A Zero-Trust Architecture for Remote Access in Industrial IoT Infrastructures

被引:10
|
作者
Federici, Fabio [1 ]
Martintoni, Davide [1 ]
Senni, Valerio [1 ]
机构
[1] Collins Aerosp, Appl Res & Technol, I-00185 Rome, Italy
基金
欧盟地平线“2020”;
关键词
access control; industrial IoT; zero-trust; industrial control systems; connected aircraft; IIOT;
D O I
10.3390/electronics12030566
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper considers the domain of Industrial Internet of Things (IIoT) infrastructures and the recurring need for collaboration across teams and stakeholders by means of remote access. The paper describes a secure solution beyond the traditional perimeter-based security approach, which consists of an architecture that supports multi-level authorization to achieve fine-grained access control, better scalability, and maintainability. An implementation of the proposed solution, using open-source technologies, is also discussed and covers the protection of both the network and edge domains of a complex IIoT infrastructure. Finally, the paper presents a risk-driven and model-based process that is designed to support the migration of existing infrastructures to the solution architecture. The approach is validated, taking as a reference two relevant scenarios for the aerospace industry.
引用
收藏
页数:20
相关论文
共 50 条
  • [1] Flexible zero trust architecture for the cybersecurity of industrial IoT infrastructures
    Zanasi, Claudio
    Russo, Silvio
    Colajanni, Michele
    [J]. AD HOC NETWORKS, 2024, 156
  • [2] Zero-Trust Hierarchical Management in IoT
    Samaniego, Mayra
    Deters, Ralph
    [J]. 2018 IEEE INTERNATIONAL CONGRESS ON INTERNET OF THINGS (ICIOT), 2018, : 88 - 95
  • [3] A Blockchain Empowered Smart Home Access Scheme Based on Zero-trust Architecture
    Liu, Peng
    Xu, Yinghui
    Wang, Yanqing
    Fan, Ping
    [J]. JOURNAL OF ELECTRICAL SYSTEMS, 2024, 20 (03) : 43 - 49
  • [4] Zero-trust architecture is creating a passwordless society
    Iggbom, Jonas
    [J]. Network Security, 2022, 2022 (07):
  • [5] DistriTrust: Distributed and low-latency access validation in zero-trust architecture
    Sengupta, Binanda
    Lakshminarayanan, Anantharaman
    [J]. JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2021, 63
  • [6] ZTA-IoT: A Novel Architecture for Zero-Trust in IoT Systems and an Ensuing Usage Control Model
    Ameer, Safwa
    Praharaj, Lopamudra
    Sandhu, Ravi
    Bhatt, Smriti
    Gupta, Maanak
    [J]. ACM TRANSACTIONS ON PRIVACY AND SECURITY, 2024, 27 (03) : 1 - 36
  • [7] A Zero-Trust Architecture for Connected and Autonomous Vehicles
    Anderson, John
    Huang, Qiqing
    Cheng, Long
    Hu, Hongxin
    [J]. IEEE INTERNET COMPUTING, 2023, 27 (05) : 7 - 14
  • [8] A Zero-Trust Framework for Industrial Internet of Things
    Atich, Adel
    Nanda, Priyadarsi
    Mohanty, Manoranjan
    [J]. 2023 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS, ICNC, 2023, : 331 - 335
  • [9] Verify and trust: A multidimensional survey of zero-trust security in the age of IoT
    Azad, Muhammad Ajmal
    Abdullah, Sidrah
    Arshad, Junaid
    Lallie, Harjinder
    Ahmed, Yussuf Hassan
    [J]. INTERNET OF THINGS, 2024, 27
  • [10] A Blockchain-Inspired Attribute-Based Zero-Trust Access Control Model for IoT
    Awan, Samia Masood
    Azad, Muhammad Ajmal
    Arshad, Junaid
    Waheed, Urooj
    Sharif, Tahir
    [J]. INFORMATION, 2023, 14 (02)