Professional Documents
Culture Documents
u re d
o t
Automatic Identification System (AIS)
are
GMDSS Vessel Traffic Services / Logistics
10.04.2018 OFFIS - Institut für Informatik 4
Cyber Threats
Eavesdropping
unsecured
e.g. on route information
channel
Impersonation
I’m ship E.g. by injecting fake AIS signal
Alice attacker pretends to be ship of
country A to cause disagreements
between parties
Ship B
pbB is my
Ship A public key
pvB is my
private key
authentication msg
encryption
But how does A know that the public key is indeed B’s public key?
SIG of CA
pbB is my
certified
public key pvB is my
Ship A Ship B private key
authentication msg
encryption
10.04.2018 OFFIS - Institut für Informatik 8
Public Key Infrastructure (PKI)
pb1 is CA1’s
public key Root CA
SIG of
root CA
CA1
pbB is B’s
public key ... Issuing CAs
SIG of
CA1
B End entities
Any Service
$ Gi
gu ves
ar
an
transmit transmit transmit
Bank te
e
ID ID ID
(„Hash“) („Hash“) („Hash“)
$ MIR 1
„Europe“
MIR 2
„America“
Bank
B/L Token as
Blockchain