发明名称 Industrial control system redundant communications/control modules authentication
摘要 A set of redundant industrial control system communications/control modules includes at least a first communications/control module and a second communications/control module. The first and second communications/control modules are configured to perform an authentication sequence including: transmitting a request datagram from the first communications/control module to the second communications/control module, the request datagram including a first nonce, a first device authentication key certificate, and a first identity attribute certificate; transmitting a response datagram from the second communications/control module to the first communications/control module, the response datagram including a second nonce, a first signature associated with the first and second nonces, a second device authentication key certificate, and a second identity attribute certificate; and transmitting an authentication datagram from the first communications/control module to the second communications/control module when the response datagram is valid, the authentication datagram including a second signature associated with the first and second nonces.
申请公布号 US9467297(B2) 申请公布日期 2016.10.11
申请号 US201414519047 申请日期 2014.10.20
申请人 Bedrock Automation Platforms Inc. 发明人 Clish Timothy;Galpin Samuel;Calvin James G.;Rooyakkers Albert
分类号 H04L9/32;H04L29/06;G06F21/44 主分类号 H04L9/32
代理机构 Advent, LLP 代理人 Advent, LLP
主权项 1. A secure industrial control system, comprising: one or more industrial elements, the one or more industrial elements including at least one input/output module operable to receive industrial sensor information or send control information to an industrial actuator or motor; and a set of redundant communications/control modules that drive the one or more industrial elements, each of the redundant communications/control modules including at least one respective processor coupled to a respective non-transitory medium that stores instructions executable by the at least one respective processor; the set of redundant communications/control modules including a first communications/control module and a second communications/control module, the first and second communications/control modules both being communicatively coupled with the at least one input/output module and configured to monitor and control the at least one input/output module, the first and second communications/control modules being further configured to perform an authentication sequence, the authentication sequence including: transmitting a request datagram from the first communications/control module to the second communications/control module, the request datagram including a first nonce, a first device authentication key certificate, and a first identity attribute certificate; transmitting a response datagram from the second communications/control module to the first communications/control module, the response datagram including a second nonce, a first signature associated with the first and second nonces, a second device authentication key certificate, and a second identity attribute certificate; transmitting an authentication datagram from the first communications/control module to the second communications/control module when the response datagram is valid, the authentication datagram including a second signature associated with the first and second nonces; and transmitting a failed authentication datagram from the first communications/control module to the second communications/control module when the response datagram is invalid, the failed authentication datagram including a signature associated with the second nonce and an error message generated by the first communications/control module.
地址 San Jose CA US