In this paper we show that it is possible to retrofit a security layer on top of PROFINET IO without changing the underlying transmission system or standards. By introducing security modules, end-to-end network security can be achieved and ensure authentication, integrity and confidentiality for real-time communication. The concept of security modules is a flexible framework and countermeasures can be changed, as security threats and exploits are changing over time. A proof-of-concept implementation shows that it is possible to implement security modules on existing products and secure them against, for example, man-in-the-middle attacks.
Published in:
Emerging Technologies & Factory Automation, 2009. ETFA 2009. IEEE Conference on
Date of Conference:
22-25 Sept. 2009
- Page(s):
-
1
-
8
- ISSN :
-
1946-0759
- E-ISBN :
-
978-1-4244-2728-4
- Print ISBN:
-
978-1-4244-2727-7
- INSPEC Accession Number:
-
11003678
- Conference Location :
-
Mallorca
- Digital Object Identifier :
-
10.1109/ETFA.2009.5347205
- Product Type:
-
Conference Publications