论文标题

物联网和CPS安全和隐私的统一观点

A Unified View of IoT And CPS Security and Privacy

论文作者

Luo, Lan, Morales-Gonzalez, Christopher, Wang, Shan, Ling, Zhen, Fu, Xinwen

论文摘要

物联网(IoT)和网络物理系统(CPS)的概念彼此密切相关。物联网通常被用来指的是小型互连设备,例如在智能家居中的设备,而CPS通常是指大型互连设备,例如行业机器和智能汽车。在本文中,我们介绍了物联网和CPS的统一视图:从网络体系结构的角度来看,IoT和CPS的角度相似,因为它们基于OSI模型或TCP/IP模型。在物联网和CP中,将网络/通信模块附加到原始事物上,因此可以将隔离的事物集成到网络空间中。如果需要,也可以将执行器与某事集成以控制事物。通过这种统一的观点,我们可以从六个因素,硬件,网络,操作系统(OS),软件,数据和人类对物联网/CPS系统进行风险评估。为了说明这种风险分析框架的使用,我们分析了空气质量监控网络,使用智能插头和建筑自动化系统(BAS)的智能家庭。我们还讨论了诸如成本和IoT安全性OS之类的挑战。

The concepts of Internet of Things (IoT) and Cyber Physical Systems (CPS) are closely related to each other. IoT is often used to refer to small interconnected devices like those in smart home while CPS often refers to large interconnected devices like industry machines and smart cars. In this paper, we present a unified view of IoT and CPS: from the perspective of network architecture, IoT and CPS are similar given that they are based on either the OSI model or TCP/IP model. In both IoT and CPS, networking/communication modules are attached to original things so that isolated things can be integrated into cyber space. If needed, actuators can also be integrated with a thing so as to control the thing. With this unified view, we can perform risk assessment of an IoT/CPS system from six factors, hardware, networking, operating system (OS), software, data and human. To illustrate the use of such risk analysis framework, we analyze an air quality monitoring network, smart home using smart plugs and building automation system (BAS). We also discuss challenges such as cost and secure OS in IoT security.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源