• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. SECURA: Unified Reference Architecture for Advanced Security and Trust in Safety Critical Infrastructures
 
  • Details
  • Full
Options
2024
Conference Paper
Title

SECURA: Unified Reference Architecture for Advanced Security and Trust in Safety Critical Infrastructures

Abstract
In the evolving landscape of safety-critical infrastructures, ensuring the integrity and security of systems has become paramount. Building upon a previously established security architecture tailored for the railway sector, this work introduces significant enhancements that extend its applicability beyond the confines of any singular industry. Key advancements include the integration of a security heartbeat to augment safety monitoring, the implementation of a sophisticated secure update mechanism leveraging Trusted Platform Module (TPM) Enhanced Authorization (EA) policies, local Trusted Platform Module (TPM) based attestation, a cyber-resiliency watchdog in a Trusted Execution Environment (TEE) that detects compromised system components and triggers remediation actions, automated vulnerability scanning leveraging Linux Integrity Measurement Architecture (IMA) logs to check against vulnerability databases, and a formal evaluation of system integrity reporting capabilities through remote attestation.
Moreover, aiming for a universally adaptable framework, this paper proposes a reference architecture to accommodate various operational contexts. We use compartments - such as virtual machines, software containers, and RTOSes partitions - as a universal abstraction for system components, designed to be compatible with various real-time operating systemss (RTOSess), including the safety-certified PikeOS, the ACRN hypervisor, and beyond.
Author(s)
Eckel, Michael  
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
Gürgens, Sigrid  
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
Mainwork
ARES 2024, 19th International Conference on Availability, Reliability & Security. Proceedings  
Conference
International Conference on Availability, Reliability and Security 2024  
Open Access
DOI
10.1145/3664476.3664513
Additional full text version
Landing Page
Language
English
Fraunhofer-Institut für Sichere Informationstechnologie SIT  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024