Safe and flexible retrofit Multiprotocol gateway with hardware-based trust anchors

被引:0
|
作者
Bienhaus, Diethelm [1 ]
Ebner, Andreas [1 ]
机构
[1] Techn Hsch Mittelhessen, Wiesenstr 14, D-35390 Giessen, Germany
来源
ATP MAGAZINE | 2021年 / 05期
关键词
TPM2; Security; OPC UA; MQTT; Plant Retrofit;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Industrial cyber-physical systems require appropriate security mechanisms to provide protection against cyber attackers. The variety of protocols involved in the IoT and the production setting present a further challenge for the vertical integration of sensors in the cloud. We propose a security architecture for a gateway connecting production and cloud systems. A Trusted Platform Module 2.0 (TPM 2.0) protects the cryptographic keys used in secure communication protocols and provides protection against illegitimate firmware manipulation. As proof of concept, we implemented the key protection functionality with a TPM 2.0 for the OPC UA protocol.
引用
收藏
页码:70 / 76
页数:7
相关论文
共 7 条
  • [1] Gateway for Industrial Cyber-Physical Systems with Hardware-Based Trust Anchors
    Bienhaus, Diethelm
    Jaeger, Lukas
    Rieke, Roland
    Krauss, Christoph
    [J]. INTELLIGENT DISTRIBUTED COMPUTING XIII, 2020, 868 : 521 - 528
  • [2] Flexible Hardware-Based Stereo Matching
    Ambrosch, Kristian
    Kubinger, Wilfried
    Humenberger, Martin
    Steininger, Andreas
    [J]. EURASIP JOURNAL ON EMBEDDED SYSTEMS, 2008, (01)
  • [3] A Fast and Flexible Hardware-based Virtualization Mechanism for Computational Storage Devices
    Kwon, Dongup
    Kim, Dongryeong
    Boo, Junehyuk
    Lee, Wonsik
    Kim, Jangwoo
    [J]. PROCEEDINGS OF THE 2021 USENIX ANNUAL TECHNICAL CONFERENCE, 2021, : 729 - 743
  • [4] SmartFVM: A Fast, Flexible, and Scalable Hardware-based Virtualization for Commodity Storage Devices
    Kwon, Dongup
    Lee, Wonsik
    Kim, Dongryeong
    Boo, Junehyuk
    Kim, Jangwoo
    [J]. ACM TRANSACTIONS ON STORAGE, 2022, 18 (02)
  • [5] Enhancements for Hardware-based IEEE802.1CB embedded in Automotive Gateway System-on-Chip
    Marino, Angela Gonzalez
    Kane, Abdoul Aziz
    Fons, Francesc
    Moreno Arostegui, Juan Manuel
    [J]. PROCEEDINGS OF THE 2021 SYMPOSIUM ON ARCHITECTURES FOR NETWORKING AND COMMUNICATIONS SYSTEMS (ANCS '21), 2021, : 31 - 37
  • [6] A hardware-based architecture to support flexible real-time parallel intrusion detection
    Mott, Stephen
    Hart, Samuel
    Montminy, David
    Williams, Paul
    Baldwin, Rusty
    [J]. 2007 IEEE INTERNATIONAL CONFERENCE ON SYSTEM OF SYSTEMS ENGINEERING, VOLS 1 AND 2, 2007, : 614 - 619
  • [7] Trust is good, Control is better: Hardware-based Instruction-Replacement for Reliable Processor-IPs
    Schmitz, Kenneth
    Chandrasekharan, Arun
    Gomes Filho, Jonas
    Grosse, Daniel
    Drechsler, Rolf
    [J]. 2017 22ND ASIA AND SOUTH PACIFIC DESIGN AUTOMATION CONFERENCE (ASP-DAC), 2017, : 57 - 62