dans les données P2P</title>
        <author>
          <persName>
            <foreName>Olivier</foreName>
            <surname>Ruas</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">ENS Cachan, France</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00655084/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00655084/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Masters thesis</note>
    </biblStruct>
    <biblStruct dedoublkey="5066" id="madynes-2011-bid35" type="mastersthesis" rend="year" n="cite:SAADALLAH:2011:HAL-00645949:1">
      <identifiant type="hal" value="hal-00645949"/>
      <monogr>
        <title level="m">Mise en oeuvre d'une couche de communication CCN pour les réseaux de capteurs sans fil</title>
        <author>
          <persName>
            <foreName>Bilel</foreName>
            <surname>Saadallah</surname>
            <initial>B.</initial>
          </persName>
          <persName key="madynes-2010-idm163901556320">
            <foreName>Abdelkader</foreName>
            <surname>Lahmadi</surname>
            <initial>A.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <publisher>
            <orgName type="school">ENSI, Tunis, Tunisia</orgName>
          </publisher>
          <dateStruct>
            <month>September</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/hal-00645949/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>hal-00645949/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="typdoc">Masters thesis</note>
    </biblStruct>
    <biblStruct dedoublkey="6294" id="madynes-2011-bid41" type="unpublished" rend="year" n="cite:TIMPANARO:2011:INRIA-00632259:1">
      <identifiant type="hal" value="inria-00632259"/>
      <monogr>
        <title level="m">Monitoring the I2P network</title>
        <author>
          <persName key="madynes-2009-idm231957303456">
            <foreName>Juan Pablo</foreName>
            <surname>Timpanaro</surname>
            <initial>J. P.</initial>
          </persName>
          <persName key="madynes-2006-idm72374453680">
            <foreName>Isabelle</foreName>
            <surname>Chrisment</surname>
            <initial>I.</initial>
          </persName>
          <persName key="madynes-2006-idm72374457424">
            <foreName>Olivier</foreName>
            <surname>Festor</surname>
            <initial>O.</initial>
          </persName>
        </author>
        <imprint>
          <dateStruct>
            <month>October</month>
            <year>2011</year>
          </dateStruct>
          <ref xmlns:xlink="http://www.w3.org/1999/xlink" xlink:href="http://hal.inria.fr/inria-00632259/en/" location="extern" xlink:type="simple" xlink:show="replace" xlink:actuate="onRequest">http://
          <allowbreak/>hal.
          <allowbreak/>inria.
          <allowbreak/>fr/
          <allowbreak/>inria-00632259/
          <allowbreak/>en/
          <allowbreak/></ref>
        </imprint>
      </monogr>
      <note type="bnote">Research Report</note>
    </biblStruct>
  </biblio>
</raweb>
