PKI deployment in the Aerospace Industry

Slides:



Advertisements
Similar presentations
Role , Responsibility and achievements of SARI 145 Working Group
Advertisements

Feb 2009 Introducing ARTIST - Airbus Deutschland GmbH - TBCEI33 Introducing ARTIST Trust and Identification Aircraft Security Presented by Michel Messerschmidt.
GLOBAL ink VHF Digital Link Mode 2 Progress Report to ICAO AMCP WG-M/2
PKI Trust Root Concepts ACP Working Group – I April 2009.
1 F E D E R A L A V I A T I O N A D M I N I S T R A T I O N A I R T R A F F I C O R G A N I Z A T I O N 1 William J. Hughes FAA Technical Center INFORMATION.
Data Link Convergence ICAO DLSG and ADG Activities ICAO ACP 5 July 2006 José Roca CASCADE Deputy Programme Manager
A GLOBALink ARINC VDL Mode 2 AOA and ATN Program Status & Deployment Activities November, 2000 AMCPWGM1 WP23.
Experiences with Massive PKI Deployment and Usage Daniel Kouřil, Michal Procházka Masaryk University & CESNET Security and Protection of Information 2009.
PKI Solutions: Buy vs. Build David Wasley, U. California (ret.) Jim Jokl, U. Virginia Nick Davis, U. Wisconsin.
The Future of PETAL Technology
Launching Egyptian Root CA and Inaugurating E-Signature Dr. Sherif Hazem Nour El-Din Information Security Systems Consultant Root CA Manager, ITIDA.
GateFusion Wireless Content Delivery
Page 1STNApresentation of data-link activities DATA-LINK IMPLEMENTATION IN FRANCE Initial data-link services with ACARS - Departure Clearance, ATIS - CPDLC.
EDUCAUSE 2001, Indianapolis IN Securing e-Government: Implementing the Federal PKI David Temoshok Federal PKI Policy Manager GSA Office of Governmentwide.
Federal PKI Architecture Update
Paul D. Grant Special Assistant, Federated Identity Management and External Partnering Office of the DoD CIO Co-Chair, Identity, Credential.
Certificate Interoperability S&I Framework Initiative Final Report August 17, 2011.
The 4BF The Four Bridges Forum Federated PACS A Physical Access Use Case for Bridges FIPS 201/PIV-I PACS Interoperability April 28 th, 2009.
SAFE-BioPharma Association NSTIC Day How does industry drive forward.
Copyright Judith Spencer This work is the intellectual property of the author. Permission is granted for this material to be shared for non-commercial,
Integrated information and telecommunications solutions AIRCOM Implementation VHF Digital Link Presented by Philip Clinch to ATN 2001 Conference 19 September.
PKI in US Higher Education TAGPMA Meeting, March 2006 Rio De Janeiro, Brazil.
Resource PKI: Certificate Policy & Certification Practice Statement Dr. Stephen Kent Chief Scientist - Information Security.
Public-key based. Public-key Techniques based Protocols –may use either weak or strong passwords –high computation complexity (Slow) –high deployment.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 9: Planning and Managing Certificate Services.
Higher Education Bridge Certificate Authority (HEBCA) Project Progress Fed/Ed December 2004.
Florida’s Aviation and Aerospace Industry – An Overview Globes: The Israel Business Conference December 12 – 13, 2011.
Higher Education Bridge Certificate Authority (HEBCA) Project Progress July 2004 Dartmouth PKI Summit.
EEC 688/788 Secure and Dependable Computing Lecture 6 Wenbing Zhao Department of Electrical and Computer Engineering Cleveland State University
HEBCA – Higher Education Bridge Certification Authority Presented by Scott Rea and Mark Franklin, Fed/Ed Meeting, 12/14/2005.
The ATN Avionics Vendors View. ATN2001 Sept 2001; p.2 PETAL-II Avionics.
The U.S. Federal PKI, 2004: Report to EDUCAUSE Peter Alterman, Ph.D. Assistant CIO for E-Authentication National Institutes of Health.
ATN Subnetwork Implementation:
Wolfgang Schneider NSI: A Client-Server-Model for PKI Services.
Deploying a Certification Authority for Networks Security Prof. Dr. VICTOR-VALERIU PATRICIU Cdor.Prof. Dr. AUREL SERB Computer Engineering Department Military.
Integrated Avionics Systems
Introduction to Secure Messaging The Open Group Messaging Forum April 30, 2003.
IPv6 integration with the ATN Tony Whyman Helios Information Services Ltd.
International Aerospace Quality Group (IAQG) Informational Overview 28th June 2001 Gary Baker ~ Americas Sector Leader ~
Public Key Infrastructure (X509 PKI) Presented by : Ali Fanian.
Proposal for device identification PAR. Scope Unique per-device identifiers (DevID) Method or methods for authenticating that device is bound to that.
Digital Signatures A Brief Overview by Tim Sigmon April, 2001.
PKI Forum Business Panel March 6, 2000 Dr. Ray Wagner Sr. Director, Technology Research.
Security Overview  System protection requirements areas  Types of information protection  Information Architecture dimensions  Public Key Infrastructure.
Presented by Philip Clinch on 27 September 2000 at ATN 2000 Aeronautical Telecommunications Services.
I-CIDM Bridge to Bridge Working Group (BBWG) Purpose and Activities Fed-Ed Meeting The Fairmont Hotel Washington, DC December 14, 2004 Debb Blanchard Enspier.
Building trust on the internet Extending Attribute Protocols for Status Management and “Other Things” Patrick Richard, Xcert International.
Leveraging Campus Authentication for Grid Scalability Jim Jokl Marty Humphrey University of Virginia Internet2 Meeting April 2004.
“Trust me …” Policy and Practices in PKI David L. Wasley Fall 2006 PKI Workshop.
© Copyright 2002 Frost & Sullivan. All Rights Reserved. U.S. C4ISR Markets National Security Improvements Requisite for an Unsettled Nation “Command, control,
Overview of US PKI Peter Alterman, Ph.D. Chair, Federal PKI Policy Authority and Asst. CIO E-Authentication, NIH.
Federal PKI Update Peter Alterman, Ph.D. Chair, Federal PKI Policy Authority.
AFTRCC PRESENTATION to the Intergovernmental Radio Advisory Committee GPS Re-radiation Devices Applications.
10 Dec 15 COMMUNICATIONS PANEL (CP) WORKING GROUP I (WG-I) Montreal, QC Canada January 2016 AEEC IPS Update (Prepared by Luc Emberger, Greg Saccone)
COMMITTEE CHARTER SAE S-18 Aircraft & Systems Development and Safety Assessment Committee 29 January 2008.
TAG Presentation 18th May 2004 Paul Butler
PKI deployment in the Aerospace Industry
Trust and Identification
GLOBAL ink VHF Digital Link Mode 2 Progress Report to ICAO AMCP WG-M/2
TAG Presentation 18th May 2004 Paul Butler
Public Key Infrastructure (PKI)
Overview of US PKI Peter Alterman, Ph.D.
جايگاه گواهی ديجيتالی در ايران
ATN Subnetwork Implementation:
The Aerospace QMS Standards Portfolio an Update
DoD MAINTENANCE CONTRACTORS
Future Airborne Capability Environment (FACE™) Support
Higher Education Bridge Certificate Authority (HEBCA) Project Progress Sixth Annual PKI Summit at Snowmass, Colorado August 2004.
Presentation transcript:

