Trust But Verify: A Framework for the Trustworthiness of Distributed Systems

被引:2
|
作者
Albarrak, Reem M. [1 ,2 ]
Menasce, Daniel A. [3 ]
机构
[1] George Mason Univ, Volgenau Sch Engn, Fairfax, VA 22030 USA
[2] King Saud Univ, Riyadh 11451, Saudi Arabia
[3] George Mason Univ, Volgenau Sch Engn, Dept Comp Sci, Fairfax, VA 22030 USA
关键词
Middleware; Engines; Real-time systems; Protocols; SCADA systems; Receivers; Databases; Critical systems; cyberphysical systems; trust verification; trust but verify; TBV; SWaT; security; trustworthy distributed systems; TAXONOMY; SECURE;
D O I
10.1109/TDSC.2020.3048301
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Many real-time process-control and industrial control systems, such as Supervisory Control and Data Acquisition (SCADA), use a distributed software architecture and rely on trusted message exchanges among software components. This article presents the Trust but Verify (TBV) middleware that promotes the idea that software components should not blindly trust each other. The TBV intercepts messages between a sender and a receiver to verify the consistency of the messages against rules associated with message types; this verification considers the system state. Based on the verification, a message is either delivered to the recipient or blocked. Even when components are mutually authenticated, it is possible that their counterparts are faulty or acting maliciously, persuading the receiver to take harmful actions. The contributions of this article are: (1) The design of the TBV middleware. (2) A proof-of-concept implementation of the TBV on a cyberphysical system-a water treatment facility. (3) An experimental validation of the TBV through several attack scenarios that allow compromised or faulty components to randomly send erroneous messages. These experiments measure the TBV's detection rate as well as its overhead. (4) An evaluation of the TBV overhead and performance degradation.
引用
收藏
页码:2105 / 2121
页数:17
相关论文
共 50 条
  • [22] Trust, but verify
    Haller, Christoph
    JOURNAL OF THORACIC AND CARDIOVASCULAR SURGERY, 2016, 152 (06): : E127 - E128
  • [23] Trust, but verify
    Comploj, Evi
    Ferro, Federica
    D'Elia, Carolina
    Trenti, Emanuela
    Palermo, Salvatore
    Pycha, Armin
    AKTUELLE UROLOGIE, 2023, 54 (05) : 369 - 372
  • [24] Trust, but verify
    Ellaway, Rachel H.
    ADVANCES IN HEALTH SCIENCES EDUCATION, 2023, 28 (05) : 1363 - 1366
  • [25] Trust, but verify
    Rini, Regina
    TLS-THE TIMES LITERARY SUPPLEMENT, 2022, (6242): : 35 - 35
  • [26] Trust BUT VERIFY
    Berliner, David C.
    Glass, Gene V.
    EDUCATIONAL LEADERSHIP, 2015, 72 (05) : 10 - 14
  • [27] Trust but verify
    Sullivan, F
    COMPUTING IN SCIENCE & ENGINEERING, 2002, 4 (02) : 3 - 4
  • [28] Trust, but verify
    不详
    AVIATION WEEK & SPACE TECHNOLOGY, 1998, 148 (08): : 27 - 27
  • [29] TRUST BUT VERIFY
    Styles, Gordon
    ADVANCED MATERIALS & PROCESSES, 2017, 175 (08): : 23 - 24
  • [30] Trust, but Verify
    Lesk, Michael
    IEEE SECURITY & PRIVACY, 2014, 12 (06) : 94 - 96