首页> 外文会议>IFIP International Conference on New Technologies, Mobility and Security >Addressing Security in OCPP: Protection Against Man-in-the-Middle Attacks
【24h】

Addressing Security in OCPP: Protection Against Man-in-the-Middle Attacks

机译:解决OCPP中的安全性:防止中间人攻击

获取原文

摘要

The Open Charge Point Protocol (OCPP) is a communication standard for the exchange of data between a Charge Point (CP) and the Central Server (CS) in the electric vehicle domain. This protocol is envisioned to offer interoperability between the different manufacturers of charging points, network systems and IT back-end vendors. However, the current version of the specification is quite vague in terms of handling security and privacy, which results in a set of non-addressed threats, which we look at in this paper. Specifically, this paper focuses on Man-in-the-Middle attacks between the CP and the CS that may expose sensitive data of special interest to the various stake-holders involved in this context. As a counter-measure, we present a feasible solution and assess its behaviour in a simulator. The inclusion of additional security mechanisms is also studied, in compliance with the IEC 62351 standard.
机译:开放式充电点协议(OCPP)是一种通信标准,用于在电动汽车领域的充电点(CP)和中央服务器(CS)之间交换数据。可以预想该协议将在充电点的不同制造商,网络系统和IT后端供应商之间提供互操作性。但是,该规范的当前版本在处理安全性和隐私方面含糊不清,这导致了一系列未解决的威胁,我们将在本文中进行研究。具体而言,本文重点关注CP和CS之间的中间人攻击,这些攻击可能向与此相关的各种利益相关者暴露特别感兴趣的敏感数据。作为对策,我们提出了一种可行的解决方案,并在模拟器中评估了其行为。还研究了符合IEC 62351标准的其他安全机制的纳入。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号