4.6 Article

Securing IIoT communications using OPC UA PubSub and Trusted Platform Modules

Journal

JOURNAL OF SYSTEMS ARCHITECTURE
Volume 134, Issue -, Pages -

Publisher

ELSEVIER
DOI: 10.1016/j.sysarc.2022.102797

Keywords

Security; Authentication; IIoT; OPC UA; PubSub; Security key server; TPM 2; 0; MQTT; Railway; ICS

Ask authors/readers for more resources

In the Industry 4.0 context, protecting data is crucial, especially when dealing with out-premise IIoT devices. OPC UA PubSub provides secure and interoperable solutions, but authentication remains a challenge. We propose a novel approach using open source software and a Trusted Platform Module to secure out-premise device authentication and ensure data confidentiality and integrity.
In the Industry 4.0 context, data are a valuable asset that must be protected. Ensuring the confidentiality and integrity of the data exchanged by the IIoT devices is challenging, especially when those devices are out of the companies premises or easily accessible (we call them out-premise devices). These devices become primary targets for attackers as a way to compromise data and cause damage to infrastructure or people. OPC UA PubSub provides the appropriate mechanisms to build scalable (e.g. one-to-many) secure and interoperable solutions with end-to-end encryption. However, authentication of IIoT devices remains a sensitive question, as it requires to securely embedding secrets. We present a novel approach based on open source software aiming to secure out-premise devices authentication, enabling the confidentiality and integrity of data exchanges with the rest of the system. Our approach uses a Trusted Platform Module as a secure element to protect the secrets embedded on devices. We further apply the approach on a predictive maintenance use case and evaluate the security level of our solution in such use case.

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.6
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available