论文标题

TAGA的安全分析和设计:航空航天域中的触摸和GO助手

Security Analysis and Design for TAGA: a Touch and Go Assistant in the Aerospace Domain

论文作者

Fröschle, Sibylle, Kubisch, Martin, Gräfing, Marlon

论文摘要

当前,航空航天域中有一个驱动器将机器引入无线网络的机器通信,以改善加油和空调等机场的地面流程。为此,必须在飞机和各个地面单元(例如加油卡车或预处理单元)之间建立一个会话密钥。这是由“航空航天域中的触摸和GO助手”(TAGA)提供的,它允许操作员在NFC系统的帮助下配对地面单元和停车位的飞机。在本文中,我们介绍了要求,安全概念和模块化验证的安全分析和共同开发的结果。我们表明,通过并仅通过高级安全协议和本地流程度量的组合,我们获得了TAGA的安全且有弹性的设计。特别是,选择的设计是完全有抵御力的,以抵抗长期的关键妥协和攻击的平行升级。

There is currently a drive in the aerospace domain to introduce machine to machine communication over wireless networks to improve ground processes at airports such as refuelling and air conditiong. To this end a session key has to be established between the aircraft and the respective ground unit such as a fuel truck or a pre-conditiong unit. This is to be provided by a `touch and go assistant in the aerospace domain' (TAGA), which allows an operator to pair up a ground unit and an aircraft present at a parking slot with the help of a NFC system. In this paper, we present the results of our security analysis and co-development of requirements, security concepts, and modular verification thereof. We show that by, and only by, a combination of advanced security protocols and local process measures we obtain secure and resilient designs for TAGA. In particular, the design of choice is fully resilient against long-term key compromises and parallel escalation of attacks.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源