Lecture Notes in Informatics

Sicherheit 2016 - Sicherheit, Schutz und Zuverlässigkeit P-256, 217-228 (2016).

Gesellschaft für Informatik, Bonn

Software security requirements in building automation

Friedrich Praus , Wolfgang Kastner and Peter Palensky


With today's ongoing integration of heterogeneous building automation systems, increased comfort, energy efficiency, improved building management, sustainability as well as advanced applications such as active \& assisted living scenarios become possible. Obviously, the demands - especially regarding security - increase: Secure communication becomes equally important as secure software being executed on the devices. While the former has been addressed by standardization committees and manufacturers, until recently no scientific research is available, that targets the problem of secure control applications in this domain. No attack model has been defined, no security measures have been recommended, existing measures from other domains are either too expensive or time intensive to deploy, cannot be trivially applied to or do not cover specific demands and constraints of the building automation domain. This paper provides an extensive survey of the security requirements for distributed control applications and analyzes software protection methods. An architecture tackling the problem on how to secure software running on different device classes and preventing attacks on smart homes and buildings is briefly introduced at the end.

ISBN 978-3-88579-650-3

