Security Requirements Engineering in Safety-Critical Railway Signalling Networks

被引:11
|
作者
Heinrich, Markus [1 ]
Vateva-Gurova, Tsvetoslava [1 ]
Arul, Tolga [1 ]
Katzenbeisser, Stefan [1 ]
Suri, Neeraj [1 ]
Birkholz, Henk [2 ]
Fuchs, Andreas [2 ]
Krauss, Christoph [2 ]
Zhdanova, Maria [2 ]
Kuzhiyelil, Don [3 ]
Tverdyshev, Sergey [3 ]
Schlehuber, Christian [4 ]
机构
[1] Tech Univ Darmstadt, Dept Comp Sci, Darmstadt, Germany
[2] Fraunhofer Inst Secure Informat Technol SIT, Darmstadt, Germany
[3] SYSGO AG, Klein Winternheim, Germany
[4] DB Netz AG, Frankfurt, Germany
关键词
Security systems - Cryptography - Network architecture - Architecture - Safety engineering;
D O I
10.1155/2019/8348925
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Securing a safety-critical system is a challenging task, because safety requirements have to be considered alongside security controls. We report on our experience to develop a security architecture for railway signalling systems starting from the bare safety-critical system that requires protection. We use a threat-based approach to determine security risk acceptance criteria and derive security requirements. We discuss the executed process and make suggestions for improvements. Based on the security requirements, we develop a security architecture. The architecture is based on a hardware platform that provides the resources required for safety as well as security applications and is able to run these applications of mixed-criticality (safety-critical applications and other applications run on the same device). To achieve this, we apply the MILS approach, a separation-based high-assurance security architecture to simplify the safety case and security case of our approach. We describe the assurance requirements of the separation kernel subcomponent, which represents the key component of the MILS architecture. We further discuss the security measures of our architecture that are included to protect the safety-critical application from cyberattacks.
引用
下载
收藏
页数:14
相关论文
共 50 条
  • [31] Formalization and assessment of regulatory requirements for safety-critical software
    Vilkomir, Sergiy A.
    Bowen, Jonathan P.
    Ghose, Aditya K.
    INNOVATIONS IN SYSTEMS AND SOFTWARE ENGINEERING, 2006, 2 (3-4) : 165 - 178
  • [32] Evolution of safety-critical requirements post-launch
    Lutz, RR
    Mikulski, IC
    FIFTH IEEE INTERNATIONAL SYMPOSIUM ON REQUIREMENTS ENGINEERING, PROCEEDINGS, 2001, : 222 - 227
  • [33] Requirements discovery during the testing of safety-critical software
    Lutz, RR
    Mikulski, IC
    25TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, PROCEEDINGS, 2003, : 578 - 583
  • [34] Translation of safety-critical software requirements specification to Lustre
    Park, Dongchul
    INNOVATIONS AND ADVANCED TECHNIQUES IN COMPUTER AND INFORMATION SCIENCES AND ENGINEERING, 2007, : 157 - 162
  • [35] TAS Control Platform: A Platform for Safety-Critical Railway Applications
    Gerstinger, Andreas
    Kantz, Heinz
    Scherrer, Christoph
    ERCIM NEWS, 2008, (75): : 49 - 50
  • [36] Digital Track Map Generation for Safety-Critical Railway Applications
    Tao, Wei-jie
    Cai, Bai-gen
    Wang, Jian
    Liu, Jiang
    Wei Shang-guan
    PROCEEDINGS OF THE 30TH INTERNATIONAL TECHNICAL MEETING OF THE SATELLITE DIVISION OF THE INSTITUTE OF NAVIGATION (ION GNSS+ 2017), 2017, : 1978 - 1987
  • [37] Requirements Engineering of Industrial Automation Systems Adapting the CESAR Requirements Meta Model for Safety-Critical Smart Grid Software
    Sinha, Roopak
    Patil, Sandeep
    Pang, Cheng
    Vyatkin, Valeriy
    Dowdeswell, Barry
    IECON 2015 - 41ST ANNUAL CONFERENCE OF THE IEEE INDUSTRIAL ELECTRONICS SOCIETY, 2015, : 2172 - 2177
  • [38] Utilising Redundancy to Enhance Security of Safety-Critical Systems
    Troubitsyna, Elena
    COMPUTER SAFETY, RELIABILITY, AND SECURITY, SAFECOMP 2023 WORKSHOPS, 2023, 14182 : 188 - 196
  • [39] Driver Override for Safety-Critical Vehicles and Networks
    Atkins, E.
    SAE INTERNATIONAL JOURNAL OF PASSENGER CARS-ELECTRONIC AND ELECTRICAL SYSTEMS, 2009, 2 (01): : 271 - 280
  • [40] A Comparative Analysis of Security Patterns for Enhancing Security in Safety-Critical Systems
    Yengec-Tasdemir, Sena Busra
    Siddiqui, Fahad
    Sezer, Sakir
    Hui, Henry
    McLaughlin, Kieran
    Sonigara, Balmukund
    2023 IEEE 36TH INTERNATIONAL SYSTEM-ON-CHIP CONFERENCE, SOCC, 2023, : 72 - 77