Network Technology Services will conduct scans of systems connected to the Washington University Network. These scans can be used for a number of purposes, such as identifying vulnerable or poorly configured systems, locating systems infected with DDoS software, or inventorying systems on the network.
The intent is to supplement scans and administrative mechanisms that system administrators may use, but not replace them. NTS will run these scans periodically, perhaps once a quarter. As much as possible, scans will be combined so the impact on systems and the network will be minimized. The scans will be "passive" in the sense that they will not affect the network or systems connected to it. NTS will consult with system administrators to test the scans prior to running them on the entire network. As possible, scans will be run during workdays so that system administrators will be able to respond to questions related to the scans. About two weeks before the scan NTS will announce the general time of the scan, the purpose and nature of the scan and the source of the scan. This will alert system managers to what will happen and allow them to test the scans on their systems ahead of time. When problems are found, NTS will contact system managers or owners of systems with problems and work with them to correct the situation. General results of the scans will be shared with the Washington University System Administrators group and other members of the Washington University community, as appropriate.