Loading…
Attending this event?
October 31 - November 1 - Co-Located Events
October 28-30 - Conference
Lyon Convention Centre - Lyon, France
More information for Open Source Summit + Embedded Linux Conference Europe 2019
Wednesday, October 30 • 16:15 - 16:50
How Secure is Your Edge with EdgeX? - Tingyu Zeng, Dell/RSA & Malini Bhandaru, VMware

Sign up or log in to save this to your schedule and see who's attending!

IoT presents a large attack surface, stemming from the number of connected components, physical distribution, and bugs in hardware and software. In this talk we focus on the Edge, systems close to the IoT sensors and actuators to reduce network bandwidth needs yet lower response latencies. EdgeX Foundry, an open source LF project, is a collection of microservices that collect, process, and respond to sensor data along with various support services. We review its threat model and the security best practices it adopts, such as code scans for known CVEs and security anti-patterns, use of Kong for secure gateway/proxy, use of Vault for secure storage of keys and authentication credentials, audit logging, and deployment prescriptions to limit privilege escalation and stolen media type attacks, and incidence response. Lastly, we touch on security roadmap items such as PKI for authenticated secure inter-service interaction and Trusted Platform Modules for secure boot and encrypted storage .

Speakers
avatar for Malini Bhandaru

Malini Bhandaru

Sr. Staff, VMware
Malini Bhandaru leads open source IoT efforts at VMware, actively contributing to EdgeX Foundry, and serving as co-chair of its Security Work Group, first working on IoT and AI long before they were hot. Prior to VMware, during her decade long career at Intel, she worked on big data... Read More →
TZ

Tingyu Zeng

Sr. Principal Engineer, Dell/RSA
Tingyu Zeng, Senior Principal Software Engineer and Security Lead for Dell Technologies’ IoT Platform Development Team. Tingyu is a co-chair of the Security Work Group of EdgeX Foundry, an open framework for building industrial IoT edge computing system under Apache 2 license project... Read More →


Wednesday October 30, 2019 16:15 - 16:50
Lumiere Auditortium
Feedback form isn't open yet.