Employee Trust Based Industrial Device Deployment and Initial Key Establishment
Abstract
An efficient key management system is required to support cryptography. Most key management systems use either pre-installed shared keys or install initial security parameters using out-of-band channels. These methods create an additional burden for engineers who manage the devices in industrial plants. Hence, device deployment in industrial plants becomes a challenging task in order to achieve security. In this work, we present a device deployment framework that can support key management using the existing trust towards employees in a plant. This approach reduces the access to initial security parameters by employees, rather it helps to bind the trust of the employee with device commissioning. Thus, this approach presents a unique solution to the device deployment problem. Further, through a proof-of-concept implementation and security analysis using the AVISPA tool, we present that our framework is feasible to implement and satisfies our security objectives.
Cite
@article{arxiv.1604.03848,
title = {Employee Trust Based Industrial Device Deployment and Initial Key Establishment},
author = {Apala Ray and Johan Akerberg and Mats Bjorkman and Mikael Gidlund},
journal= {arXiv preprint arXiv:1604.03848},
year = {2016}
}
Comments
Page 21-44, International Journal of Network Security & Its Applications (IJNSA) Vol.8, No.1, January 2016