9 October 2011
WTC Convention Center, Grenoble (France)
Europe/Zurich timezone

Can off-the-shelf control systems be compliant with CERN computer security policy?

9 Oct 2011, 12:15
30m
Kilimandjaro Nord (WTC Convention Center, Grenoble (France))

Kilimandjaro Nord

WTC Convention Center, Grenoble (France)

Speaker

Timo Hakulinen (CERN)

Description

A computer security policy enforced at CERN requires all network-connected equipment to be submitted to regular port scans. Security patches are also required to be applied to all Windows and Linux machines on a regular basis. From time to time these security measures cause problems with equipment and software, which for one reason or another were not equipped to handle them. We discuss cases, where existing CERN access and safety systems have suffered service disruptions, reasons behind these incidents, as well as some strategies on how to mitigate and how to prepare for them in future designs.

Author

Timo Hakulinen (CERN)

Co-authors

Francesco Valentini (CERN) Pierre Ninin (CERN)

Presentation materials