On Securing Cloud-Hosted Cyber-Physical Systems Using Trusted Execution Environments

Amir Mohammad Naseri,Walter Lucia,Mohammad Mannan,Amr Youssef
DOI: https://doi.org/10.1109/icas49788.2021.9551155
2021-08-11
Abstract:Recently, cloud control systems have gained increasing attention from the research community as a solution to implement networked cyber-physical systems (CPSs). Such an architecture can reduce deployment and maintenance costs albeit at the expense of additional security and privacy concerns. In this paper, first, we discuss state-of-the-art security solutions for cloud control systems and their limitations. Then, we propose a novel control architecture based on Trusted Execution Environments (TEE). We show that such an approach can potentially address major security and privacy issues for cloud-hosted control systems. Finally, we present an implementation setup based on Intel Software Guard Extensions (SGX), and validate its effectiveness on a testbed system.
What problem does this paper attempt to address?