FabOS component
Secure On - & Offboarding
The Secure On & Offboarding Service offers the possibility to provision digital key pairs, certificates and other parameters via a secure communication channel to devices with a Secure Element.
Project partners involved
Easy, secure and flexible onboarding and offboarding of field devices with NXP Secure Elements.
A local backend server for issuing and managing digital device certificates in combination with a smartphone app enable secure and easy provisioning of generated certificates on NXP's Secure Elements. The integration effort for provisioning different devices for heterogeneous applications is greatly simplified by a generic device configuration description.
Project partners involved
Problem:
- Provisioning digital certificates to devices in the field poses security risks
- Heterogeneous device applications increase the complexity of onboarding and offboarding processes
- Cloud-based approaches to certificate management pose further security risks
Solution approach:
- On-premises backend server for certificate management
- Provisioning of device configurations via an intuitive smartphone app
- Creation of provisioning profiles for different device types via a simple JSON description
- Use of NFC interface for easy provisioning of devices when powered off
- End-to-end encrypted communication channel between the backend server and the secure element
Functions
Generation of digital key pairs in a Secure Element
Generation of digital key pairs in a Secure Element
Connection of external EST server instances for easy provisioning of externally issued device certificates
Web UI for certificate management and overview of provisioning history
Use cases
FabOS forms the foundation of a modern production environment
Measuring
- Missing markings on milled parts make traceability in quality assurance to the manufacturing process difficult.
- The options for loading workpiece carriers are usually ambiguous and provoke errors due to lack of concentration.
- Type, position, orientation and placement accuracy of objects on the workpiece carriers are not available as digital information for subsequent processes.
- Process changes and parameter entries at workstations / machines are made in a less user-friendly manner by keyboard entry.
- Quality assurance in production with random samples is inaccurate or leads to high costs due to 100% inspection.
- The lack of secure data connections to production complicates remote service deployment.
FabOS components used:
Measuring
Project partners involved:
Your contact for questions
Julia Tremp
NXP Semiconductors Germany GmbH
https://usebasin.com/f/2a11c90b02f4