• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Covert channels and their prevention in building automation protocols. A prototype exemplified Using BACnet
 
  • Details
  • Full
Options
2012
Conference Paper
Title

Covert channels and their prevention in building automation protocols. A prototype exemplified Using BACnet

Abstract
Security in building automation systems (BAS) recently became a topic in the security community. BAS form a part of enterprise networks and can be utilized to gain access to a company network or to violate a security policy. Up to now, the threat of covert channels in BAS protocols was not discovered. While a first available solution can limit ``high level'' covert channels in BAS, there is no solution available to prevent covert channels on the lower level (i.e., in BAS protocols). In this paper, we present network covert storage and network covert timing channels in the network and application layer of the BACnet protocol stack to show that protocol-level covert channels in BAS are feasible. Additionally, we introduce the first means enabling a BAS to become multi-level secure on the network and application layer to prevent covert channels. We built a prototype based on the BACnet firewall router (BFR) to implement multi-level security in BACnet environments.
Author(s)
Wendzel, S.
Kahler, B.
Rist, T.
Mainwork
IEEE International Conference on Green Computing and Communications, GreenCom 2012  
Conference
International Conference on Green Computing and Communications (GreenCom) 2012  
International Conference on Internet of Things 2012  
Conference on Cyber, Physical and Social Computing (CPSCom) 2012  
Workshop on Security of Systems and Software Resiliency (3SL) 2012  
DOI
10.1109/GreenCom.2012.120
Language
English
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024