Transports of explosive materials (TranV)



Similar documents
Shipping Services Files (SSF) Secure File Transmission Account Setup

Dynamic DNS How-To Guide

GS1 Trade Sync Connectivity guide

Authentication and Single Sign On

Setup Corporate (Microsoft Exchange) . This tutorial will walk you through the steps of setting up your corporate account.

Print Audit Facilities Manager Technical Overview

Application Note. Onsight TeamLink And Firewall Detect v6.3

CONFIGURING AND USING WEBDAV IN LENOVO EMC LIFELINE

SCENARIO EXAMPLE. Case study of an implementation of Swiss SafeLab M.ID with Citrix. Redundancy and Scalability

MadCap Software. Upgrading Guide. Pulse

S-911 Bracelet Locator Protocol 1.0 Analyzer. User Manual

login timeout 30 access list ALL line 20 extended permit ip any any port 9053 interval 15 passdetect interval 30

How to Configure Active Directory based User Authentication

ALERT & Cisco CallManager

EXPLORER. TFT Filter CONFIGURATION

GSatTrack. Fleet Broadband Tracker. User Manual April 2011 GSE. Global Satellite Engineering. : gsat.us

How do I share a file with a friend or trusted associate?

Transport Layer Security Protocols

SCADA Security. Enabling Integrated Windows Authentication For CitectSCADA Web Client. Applies To: CitectSCADA 6.xx and 7.xx VijeoCitect 6.xx and 7.

Obtaining Oxford Journals usage statistics with SUSHI

SSL Enforcer Documentation

Electronic Prescribing of Controlled Substances Technical Framework Panel. Mark Gingrich, RxHub LLC July 11, 2006

Privacy Policy. Introduction. Scope of Privacy Policy. 1. Definitions

EDE Electronic Data Exchange Instructions April 2007

DHCP Option 66 Auto Provisioning Guide

PrintFleet Enterprise Security Overview

Application Note. Onsight Connect Network Requirements v6.3

CTS2134 Introduction to Networking. Module Network Security

CatTraQ Live 3 GPRS Tracking

Active Directory Self-Service FAQ

Integrating a Hitachi IP5000 Wireless IP Phone

Note that if at any time during the setup process you are asked to login, click either Cancel or Work Offline depending upon the prompt.

Version Highlights. CertainT 100 SSL Accelerator. Version International. New hardware and software version. North America

Registrar Ramp Up Process. Prepared by Afilias

IP Ports and Protocols used by H.323 Devices

Semantic based Web Application Firewall (SWAF V 1.6) Operations and User Manual. Document Version 1.0

Panda Perimeter Management Console. Guide for Partners

Owner of the content within this article is Written by Marc Grote

Criteria for web application security check. Version

TECHNICAL NOTE Stormshield Network Firewall AUTOMATIC BACKUPS. Document version: 1.0 Reference: snentno_autobackup

Motor Insurance Database Phase II 4 th EU Motor Insurance Directive

Data Collection and Analysis: Get End-to-End Security with Cisco Connected Analytics for Network Deployment

Liability Insurance Validation Electronically (Nevada LIVE) Manual Specifications for the Rules of Practice

neoconnex Server Manual Version 10.0

Access Your Cisco Smart Storage Remotely Via WebDAV

PrintFleet Enterprise 2.2 Security Overview

Unless otherwise stated, our SaaS Products and our Downloadable Products are treated the same for the purposes of this document.

Oracle Communications Cartridge Feature Specification for Broadsoft Broadworks Enterprise Services

Motor Insurance Database Phase II 4 th EU Motor Insurance Directive. Attended file transfer

GV-iView HD V1 for ipad

UPSTREAMCONNECT SECURITY

e-filing Secure Web Service User Manual

HTTPS GATEWAY INSTRUCTIONS

CRM to Exchange Synchronization

How to use EasyDDNS by HIKVISION. All rights reserved. 1

Configuration Backup and Restore. Dgw v2.0 May 14,

Kittys School Management System

Getting Started Guide

MANAGEMENT SYSTEM FOR A FLEET OF VEHICLES BASED ON GPS. João André Correia Telo de Oliveira

