Claude 24f816b6a3
Consolidate 22 sibling repos into layered organism structure
Place useful parts of the surrounding repos into sica-fondt by layer, per the
body model (Ada = membrane; brain/endocrine/capabilities/knowledge non-Ada):

- brain/        LLM reasoning + providers (dapr, hermes, MoMoA)
- capabilities/ REPRAG sidecars: hermes tools/skills, dapr tools, parallel
                dispatch, A51 channels, and the OSINT cluster
- knowledge/    LORAG corpus: 754 cyber-skills, agency personas, secure-coding,
                MITRE ATT&CK data
- reference/    defensive threat-reference (C3, shhbruh doc) + AdaYaml parser

License handling: AGPL sources (worldosint, advanced_evolution, mercury,
Reticulum) and GPL DeTTECT are SPEC-only clean-room/port descriptions — no
copyleft code copied. MIT/Apache/data parts copied as working trees.

Safety: shhbruh escape/persistence material and C3 covert-C2 kept as reference
only, not wired into the running organism. See CONSOLIDATION.md.

https://claude.ai/code/session_01UehUqEXXJJCsHoA4voCU5c
2026-06-10 06:53:01 +00:00

1.7 KiB

API Reference: Securing Remote Access to OT Environment

Session States

State Description
pending_approval Awaiting manager approval (vendor sessions)
approved Approved, awaiting MFA
active MFA verified, session in progress
terminated Ended by user, admin, or policy
expired Max duration exceeded
denied Access denied by policy

User Roles and Policies

Role Approval Co-Attendance MFA Max Duration
OT Operator No No Yes 8 hours
OT Engineer No No Yes 4 hours
Vendor Yes Yes Yes 2 hours
Security Analyst No No Yes 4 hours

CIP-005-7 R2 Requirements

Requirement Control
R2.1 Intermediate system (jump server) in DMZ
R2.2 Encryption for all remote sessions
R2.3 Multi-factor authentication
R2.4 Session recording and logging
R2.5 Disable remote access when not needed

PAM Solutions

Tool Capability
CyberArk PAS Credential vaulting, session recording
BeyondTrust PRA OT remote access, session control
Claroty SRA OT-specific protocol-aware access
Wallix Bastion Jump server, session recording

Python Libraries

Library Version Purpose
hashlib stdlib Session ID generation
json stdlib Report output
datetime stdlib Session timing/expiration

References