• English
  • Deutsch
  • Log In
    Password Login
    Research Outputs
    Fundings & Projects
    Researchers
    Institutes
    Statistics
Repository logo
Fraunhofer-Gesellschaft
  1. Home
  2. Fraunhofer-Gesellschaft
  3. Scopus
  4. Leveraging BRSKI to Protect the Hardware Supply Chain of Operational Technology: Opportunities and Challenges
 
  • Details
  • Full
Options
2025
Conference Paper
Title

Leveraging BRSKI to Protect the Hardware Supply Chain of Operational Technology: Opportunities and Challenges

Abstract
The increase of interconnected Operational Technology (OT) devices leads to a need for scalable, yet secure onboarding to establish a trust relationship between a new device and its operator domain. The protocol Bootstrapping Remote Secure Key Infrastructure (BRSKI) is a promising candidate to automatically establish such trust relationships and secure the OT hardware supply chain, especially when used in combination with hardware-based cryptographic device identities. Although there is a reference implementation, BRSKI has not seen many real-world applications yet. We develop a testbed to investigate possible causes by analyzing the capabilities of the BRSKI reference implementation, optimizing specific aspects, and extending its functionality to utilize trusted platform modules protecting the device's identity. Subsequently, we assess if BRSKI can be used in conformity with IEC 62443. Our findings suggest that BRSKI provides promising opportunities to secure the OT hardware supply chain but also potential for improvement.
Author(s)
Heinl, Michael P.
Technische Universität München
Reuter, Adrian
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Peters, Sebastian N.  orcid-logo
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Bever, Markus
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Mainwork
40th Annual ACM Symposium on Applied Computing, SAC 2025  
Conference
Symposium on Applied Computing 2025  
Open Access
File(s)
Download (1.43 MB)
Rights
CC BY 4.0: Creative Commons Attribution
DOI
10.1145/3672608.3707707
10.24406/publica-5463
Additional full text version
Landing Page
Language
English
Fraunhofer-Institut für Angewandte und Integrierte Sicherheit AISEC  
Keyword(s)
  • hardware supply chain security

  • industrial security

  • PKI

  • Cookie settings
  • Imprint
  • Privacy policy
  • Api
  • Contact
© 2024