How to publish your NAS on the internet ThecusOS 6

SYSPRO App Store: Registration Guide

Access the GV-IP Camera through a broadband modem

F-Secure Messaging Security Gateway. Deployment Guide

Track Forever GPS Tracking Control Center Specification

Click-To-Talk. ZyXEL IP PBX License IP PBX LOGIN DETAILS. Edition 1, 07/2009. LAN IP: WAN IP:

Information Security Basic Concepts

HRG Performance Series DVR DDNS Support Application Note (hrgddns)

Using SonicWALL NetExtender to Access FTP Servers

File Transmission Methods Monday, July 14, 2014

Experian Secure Transport Service

System to System Interface Guide

Swedbank Payment Portal Implementation Overview

Mobile Banking. Click To Begin

serial ASCII CES Wireless s principal activity is to provide mobile Ability to create flexible, custom

Liability of Network Service Providers

Application Note. Firewall Requirements for the Onsight Mobile Collaboration System and Hosted Librestream SIP Service v5.0

Security Policy Revision Date: 23 April 2009

Integrating LANGuardian with Active Directory

Mobile Device Management Version 8. Last updated:

Vodafone Secure Device Manager Administration User Guide

Application Note. Onsight Connect Network Requirements V6.1

Copyright 2013, 3CX Ltd.

Tenable for CyberArk

Stoneware Inc. Hyland Software OnBase. Stoneware, Inc.

AS DNB banka. DNB Link specification (B2B functional description)

Version 1.0 January Xerox Phaser 3635MFP Extensible Interface Platform

Connecting to the Firewall Services Module and Managing the Configuration

Network setup and troubleshooting

Exchange Outlook Profile/POP/IMAP/SMTP Setup Guide

Savvius Insight Initial Configuration

Craig Carpenter MCT. MCSE, MCSA

Configuring Security Features of Session Recording

Secure Messaging Server Console... 2

Chapter 6 Using Network Monitoring Tools

Bridgit Conferencing Software: Security, Firewalls, Bandwidth and Scalability

Architecture and Data Flow Overview. BlackBerry Enterprise Service Version: Quick Reference

Bosch Video Management System

Transcription:

Transports of explosive materials (TranV) Of the judicial act results the Czech Police obligation to track transports of explosive materials within domestic and foreign routes. Applied to carriers it is prescribed routine and standartised protocols to be followed as mean of providing the Police with usable status and tracked vehicle position data. The communication between the location provider and Police works as follow: 1. doing requests for vehicle gps information 2. these requests are active only during transport time (defined by TranV user) The responsibility for logging and providing the data lies on carrier. Therefore is necessary to negotiate and instruct carrier's positioning/tracking provider to prepare him for such data streaming. Following graphs and chapters describes the way, formats and relevant interfaces. Carrier Tracked Vehicle (s) Fleet Services GPS data query TRANSPORTY Obsah 1.Basic premises for TranV tracked vehicle interconnectivity...2 2.What to do before the TranV is used...2 3.ID adjustment in TranV...2 3.1. Connecting (Login) with unit ID only...2 3.2. Connecting with unit ID and 1 parameter...3 3.3. Connecting with unit ID and 2 parameters...3 3.4.Way of communication with fleet server...4 3.5.Data transfer security...5 3.6.Certain Ports Service Exposure...5 3.7.Vehicle position request form...5 3.8.Fleet server response format...6 3.9.Position update frequency...6

