Security considerations for FAN-Internet connections

The interconnection between field area networks and IP-based LANs, as well as the Internet as a whole, is becoming increasingly popular. Emerging security issues have been neglected or underrated in the past. However, traditional security concepts that work well for LANs and the Internet are hardly applicable to field bus systems. Based on an example from home automation, we review the problem and consider ways to prevent attacks both from the outside world and from within the field bus. Particular emphasis is given to firewalls, which are found to be only of limited value for securing field bus-Internet gateways. To tackle the security problem both on the field bus level and on the Internet, we propose the use of smart cards for authentication and encryption. We discuss modifications that are necessary to make field bus nodes secure, why smart cards are "different" and strategies to implement access control on the gateway.

[1]  Alfred Menezes,et al.  Key Management Techniques , 1996, Handbook of Applied Cryptography.

[2]  Martin Reichenbach,et al.  Sicherheitskonzepte für das Internet , 2001 .

[3]  M. Kunes,et al.  Applying Internet management standards to fieldbus systems , 1997, Proceedings 1997 IEEE International Workshop on Factory Communication Systems. WFCS'97.

[4]  Jose M. Oton,et al.  Smart cards , 1994 .

[5]  Donn B. Parker,et al.  Fighting computer crime , 1983 .

[6]  Roy Bright,et al.  Smart cards: principles, practice, applications , 1989 .

[7]  William Stallings,et al.  SNMP, SNMPv2, SNMPv3, and RMON 1 and 2 , 1999 .