The concepts of Internet of Things (IoT) and Cyber Physical Systems (CPS) are closely related to each other. IoT is often used to refer to small interconnected devices like those in smart home while CPS often refers to large interconnected devices like industry machines and smart cars. In this paper, we present a unified view of IoT and CPS: from the perspective of network architecture, IoT and CPS are similar. In both IoT and CPS, networking/communication modules are attached to original dumb things so that those dumb things become smart and can be integrated into cyber space. If needed, actuators can also be integrated with a thing so as to control the thing. With this unified view, we can perform risk assessment of an IoT/CPS system from six factors, hardware, networking, operating system (OS), software, data and human. To illustrate the use of such risk analysis framework, we analyze an air quality monitoring network, smart home using smart plugs and building automation system (BAS). We also discuss challenges such as cost and secure OS in IoT security.
翻译:互联网“事物”和“网络物理系统”的概念彼此密切相关。 IoT常常用来指像智能家庭那样的小相联装置,而CPS则常常指工业机器和智能汽车等大型互联装置。在本文中,我们对IoT和CPS有一个统一的看法:从网络结构的角度来看,IoT和CPS是相似的。在IoT和CPS中,网络/通信模块都附着于原始的哑器件,以便这些哑器件变得聪明,能够融入网络空间。如果需要,还可能把操作器与某种装置结合起来,以便控制它。有了这种统一的观点,我们可以从六个因素、硬件、联网、操作系统(OS)、软件、数据和人的角度对IoT/CPS系统进行风险评估。为了说明这种风险分析框架的使用情况,我们分析了空气质量监测网络,使用智能插头和建设自动化系统(BAS)。我们还讨论了成本和安全的IoT安全操作系统等挑战。