您的浏览器禁用了JavaScript(一种计算机语言,用以实现您与网页的交互),请解除该禁用,或者联系我们。 [风河]:利用时间敏感网络攻击移动目标 - 发现报告

利用时间敏感网络攻击移动目标

2024-07-01 风河 LIHUYUN
报告封面

Hitting the Moving Target with Time Sensitive Networking -An Industry Collaboration on Risk Mitigation1.IntroductionMission-critical systems increasingly rely on Ethernet connectivity between modules ordevices. Traditional Ethernet (IEEE 802.3 and 802.1Q) has no concept of time regardingdata delivery, and thus it is not possible to ensure all real-time data arrives at its destinationon time – especially as data loads increase. Deterministic system behavior thuscannot be achieved.Time-Sensitive Networking (TSN) addresses this problem, guaranteeing minimal networklatency and jitter, and provides for bounded end-to-end delay and guaranteed messagedelivery time. TSN also allows for the transmission of time-sensitive and non-time-sensitivedata on the same network. Sitting mostly at layer 2 (the Data Link Layer) of the OpenSystems Interconnection (OSI) model, IEEE802.1 and IEEE802.1Q-2022 (optional)TSN features enable deterministic networking over general purpose Ethernet. However,definition of the relevant specifications is on-going, with some defined and includedin the main IEEE 802.1Q-2022 specification and some like cut-through (P802.1DU) inprogress - all tackling different issues and functionality.Hence, this poses a problem for Internet of Things (IoT) edge device vendors as towhich specifications are relevant to their products. Additionally, this can induce a lackof confidence that their products are future-proof.In this paper we will outline some of the on-going work on TSN. More crucially, we willdiscuss how this ‘moving target’ can be addressed, by a ‘back-to-basics’ approach.We recommend organizations have a baseline TSN offering, involving establishedaspects of IEEE 802.1, to create successful mission-critical systems today and to befuture-proof tomorrow. Hitting the Moving Target with Time Sensitive Networking -An Industry Collaboration on Risk Mitigation2.Making a Difference with TSNIn this section, we review the numerous benefits that TSN can provide across a range ofedge and industrial applications.NOTE: There are also complexities driven by TSN and other scheduled solutions. However, thesecomplexities are not the topic of this paper.Table 1: Benefits of Time-Sensitive NetworkingBenefitTSN RoleReduced ComplexityModular systems design, such as within a vehicle or aircraft, makes development,testing, deployment, and upgrades less complex and hence more cost-effective.Ethernet is commonly used for inter-module, intra-module, and inter-componentcommunication. Hence, systems typically suffered from the limitation of non-deterministic real-time data delivery. TSN addresses this issue – enabling systemsengineers to achieve accurate and repeatable timing for highly-reliable real-timecommunication over standardized Ethernet as opposed to custom communicationsbusses/solutions.Improved Quality ofService (QoS)TSN supports mechanisms to prioritize and schedule network traffic, whichenhances the quality of service for critical applications. This is essential for real-timeapplications that require low latency and high reliability.ScalabilityAs networks of edge devices grow (more distributed sensors or additional moduleswithin a system), TSN ensures the highest priority-time-sensitive data continues tobe transferred.Data accessData-centric applications and storage play an essential role in intelligent edgesystems, and it can be challenging to move data between edge and resourcemanagement functions when networks consist of disparate buses. TSN playsa crucial role in enabling low-latency, real-time data access in edge cloudenvironments, thereby supporting a wide range of applications that require fast andreliable communication at the network edge.Improved monitoring /fault detectionEfficient prioritization and distribution of events notifications and corrective actionswill ensure less system downtime.Better CyberResiliencyBy using Ethernet, cybersecurity mechanisms already deployed in IT networkscan be tailored and applied to systems with TSN, thus significantly reducingvulnerabilities.FutureproofingEthernet is here to stay and ongoing TSN development provides vendor confidencethat development efforts are not throw-away.Convergence of IT &OT NetworksTSN facilitates the convergence of Information Technology (IT) and OperationalTechnology (OT) networks, providing a unified communication infrastructure for bothenterprise and industrial systems consisting of both best effort and real-time traffic.Interoperability &Vendor NeutralityTSN standards are designed to be open and interoperable, allowing differentvendors’ devices to work seamlessly together, building an open and robustecosystem. Hitting the Moving Target with Time Sensitive Networking -An Industry Collaboration on Risk Mitigation3.IEEE 802.1 TSN RecapTime-Sensitive Networking (TSN) has become the collective term for a technology aimingto deliver deterministic network connectivity with bounded latency for many applications.The TSN task group of the IEEE 802.1