Secure Remote Maintenance via Workflow-Driven Security Framework

被引:5
|
作者
Kasinathan, Prabhakaran [1 ]
Martintoni, Davide [2 ]
Hofmann, Benedikt [1 ]
Senni, Valerio [3 ]
Wimmer, Martin [1 ]
机构
[1] Siemens AG, Cybersecur Technol, Munich, Germany
[2] Collins Aerosp, Appl Res & Technol, Trento, Italy
[3] Collins Aerosp, Appl Res & Technol, Rome, Italy
基金
欧盟地平线“2020”;
关键词
Blockchain; Security; Workflows; Petri Nets; Remote Maintenance; Workflow-Driven Security Framework; BLOCKCHAIN;
D O I
10.1109/BLOCKCHAIN53845.2021.00016
中图分类号
学科分类号
摘要
Remote Maintenance in collaborative manufacturing provides a lot of benefits such as reduced downtime in manufacturing operations. But at the same time, it increases the attack-surface by opening new attack paths to strictly controlled network zones. In this paper, we analyse a real-world cross-organizational remote maintenance scenario by collecting security requirements (e.g., authentication, authorization, and auditability), and present a workflow-based approach to model and formally enforce access control for that scenario. The proposed approach leverages the Workflow-Driven Security Framework (WDSF) to enforce the least privilege principle; to ensure workflow integrity and separation of duties, (i.e., business process enforcement and compliance); to protect the confidentiality and integrity of sensitive information; and to provide traceability and non-repudiation in case of root-cause analysis. The WDSF uses Petri Nets (PN) to model and enforce the workflow, and blockchain and smart contracts to guarantee accountability and traceability of workflow events. The Petri Nets workflows are modelled and validated using the WoPeD tool.
引用
收藏
页码:29 / 37
页数:9
相关论文
共 50 条
  • [1] Toward a Methodology and Framework for Workflow-Driven Team Science
    Altintas, Ilkay
    Purawat, Shweta
    Crawl, Daniel
    Singh, Alok
    Marcus, Kyle
    [J]. COMPUTING IN SCIENCE & ENGINEERING, 2019, 21 (04) : 37 - 48
  • [2] Framework for Workflow-driven Clinical Decision Support in Oncology
    Bucur, Anca
    van Leeuwen, Jasper
    Graf, Norbert
    [J]. PROCEEDINGS 2015 IEEE INTERNATIONAL CONFERENCE ON BIOINFORMATICS AND BIOMEDICINE, 2015, : 715 - 722
  • [3] Aegis: Automatic Enforcement of Security Policies in Workflow-driven Web Applications
    Compagna, Luca
    dos Santos, Daniel R.
    Ponta, Serena Elisa
    Ranise, Silvio
    [J]. PROCEEDINGS OF THE SEVENTH ACM CONFERENCE ON DATA AND APPLICATION SECURITY AND PRIVACY (CODASPY'17), 2017, : 321 - 328
  • [4] Program synthesis from workflow-driven ontologies
    Salayandia, Leonardo
    Roach, Steve
    Gates, Ann Q.
    [J]. 2008 ANNUAL MEETING OF THE NORTH AMERICAN FUZZY INFORMATION PROCESSING SOCIETY, VOLS 1 AND 2, 2008, : 580 - 585
  • [5] Scalable Workflow-Driven Hydrologic Analysis in HydroFrame
    Purawat, Shweta
    Olschanowsky, Cathie
    Condon, Laura E.
    Maxwell, Reed
    Altintas, Ilkay
    [J]. COMPUTATIONAL SCIENCE - ICCS 2020, PT I, 2020, 12137 : 276 - 289
  • [6] Secure Remote Maintenance via the Internet
    Schmidt, Wolfram
    [J]. ATP EDITION, 2010, (1-2): : 12 - 14
  • [7] KNIME-CDK: Workflow-driven cheminformatics
    Beisken, Stephan
    Meinl, Thorsten
    Wiswedel, Bernd
    de Figueiredo, Luis F.
    Berthold, Michael
    Steinbeck, Christoph
    [J]. BMC BIOINFORMATICS, 2013, 14
  • [8] KNIME-CDK: Workflow-driven cheminformatics
    Stephan Beisken
    Thorsten Meinl
    Bernd Wiswedel
    Luis F de Figueiredo
    Michael Berthold
    Christoph Steinbeck
    [J]. BMC Bioinformatics, 14
  • [9] The Project Management System Based on Workflow-driven
    Zhang Jian
    Yang Zhengqiu
    [J]. 2008 INTERNATIONAL WORKSHOP ON INFORMATION TECHNOLOGY AND SECURITY, 2008, : 124 - 128
  • [10] Workflow-driven clinical decision support for personalized oncology
    Bucur, Anca
    van Leeuwen, Jasper
    Christodoulou, Nikolaos
    Sigdel, Kamana
    Argyri, Katerina
    Koumakis, Lefteris
    Graf, Norbert
    Stamatakos, Georgios
    [J]. BMC MEDICAL INFORMATICS AND DECISION MAKING, 2016, 16