IT Security in Building Automation

نویسنده

  • Franklin Linder
چکیده

The topic of IT security in building automation (BA) has become increasingly important in recent years. The reasons for this lie in the development of the technologies used. Like the technologies used in industrial automation, they have become ever more similar to general IT applications. The devices are now microcomputers with their own operating system. For communication, they use the global IP standard, and therefore the internet for remote communication. Because BA has become more open and standardised so that different systems can be combined, it has also become more vulnerable. But unlike general IT applications, with building automation it is not just data which is at risk. Since BA systems are physically connected to the technical equipment of the building (ventilation , lighting, doors, access control systems), any attacks can compromise the safety and security of the building itself. The actual risk each building faces is project-specific and greatly depends on its sensitivity and on the scope and depth of the building automation system. The measures used to protect building automation systems fall into two fundamental types: those which protect the individual devices, computers and software, and those which protect the IT infrastructure, in other words the networks and network access points. Protective measures for devices, computers and software start with the manufacturer. The protective measures for the IT infrastructure and the remaining measures for the devices , computers and software are implemented by the installation contractor, with clients , general contractors and specialist planners setting out the general conditions, particularly the cost framework, in their tendering specifications and bills of quantities. The efforts to ensure IT security extend throughout the lifetime of a system, from the manufacturing of the components, via project engineering and commissioning through to maintenance and operation. An adequate standard of security can only be achieved if all those involved play the part required of them. The security precautions must be proportionate to the risks. A risk analysis is essential. This white paper, entitled IT Security in Building Automation, describes in detail the security measures that can be taken. The diagrams and illustrations contain additional information on the various threats. The white paper only deals with the aspect of IT security against unauthorised external intervention or attack. It only refers to the other aspects – IT availability and the technical safety of the HVAC system itself – when necessary in order to minimise the negative …

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Security Analysis of Open Building Automation Systems

With the integration of security-critical services into Building Automation Systems (BAS), the demands on the underlying network technologies increase rapidly. Relying on physically isolated networks and on “Security by Obscurity”, as it is still common today, is by no means an adequate solution. To be reliable and robust against malicious manipulations, the used communication services must sup...

متن کامل

(in)security in building automation how to create dark buildings with light speed

The usage of building automation, regardless if in private homes or corporate buildings, aims to optimize comfort, energy efficiency and physical access for its users. Is cyber security part of the equation? Unfortunately, not to the extent one might expect, cyber security is quite often sacrificed either for comfort or efficiency. The higher number of small and large-scale installations combin...

متن کامل

Towards Suppressing Attacks on and Improving Resilience of Building Automation Systems - an Approach Exemplified Using BACnet

Different concepts of IT security, like communication encryption, have already been applied to building automation systems (BAS). However, no research is available to mitigate malicious or incompliant network traffic in BAS. Both aspects are covered by traffic normalizers. We present the first work-in-progress research on traffic normalization for building automation networks exemplified using ...

متن کامل

Flow-Based Security Issue Detection in Building Automation and Control Networks

The interconnection of building automation and control system networks to public networks has exposed them to a wide range of security problems. This paper provides an overview of the flow data usability to detect security issue in these networks. The flow-based monitoring inside automation and control networks is a novel approach. In this paper, we describe several use cases in which flow moni...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2014