Automated Post-Quantum Certificate Management for Industrial Internet of Things Infrastructures

Mirdha, Kiron 1
1 Institut für Informationssicherheit und Verlässlichkeit (KASTEL), Karlsruher Institut für Technologie (KIT)


The Industrial Internet of Things (IIoT) is characterized by its high interconnectedness enabling data exchange across private and public networks. In order to protect the authenticity of industrial devices and applications against cyber attacks, current best practices typically involve Public Key Infrastructures (PKIs). While PKI solutions are well established in the Web, recent studies suggest that their realization in industrial applications is often insufficient.
Moreover, the long lifespan of IIoT devices necessitates protecting them against future threats, such as attacks aided by quantum computers. Especially the ongoing standardization efforts of post-quantum cryptography (PQC) by the National Institute of Standards and Technology (NIST) motivate research on its applicability in industrial networks.
In this thesis, we reduce the complexity of certificate management for IIoT devices by automating administrative PKI tasks. Furthermore, we addressed the quantum threat by incorporating post-quantum algorithms from NIST’s standardization process. Our approach instantiates a use case specific version of the Lightweight Certificate Management Protocol (CMP) Profile for X.509 digital certificates. ... mehr

Zugehörige Institution(en) am KIT Institut für Informationssicherheit und Verlässlichkeit (KASTEL)
Publikationstyp Hochschulschrift
Publikationsdatum 11.05.2023
Sprache Englisch
Identifikator KITopen-ID: 1000169317
Verlag Karlsruher Institut für Technologie (KIT)
Umfang 100 S.
Art der Arbeit Abschlussarbeit - Master
Referent/Betreuer Ottenhues, Astrid
Tiepelt, Marcel

Volltext §
DOI: 10.5445/IR/1000169317
Veröffentlicht am 15.03.2024
Seitenaufrufe: 103
seit 15.03.2024
Downloads: 47
seit 18.03.2024
Cover der Publikation
