尝试输入关键词、订货号/产品型号或序列号(“CM442”或“技术资料”)进行查找
至少输入2个字符开始搜索。

Endress+Hauser establishes internet security standards

IETF recommends the SmartBlue CPace protocol for password-protected access to instruments

发行日期: 27.10.2020

Secure access to field instruments is of the highest priority for operators across all branches of the process industry. Modern plants contain hundreds or thousands of measurement and control instruments that must be accessed remotely with growing frequency. These field instruments also have to be installed, monitored or serviced on a regular basis. Secure password-based user authentication plays a special role today, especially when devices with digital interfaces are involved.

Security with user-friendly password lengths

In order to utilize Bluetooth communications technology in industrial environments, security experts at Endress+Hauser identified a need for additional protection. The result was the development of a solution called CPace, which belongs to the class of PAKE (password-authenticated key exchange) methods. Among other things, PAKE technology is used with the German electronic ID cards as a means of largely decoupling the cryptographic security level from the length of the password.

The advantage of this method is that the processing power of even the smallest of field instruments is sufficient to provide devices, and thus the industrial systems, with the best level of protection against cyberattacks. At the same time CPace enjoys a high degree of acceptance among users given that the desired level of security can be achieved without relying on long passwords.

“We had to look internally to find a solution for establishing secure connections to the instruments. Previously available methods were out of the question because they provide an inadequate level of security given that field instruments have limited processing power and storage capacity. Password verification would have meant a login delay of two minutes or more,” explains Dr Björn Haase, head of the project at Endress+Hauser.

CPace makes life difficult for hackers

The security of the PAKE-based solution with Bluetooth technology from Endress+Hauser was previously verified in 2016 as part of an analysis by the Fraunhofer Institute for Applied and Integrated Security (AISEC). The institute classified the protection level of the Endress+Hauser security layer, the core component of which is recommended for use in internet environments, as “high”.

下载

    EH_27-10-2020_CPace.zip

新闻列表

通过邮箱直接接收下一条新闻稿和新闻。订阅Endress+Hauser新闻列表,时刻关注最新动态。

Endress+Hauser press list

Endress+Hauser regularly sends out press releases on current topics and company information to media professionals.

Select the topics you are interested in: *
Select the industries you are interested in:

Do you want to receive invitations to Endress+Hauser (digital or live) press events? 

Personal data

Fields marked with * have to be filled out. You will receive an email with a confirmation of your subscription and the related internet link. Your data will only be used for personalizing your newsletters and will not be passed on to any third party. The information enlisted is voluntarily. For statistical reasons we will perform anonymous link tracking.

联系方式