+++
We are at the Hannover Messe Hall 15, Booth H07.
Learn more
+++
FabOS component

Secure On - & Offboarding

The Secure On & Offboarding Service offers the possibility to provision digital key pairs, certificates and other parameters via a secure communication channel to devices with a Secure Element.
Project partners involved

Easy, secure and flexible onboarding and offboarding of field devices with NXP Secure Elements.

A local backend server for issuing and managing digital device certificates in combination with a smartphone app enable secure and easy provisioning of generated certificates on NXP's Secure Elements. The integration effort for provisioning different devices for heterogeneous applications is greatly simplified by a generic device configuration description.
Project partners involved

Problem:

  • Provisioning digital certificates to devices in the field poses security risks
  • Heterogeneous device applications increase the complexity of onboarding and offboarding processes
  • Cloud-based approaches to certificate management pose further security risks  

Solution approach:

  • On-premises backend server for certificate management
  • Provisioning of device configurations via an intuitive smartphone app
  • Creation of provisioning profiles for different device types via a simple JSON description
  • Use of NFC interface for easy provisioning of devices when powered off
  • End-to-end encrypted communication channel between the backend server and the secure element

Functions

Generation of digital key pairs in a Secure Element

Generation of digital key pairs in a Secure Element

Connection of external EST server instances for easy provisioning of externally issued device certificates

Web UI for certificate management and overview of provisioning history

Generation of digital key pairs in a Secure Element

Generation of digital key pairs in a Secure Element

Connection of external EST server instances for easy provisioning of externally issued device certificates

Web UI for certificate management and overview of provisioning history

Use cases

FabOS forms the foundation of a modern production environment

Measuring

  • Missing markings on milled parts make traceability in quality assurance to the manufacturing process difficult.
  • The options for loading workpiece carriers are usually ambiguous and provoke errors due to lack of concentration.
  • Type, position, orientation and placement accuracy of objects on the workpiece carriers are not available as digital information for subsequent processes.
  • Process changes and parameter entries at workstations / machines are made in a less user-friendly manner by keyboard entry.
  • Quality assurance in production with random samples is inaccurate or leads to high costs due to 100% inspection.
  • The lack of secure data connections to production complicates remote service deployment.
Measuring
Project partners involved:

Your contact for questions

Julia Tremp
NXP Semiconductors Germany GmbH
https://usebasin.com/f/2a11c90b02f4
We have received your request and will be in touch soon!
Oops! Something went wrong while submitting the form.

Discover more FabOS components

Transfer App

Transfer App

When WebApps go live on the store floor, the transfer app in the chain of marketplace, AppStore, AppPool, production is the executive on the end devices.

Speech recognition

Speech recognition

Optimization of processes through voice input and voice control.

Component identification

Component identification

Component identification solution that uses a neural network and vector embedding approach to quickly and accurately identify components in real time.

Convergent network

Convergent network

Transmission of real-time (RT) and non-real-time (NRT) data for industrial control over a converged network.

One Stop Shop

One Stop Shop

The One Stop Shop is the central information and distribution channel, brings the results of the project to the industry and helps to make them usable in practice.

Seamless Computing

Seamless Computing

Seamless computing can be used to orchestrate distributed applications in a heterogeneous environment, taking into account computational and network requirements.

Service Lifecycle Management

Service Lifecycle Management

With Service Lifecycle Management, you manage the software and system landscape in your factory and deploy new software services.

Asset Administration Shell

Asset Administration Shell

Asset Administration Shells (AAS) are the basis of the Digital Twin with uniform interfaces for all types of production equipment.