Security Requirements Engineering in Safety-Critical Railway Signalling Networks

被引:11
|
作者
Heinrich, Markus [1 ]
Vateva-Gurova, Tsvetoslava [1 ]
Arul, Tolga [1 ]
Katzenbeisser, Stefan [1 ]
Suri, Neeraj [1 ]
Birkholz, Henk [2 ]
Fuchs, Andreas [2 ]
Krauss, Christoph [2 ]
Zhdanova, Maria [2 ]
Kuzhiyelil, Don [3 ]
Tverdyshev, Sergey [3 ]
Schlehuber, Christian [4 ]
机构
[1] Tech Univ Darmstadt, Dept Comp Sci, Darmstadt, Germany
[2] Fraunhofer Inst Secure Informat Technol SIT, Darmstadt, Germany
[3] SYSGO AG, Klein Winternheim, Germany
[4] DB Netz AG, Frankfurt, Germany
关键词
Security systems - Cryptography - Network architecture - Architecture - Safety engineering;
D O I
10.1155/2019/8348925
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Securing a safety-critical system is a challenging task, because safety requirements have to be considered alongside security controls. We report on our experience to develop a security architecture for railway signalling systems starting from the bare safety-critical system that requires protection. We use a threat-based approach to determine security risk acceptance criteria and derive security requirements. We discuss the executed process and make suggestions for improvements. Based on the security requirements, we develop a security architecture. The architecture is based on a hardware platform that provides the resources required for safety as well as security applications and is able to run these applications of mixed-criticality (safety-critical applications and other applications run on the same device). To achieve this, we apply the MILS approach, a separation-based high-assurance security architecture to simplify the safety case and security case of our approach. We describe the assurance requirements of the separation kernel subcomponent, which represents the key component of the MILS architecture. We further discuss the security measures of our architecture that are included to protect the safety-critical application from cyberattacks.
引用
下载
收藏
页数:14
相关论文
共 50 条
  • [41] Editorial: Machine learning for safety-critical applications in engineering
    Kiran, Mariam
    Khan, Samir
    MACHINE LEARNING, 2020, 109 (05) : 1101 - 1102
  • [42] Multi-Concerns Engineering for Safety-Critical Systems
    Lohmueller, Philipp
    Fendt, Andrea
    Bauer, Bernhard
    PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON MODEL-DRIVEN ENGINEERING AND SOFTWARE DEVELOPMENT, 2018, : 504 - 510
  • [43] Software Product Line Engineering for Safety-critical Systems
    Lohmueller, Philipp
    Bauer, Bernhard
    MODELSWARD: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON MODEL-DRIVEN ENGINEERING AND SOFTWARE DEVELOPMENT, 2019, 2019, : 209 - 216
  • [44] A Framework for Safety-Critical Process Management in Engineering Projects
    Bala, Saimir
    Cabanillas, Cristina
    Haselboeck, Alois
    Havur, Giray
    Mendling, Jan
    Polleres, Axel
    Sperl, Simon
    Steyskal, Simon
    DATA-DRIVEN PROCESS DISCOVERY AND ANALYSIS, SIMPDA 2015, 2017, 244 : 1 - 27
  • [45] EXTENDING SYSTEMS ENGINEERING FOR SAFETY-CRITICAL DEFENCE APPLICATIONS
    Katia, P.O.T.I.R.O.N.
    James, I.N.G.E.
    INCOSE International Symposium, 2024, 34 (01) : 199 - 209
  • [46] Method for Generating a Diverse Set of Requirements for Safety-Critical Systems
    Maurio, Joseph
    McClure, Christopher
    2014 CONFERENCE ON SYSTEMS ENGINEERING RESEARCH, 2014, 28 : 465 - 472
  • [47] Quality requirements for real-time safety-critical systems
    Kirner, TG
    CONTROL ENGINEERING PRACTICE, 1997, 5 (07) : 965 - 973
  • [48] Modeling Safety-Critical System Requirements with Hierarchical State Machine
    Wang, Zheng
    Geng, Chen-ge
    Chen, Xiang-xian
    Wang, Dong
    Huang, Hai
    Guan, Ai-ai
    2014 INTERNATIONAL CONFERENCE ON INFORMATION SCIENCE, ELECTRONICS AND ELECTRICAL ENGINEERING (ISEEE), VOLS 1-3, 2014, : 720 - 723
  • [49] An Approach for automated safety testing of safety-critical software system based on safety requirements
    Yu, Gang
    Xu, Zhong Wei
    Du, Jun Wei
    2009 INTERNATIONAL FORUM ON INFORMATION TECHNOLOGY AND APPLICATIONS, VOL 3, PROCEEDINGS, 2009, : 166 - 169
  • [50] Safety engineering of computational cognitive architectures within safety-critical systems
    Dreany, Harry H.
    Roncace, Robert
    Young, Paul
    SAFETY SCIENCE, 2018, 103 : 1 - 11