Cargando…

Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture

The number of IoT devices in SCADA and ICS systems is rising quickly, especially in the domain of critical infrastructures. But these kinds of systems are performing mission critical tasks like controlling devices in industrial facilities or substations in the smart grid. Therefore, they are subject...

Descripción completa

Detalles Bibliográficos
Autores principales: Frauenschläger, Tobias, Renner, Sebastian, Mottok, Jürgen
Formato: Online Artículo Texto
Lenguaje:English
Publicado: 2020
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7343414/
http://dx.doi.org/10.1007/978-3-030-52794-5_14
_version_ 1783555751992623104
author Frauenschläger, Tobias
Renner, Sebastian
Mottok, Jürgen
author_facet Frauenschläger, Tobias
Renner, Sebastian
Mottok, Jürgen
author_sort Frauenschläger, Tobias
collection PubMed
description The number of IoT devices in SCADA and ICS systems is rising quickly, especially in the domain of critical infrastructures. But these kinds of systems are performing mission critical tasks like controlling devices in industrial facilities or substations in the smart grid. Therefore, they are subject to a lot of regulatory standards. Yet, to provide remote access over the internet, special architectures are developed to integrate a network interface into these devices without inferring with the actual functionality. However, these architectures either lack security measures against cyber-attacks or do not offer the necessary performance for time-critical communication interfaces. To solve that, an architecture consisting of three units is introduced in this paper to provide a network interface with extensive security measures and a high performance. The main feature is the isolation of the cryptographic functionality onto an additional MCU. After proposing the basic concept, the paper presents many implementation details. Based on the current state of implementation, a concept validation of the realized architecture is described.
format Online
Article
Text
id pubmed-7343414
institution National Center for Biotechnology Information
language English
publishDate 2020
record_format MEDLINE/PubMed
spelling pubmed-73434142020-07-09 Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture Frauenschläger, Tobias Renner, Sebastian Mottok, Jürgen Architecture of Computing Systems – ARCS 2020 Article The number of IoT devices in SCADA and ICS systems is rising quickly, especially in the domain of critical infrastructures. But these kinds of systems are performing mission critical tasks like controlling devices in industrial facilities or substations in the smart grid. Therefore, they are subject to a lot of regulatory standards. Yet, to provide remote access over the internet, special architectures are developed to integrate a network interface into these devices without inferring with the actual functionality. However, these architectures either lack security measures against cyber-attacks or do not offer the necessary performance for time-critical communication interfaces. To solve that, an architecture consisting of three units is introduced in this paper to provide a network interface with extensive security measures and a high performance. The main feature is the isolation of the cryptographic functionality onto an additional MCU. After proposing the basic concept, the paper presents many implementation details. Based on the current state of implementation, a concept validation of the realized architecture is described. 2020-06-12 /pmc/articles/PMC7343414/ http://dx.doi.org/10.1007/978-3-030-52794-5_14 Text en © Springer Nature Switzerland AG 2020 This article is made available via the PMC Open Access Subset for unrestricted research re-use and secondary analysis in any form or by any means with acknowledgement of the original source. These permissions are granted for the duration of the World Health Organization (WHO) declaration of COVID-19 as a global pandemic.
spellingShingle Article
Frauenschläger, Tobias
Renner, Sebastian
Mottok, Jürgen
Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture
title Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture
title_full Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture
title_fullStr Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture
title_full_unstemmed Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture
title_short Security Improvements by Separating the Cryptographic Protocol from the Network Stack onto a Multi-MCU Architecture
title_sort security improvements by separating the cryptographic protocol from the network stack onto a multi-mcu architecture
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC7343414/
http://dx.doi.org/10.1007/978-3-030-52794-5_14
work_keys_str_mv AT frauenschlagertobias securityimprovementsbyseparatingthecryptographicprotocolfromthenetworkstackontoamultimcuarchitecture
AT rennersebastian securityimprovementsbyseparatingthecryptographicprotocolfromthenetworkstackontoamultimcuarchitecture
AT mottokjurgen securityimprovementsbyseparatingthecryptographicprotocolfromthenetworkstackontoamultimcuarchitecture