PKI deployment in the Aerospace Industry ICAO WG-I Information Paper #3 Author: Patrick Patterson

History 1999 DCWG Starts defining PKI Policy for Air Transport Industry 2000 SITA Builds first Aerospace PKI 2004 ATA adopts DCWG Renamed DSWG Published CP in iSpec2200 (Chapter 5)‏ Individuals Devices Software Signing

History (cont.)‏ 2006 2007 CertiPath formed ARINC SITA Exostar CP derived from US FBCA Policy and DSWG CP DSWG Starts work on Secure ACARS Identifying aircraft and ground stations 2007 CertiPath cross certifies with: US FBCA, Boeing, Lockheed Martin, Northrop-Grumman, Raytheon, SITA Exostar and ARINC are derive directly from CertiPath root

Today: 2008 DSWG is the standard, CertiPath is an implementation To Cross-Certify: EADS (Airbus)‏ US DoD UKMoD In Discussion: Honeywell Rockwell-Collins General Dynamics CA, FR, NL governments Approach to airlines being worked on DSWG is the standard, CertiPath is an implementation

What is using DSWG PKI Policy in Air Transport? “Secure ACARS” final specification AEEC 823 Derived, in part from ICAO ATN SARPs “Gatelink” in progress specification AEEC 822 Field Loadable Software Boeing 787 and Airbus A380 Electronic 8130 Airworthiness Electronic Flight Bag Signed Flight Plans, Manifests, weather reports, maps, etc. Various Military programs ALL USING DSWG/CertiPath BASED PKI

What does this mean for ICAO? There is an: Existing Deployed Functional Government recognised PKI for Aerospace and Air Transport use Communication protocols are already starting to use it AEEC 822 and 823 Problems with PKI are being solved Low Bandwidth Environment == ECC Revocation? == Short life certificates Key management? (still in progress)‏

Challenges It is important for there to be only one PKI standard for the industry Setting up a CA is expensive A cross-certified environment makes it less so. Unless we have convergence on a single policy, there will be no providers willing to set up those CAs Do we really want communications “protected” by a CA running from under someone's desk? Policy is as important as the technical deployment

What DSWG/CertiPath makes possible: Single Policy for all aspects of an airlines operations Maintenance Flight Ops Supply Chain Management Reduced cost and complexity Single point of audit Single Certificate per use Single Trust anchor Multiple vendors ready today if the airline does not want to set up their own PKI

How does this work?

Questions?