• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Konferenzschrift
  4. Portable Trust Anchor for OPC UA Using Auto-Configuration
 
  • Details
  • Full
Options
2020
Conference Paper
Title

Portable Trust Anchor for OPC UA Using Auto-Configuration

Abstract
With increasing connectivity between industrial devices their attack surface grows. Consequently, secure setups have to allow these devices to distinguish trustworthy and untrustworthy communication partners. One of the most significant and wide-spread protocols for Ethernet-based data exchange between industrial devices and controls is the Open Platform Communications Unified Architecture (OPC UA). Although the OPC UA standard includes certificate-based security measures, it lacks of applicable solutions for bootstrapping trust. For secure communication, each OPC UA application is supposed to hold an application certificate which can be managed by a Global Discovery Server (GDS). Simply put, applications request their certificate from the GDS as well as information about trustworthy and revoked certificates of third parties. However, the OPC UA specifications do not suggest a secure method to establish the initial trust for the communication between an application and the GDS. Moreover, in current implementations, the administrator has to manually interchange the certificates between the peers to build sufficient trust relationships. This paper proposes an evaluated portable trust-anchor-based concept to establish this initial trust and demonstrates it solely based on standardized OPC UA communication.
Author(s)
Meier, David  
Patzer, Florian  
Drexler, Matthias
Beyerer, Jürgen  
Mainwork
25th IEEE International Conference on Emerging Technologies and Factory Automation, ETFA 2020. Proceedings  
Conference
International Conference on Emerging Technologies and Factory Automation (ETFA) 2020  
DOI
10.1109/ETFA46521.2020.9211904
Language
English
Fraunhofer-Institut für Optronik, Systemtechnik und Bildauswertung IOSB  
Keyword(s)
  • OPC UA

  • security

  • trust

  • certificate

  • provisioning

  • Trust Anchor

  • Global Discovery Server

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024