18
Practical Identity in the IoT Era Morteza Ansari

CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

Embed Size (px)

Citation preview

Page 1: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

Practical Identity in the

IoT Era

Morteza Ansari

Page 2: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari
Page 3: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari
Page 4: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari
Page 5: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari
Page 6: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

•  Trustworthiness Integrity Tamperproof Anti-cloning

•  Device identity & identity context

•  Provisioning & associated life cycle

•  Authorization and access

•  Bridging modern & legacy

•  …

Page 7: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari
Page 8: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari
Page 9: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

System Integrator Owner Operator

Page 10: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

OEM

OEM System Integrator

Owner

Operator

App

Page 11: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

App App

Operator System Integrator

OEM

OEM System Integrator

Owner

Operator

Page 12: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

App App

Operator System Integrator

OEM

OEM System Integrator

Owner

Operator

Page 13: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ? Update firmware

Page 14: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

✓ Read diagnostic data ✓ Run diagnostic routines ✗ Read movement ✗ Write movement ✗ Read program ? Update firmware

Page 15: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

Location

Network

Trustworthiness

Calibration

Health

Page 16: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

•  Bridging legacy & modern

•  Not all devices are created equal

•  Life expectancy of industrial devices

•  IT vs. OT

•  Access: Remote locations Unreliable connectivity Low bandwidth Very complex failure scenarios

•  Privacy!

Page 17: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari

•  Too static, too fragile, too vulnerable

•  Device identity context

•  Risk based policies

•  Dynamic & continuous identity

•  Standardization

•  Identity life cycle

•  Identity ó security

Page 18: CIS 2015- Practical Identity in the IoT Era- Morteza Ansari