1. Basic premises for TranV tracked vehicle interconnectivity. 1. Vehicle is equipped with positioning/status unit. 2. The unit is connected to relevant control system. 2. What to do before the TranV is used. 1. Deliver your vehicle tracking system provider with this document. 2. Obtain connected unit (vehicle) ID for each registration plate and (or) other authentification/verification keys/marks, if such are available or necessary. 3. Secure vehicle connection to TranV (see TranV- tracked vehicles connection ) 3. ID adjustment in the TranV Responsible subject (carrier) creates list of vehicles to be potentially tracked by TranV. List also includes all kinds of parameters and useful data (see above) Vehicle listing includes ID marks inscription, and description/completion of parameters necessary to connect vehicle with TranV systém. Those parameters consists mandatory ID of the vehicle (unit) and other 2 to 3 optional parameters. The way of utilising the above mentioned parameters further describes this document. 3.1. Connecting (Login) with unit ID only. (Positioning Provider demands the unit ID only) Example of fictitious URL for obtaining vehicle position is : http://www.map.cz/?vehicle=12345 Providers MAP URL http://www.map.cz/?vehicle=#vehicle#, will replace certain vehicle pattern #vehicle# with value inscribed by carrier in entry form.

3.2. Connecting with unit ID and 1 parameter. The MAP1 provider demands unit ID and username. URL example for vehicle position : https://www.map1.cz/?vehicle=12345&user=customer1 At MAP Provider the URL record https://www.map1.cz/? vehicle=#vehicle#&user=#user#, will be certain vehicle pattern #vehicle# and #user# replaced with values, inscribed by carrier in entry form.. 3.3. Connecting with unit ID and 2 parameters. The MAPS provider demands unit ID, username and password. Fictional position URL is:

https://car12b4:qwerty@www.maps.cz/?vehicle=12345 At MAP Provider the URL record https://#user#:#password#@www.maps.cz/? vehicle=#vehicle#, will replace vehicle pattern #vehicle#, #user# and #password# with values, inscribed by carrier in entry form.. TranV connection to vehicle tracking/monitoring system 3.4. Way of communication with a fleet server Query by protocol HTTP/HTTPS is secured by following methods: username + password Restricted adjustment of positioning IP addresses. TranV will inquire following IP addresses: 94.199.45.228 (server Policie ČR) 81.91.214.218 (test server, eago systems) Provider delivers URL access for positioning service. With delivered URL is necessary to designate identification parameters. Examples of URL parameter names: https://www.map1.cz/?vehicle=12345&user=customer1 vehicle unit ID user username or nickname https://username:password@www.maps.cz/?vehicle=12345 username password

vehicle ID 3.5. Data transfer security With HTTP transfer are all data transmitted in unsecured way. With use of secured HTTPS channel, only initial connection with provider's end point (server). Cryptographics data are exchanged and following communication, including parameters/authentification data transmission is strictly encrypted, including the parameters and identification data transfer, so the stream is readable just for TranV side and Provider. The HTTPS protocol is highly recommended. The Provider can also limit access to a IP address list. 3.6. Certain Ports Service Exposure Due security policy the number of ports accessible through TranV application is strictly limited to: 80 for HTTP 443 for HTTPS 3.7. Vehicle position request form HTTP/HTTPS, GET type request. Specified vehicle and related parameters (login) For URL construction is possible to use: Unit ID (mandatory) up to 3 optional parameters URL parameters name is free. Format with unit Id only, examples: http://www.ex.cz/?vehicle=12345 https://www.ex.cz:443/?car=12345 https://www.ex.cz:443/12345 Format with unit ID and one optional parameter example: http://www.ex.cz/?vehicle=12345&customer_id=cust1 Unit ID request format is vehicle; together with two optional parameters for login with username and password (example) https://user:password@www.ex.cz/?vehicle=12345

3.8. Fleet server response format Fleet server response includes position/time data. If requested vehicle exists, fleet server HTTP returns status 200 and response with XML data. XML response format: where <?xml version= 1.0?> <gps /> lat= 48123456 lng = longitude lat = latitude lng= 12123456 time= 2013-11-15T11:00:00.000Z status= ONLINE for= BA1254X7 time = time of measured coordinates according to XML pattern status = vehicle status ONLINE (engine started) OFFLINE UNKNOWN for = vehicle of interest If unit of certain ID does not exist, than the status HTTP 204 is returned. 3.9. Position update frequency During active period determined by carrier, the fleet server will be requested for vehicle position. The frequency of such query will be in minutes (1-5).