Safety & Security for the Connected World
Continuing to secure the Internet of Things Connected embedded - - PowerPoint PPT Presentation
Continuing to secure the Internet of Things Connected embedded - - PowerPoint PPT Presentation
Safety & Security for the Connected World Continuing to secure the Internet of Things Connected embedded devices Everything in our embedded world is becoming connected to The Internet Other connected devices Personal devices
Connected embedded devices
Everything in our embedded world is
becoming connected to
– The Internet – Other connected devices – Personal devices
The information provided by these devices and
the control of the devices is still vulnerable to cyber attacks
– Cloud exploits – Embedded device compromise (e.g. Target attack)
2
Securing connected embedded devices
Security as an afterthought will have the
same result as anti-virus and network security for protecting PCs
In the embedded world we have the
- pportunity to build security into our
connected devices
Lynx Software Technologies continues to
provide real-time products with built-in security
3
Security Technologies
LynxOS 7.0 offers military-grade
security built into the RTOS
Connected embedded devices
can be protected from traditional cyber attacks
– Network infiltration – Denial of Service attacks – Memory scraping – Password and authentication attacks
- e.g. Root Escalation or “Rooting” the system
4
Device Hardware
Identification & Authentication Access Control Lists Roles & Capabilities File System Audit Log Residual Information Protection
Process 1 Process 2
CPU Quota 1 CPU Quota 2
Security Technologies
LynxSecure offers isolation, separation and
virtualization for multi-domain systems
– Real-time performance and small footprint for
real embedded deployments
– Consolidation of hardware for efficient use of
multi-core systems
– Secure separation of networks, devices,
- perating systems and applications
LynxSecure can securely enable the
convergence of IT and OT networks in IoT deployments (e.g. IoT Gateways)
5
Total Security for the IoT Network
6
General Purpose OS Gateway Hardware
Internet Communications Applications Proprietary Network Applications
Internet
IT Network
Device Hardware
Identification & Authentication Access Control Lists Roles & Capabilities File System Audit Log Residual Information Protection
Process 1 Process 2
CPU Quota 1 CPU Quota 2
OT Network
Combination of LynxOS 7.0 and LynxSecure offers the most security for the IoT network
See EW conference paper – “architecting and developing an industrial IoT gateway for safety and security ”
Secure IoT Gateway/Router Secure IoT Intelligent Sensor
Observations on the IoT
We see ARM as the most prevalent
architecture in the IoT sensors
– Utilizing low power, but with increasing
performance and functionality
– Scaling from simple sensor nodes using M to R
ARM cores, to intelligent sensors using A series
– Scalability allows for growth in functionality
without changing architecture
Intel and Power Architecture have been
traditionally used in the IoT gateways
– More customers are now looking at ARM,
especially multi-core A series
7
Lynx Software Technologies Bringing Security to New ARM Designs
Lynx is migrating both LynxOS 7 and LynxSecure to
ARM
Cortex A series (especially multi-core
implementations) will be able to take advantage of key LynxOS 7 features for real-time IoT designs
–
POSIX API
–
Built-in security
–
Advanced multi-core support
Initial support will target processors from
Freescale, TI and Xilinx and boards from Freescale, GE Intelligent Systems and Curtiss Wright
8
Lynx Software Technologies Bringing Security to New ARM Designs
LynxSecure is being ported to new Cortex-A multi-core
processors that support hardware virtualization
–
Cortex A15/A7 (32 Bit)
–
Cortex A53/57/72 (64 Bit)
The unique characteristics of LynxSecure will enable
developers of new ARM based connected designs to :
–
Build in the strongest security to protect connected devices
–
Efficiently use multi-core ARM processors to build secure multi- domain systems with both real-time OS and GP OSes on the same hardware
–
Allow legacy systems, OSes and applications to easily migrate to the new generation of high performance multi-core ARM processors
LynxSecure will initially target the Xilinx Zynq UltraScale Plus
MPSoC and Freescale QorIQ processors
9
Summary
IoT and connected embedded systems are becoming more
widely deployed
Security is still a big issue as the OT and IT networks are
being connected together
–
Gateway is a critically vulnerable piece of the IoT network
Lynx products (LynxOS and LynxSecure) allow the best
built-in security for IoT sensors and gateways
Lynx products are being migrated to new ARM-based
processors to allow for the move to low-power, high performance and secure IoT connected systems
–
Factory Automation, Automotive, Industrial Control
10
Safety & Security for the Connected World