Evaluation of an OPC UA-based access control enforcement architecture

التفاصيل البيبلوغرافية
العنوان: Evaluation of an OPC UA-based access control enforcement architecture
المؤلفون: Leander, Björn, 1978, Causevic, Aida, 1983, Lindström, T., Hansson, Hans
المصدر: International Workshops which were held in conjunction with 28th European Symposium on Research in Computer Security, ESORICS 2023. The Hague 25 September 2023 through 29 September 2023. Code 309159 Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics. :124-144
مصطلحات موضوعية: Access control enforcements, Control system security, Dynamic access control, Enforcement architectures, Fine grained, Implicit trusts, Industrial systems, Open process, Process communication, Security design
الوصف: Dynamic access control in industrial systems is becoming a concern of greater importance as a consequence of the increasingly flexible manufacturing systems developed within the Industry 4.0 paradigm. With the shift from control system security design based on implicit trust toward a zero-trust approach, fine grained access control is a fundamental requirement. In this article, we look at an access control enforcement architecture and authorization protocol outlined as part of the Open Process Communication Unified Automation (OPC UA) protocol that can allow sufficiently dynamic and fine-grained access control. We present an implementation, and evaluates a set of important quality metrics related to this implementation, as guidelines and considerations for introduction of this protocol in industrial settings. Two approaches for optimization of the authorization protocol are presented and evaluated, which more than halves the average connection establishment time compared to the initial approach.
وصف الملف: print
URL الوصول: https://urn.kb.se/resolve?urn=urn:nbn:se:mdh:diva-64507
قاعدة البيانات: SwePub
الوصف
تدمد:03029743
DOI:10.1007/978-3-031-54204-6_7