• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Scopus
  4. Madtls: Fine-grained Middlebox-aware End-to-end Security for Industrial Communication
 
  • Details
  • Full
Options
2024
Conference Paper
Title

Madtls: Fine-grained Middlebox-aware End-to-end Security for Industrial Communication

Abstract
Industrial control systems increasingly rely on middlebox functionality such as intrusion detection or in-network processing. However, traditional end-to-end security protocols interfere with the necessary access to in-flight data. While recent work on middlebox-aware end-to-end security protocols for the traditional Internet promises to address the dilemma between end-to-end security guarantees and middleboxes, the current state-of-the-art lacks critical features for industrial communication. Most importantly, industrial settings require fine-grained access control for middleboxes to truly operate in a least-privilege mode. Likewise, advanced applications even require that middleboxes can inject specific messages (e.g., emergency shutdowns). Meanwhile, industrial scenarios often expose tight latency and bandwidth constraints not found in the traditional Internet. As the current state-of-the-art misses critical features, we propose Middlebox-aware DTLS (Madtls), a middlebox-aware end-to-end security protocol specifically tailored to the needs of industrial networks. Madtls provides bit-level read and write access control of middleboxes to communicated data with minimal bandwidth and processing overhead, even on constrained hardware.
Author(s)
Wagner, Eric
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Heye, David
Serror, Martin
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Kunze, Ike
Wehrle, Klaus
Henze, Martin  
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Mainwork
ACM AsiaCCS 2024, 19th ACM Asia Conference on Computer and Communications Security. Proceedings  
Conference
Asia Conference on Computer and Communications Security 2024  
Open Access
DOI
10.1145/3634737.3637640
Language
English
Fraunhofer-Institut für Kommunikation, Informationsverarbeitung und Ergonomie FKIE  
Keyword(s)
  • end-to-end security

  • industrial IoT

  • middlebox

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024