Slide 12
Slide 12 text
IPSec
CANsec or MACsec
TLS or SecOC
PGP, SSL, SSH
Physical
Transport
Network
Data Link
Session
Presentation
Application
1
4
3
2
5
6
7
TPM- Trusted Platform Module
A tamper-resistant secure crypto-processor
that can store/limit the use of cryptographic
keys, and also it provides a unique RSA key.
Protecting data
At the edge maybe there is no physical
security, so things like having the hard disk
encrypted should be always required, what
kind of information is stored.
Trusting connected devices
A connected device needs to be trusted at
some point. Having a Secure-boot enabled,
and validate what interfaces are enabled,
USB, JTAG. At the same stage, things like
ROM/EEPROM should be considered
vulnerable.