2.6 Embedded and Specialized Systems Flashcards
a combination of computer hardware and software designed for a specific function. [this] may also function within a larger system. The systems can be programmable or have a fixed functionality. • Hardware and software designed for a specific function – Or to operate as part of a larger system • Is built with only this task in mind – Can be optimized for size and/or cost • Common examples – Traffic light controllers – Digital watches – Medical imaging systems SoC (System on a Chip) • Multiple components running on a single chip – Common with embedded systems • Small form-factor – External interface support – Cache memory, flash memory – Usually lower power consumption • Security considerations are important – Difficult to upgrade hardware – Limited off-the-shelf security options
Embedded systems
semiconductor devices that are based around a matrix of configurable logic blocks (CLBs) connected via programmable interconnects. [this] can be reprogrammed to desired application or functionality requirements after manufacturing.
• An integrated circuit that can be configured
after manufacturing
– Array of logic blocks
– Programmed in the field
• A problem doesn’t require a hardware replacement
– Reprogram the FPGA
• Common in infrastructure
– Firewall logic
– Routers
Field-programmable gate array (FPGA)
[this(a)] a category of software applications for controlling industrial processes, which is the gathering of data in real time from remote locations in order to control equipment and conditions.
[this(b)] a collective term used to describe different types of control systems and associated instrumentation, which include the devices, systems, networks, and controls used to operate and/or automate industrial processes.
• [this(a)]
– Large-scale, multi-site [this(b)]
• PC manages equipment
– Power generation, refining, manufacturing equipment
– Facilities, industrial, energy, logistics
• Distributed control systems
– Real-time information
– System control
• Requires extensive segmentation
– No access from the outside
(a) Supervisory Control and Data Acquisition (SCADA) / (b) Industrial control systems (ICS)
the collective network of connected devices and the technology that facilitates communication between devices and the cloud, as well as between the devices themselves.
• Sensors - Heating and cooling, lighting
• Smart devices - Home automation, video doorbells
• Wearable technology - Watches, health monitors
• Facility automation - Temperature, air quality, lighting
• Weak defaults
– [this] manufacturers are not security professionals
Smart devices / IoT (Internet of Things)
Specialized (embedded systems)
• Medical devices
– Heart monitors, insulin pumps
– Often use older operating systems
• Vehicles
– Internal network is often accessible from
mobile networks
– Control internal electronics
• Aircraft
– DoS could damage the aircraft
– An outage would be problematic
• Smart meters - Measure power and water usage
Specialized (embedded systems)
a technology that allows you to make voice calls using a broadband Internet connection instead of a regular (or analog) phone line. • [this] – Instead of analog phone line or the – Plain Old Telephone Service (POTS) • A relatively complex embedded system – Can be relatively important • Each device is a computer – Separate boot process – Individual configurations – Different capabilities and functionalities
VoIP
In the home or small office with a handful of computers, [this] is more for human comfort than the machines. In large datacenters, a humidity-free room with a steady, cool temperature is essential for the trouble-free operation of hundreds or thousands of servers. See server farm.
• [this]
– Thermodynamics, fluid mechanics, and heat transfer
• A complex science
– Not something you can properly design yourself
– Must be integrated into the fire system
• PC manages equipment
– Makes cooling and heating decisions for workspaces
and data centers
• Traditionally not built with security in mind
– Difficult to recover from an infrastructure DoS
HVAC (Heating, Ventilation, and Air Conditioning)
Also known as a UAV (unmanned aerial vehicle), a flying device that is controlled remotely by a user. [this] fly using multiple propellers mounted on arms that extend from the center.
• Flying vehicle
– No pilot on board
• May be manually controlled from the ground
– Often with some autonomy
– Set it and forget it
• Extensive commercial and non-commercial use
– May require federal licenses
– Security and fail-safes are required
Drones
Printers, scanners, and fax machines:
• All-in-one or multifunction devices (MFD)
– Everything you need in one single device
• No longer a simple printer
– Very sophisticated firmware
• Some images are stored locally on the device
– Can be retrieved externally
• Logs are stored on the device
– Contain communication and fax details
Printers, scanners, and fax machines (multifunction printer)
a software component that rapidly switches between tasks, giving the impression that multiple programs are being executed at the same time on a single processing core.
• An operating system with a deterministic
processing schedule
– No time to wait for other processes
– Industrial equipment, automobiles,
– Military environments
• Extremely sensitive to security issues
– Non-trivial systems
– Need to always be available
– Difficult to know what type of security is in place
RTOS (Real-Time Operating System)
a closed-circuit television system used to maintain close observation of a person or group. closed-circuit television - a television system that is not used for broadcasting but is connected by cables to designated monitors (as in a factory or theater)
• Video/audio surveillance
– Embedded systems in the cameras and the
monitoring stations
• Secure the security system
– Restrict access from others - Prevent a denial of service
• Physically difficult to replace cameras
– Accessible independently over the network
– May allow for firmware upgrades
Surveillance systems
enables a new kind of network that is designed to connect virtually everyone and everything together including machines, objects, and devices. • Fifth generation cellular networking – Launched worldwide in 2020 • Significant performance improvements – At higher frequencies – Eventually 10 gigabits per second – Slower speeds from 100-900 Mbit/s • Significant IoT impact – Bandwidth becomes less of a constraint – Larger data transfers – Faster monitoring and notification – Additional cloud processing
5G
a removable smart card for mobile cellular telephony devices such as mobile computers and mobile phones. [this] cards securely store the service-subscriber key (IMSI) used to identify a GSM (Global System for Mobile communication) subscriber.
• [this] card - A universal integrated circuit card
• Used to provide information to a cellular
network provider - Phones, tablets, embedded systems
• Contains mobile details
– IMSI (International Mobile Subscriber Identity)
– Authentication information, contact information
• Important to manage
– Many embedded systems, many [this] cards
Subscriber identity module (SIM)
data communication and telecommunications tools, technologies and services that utilize a narrower set or band of frequencies in the communication channel. These utilize the channel frequency that is considered flat or which will use a lesser number of frequency sets.
• Communicate analog signals over a narrow range
of frequencies
– Over a longer distance - Conserve the frequency use
• Many IoT devices can communicate over long distances
– SCADA equipment - Sensors in oil fields
Narrowband
describes bandwidth and channels (the signal or system frequency). In terms of bandwidth, [this] baseband is the highest frequency (measured in hertz) used by the bandwidth, or the upper bound of the bandwidth
• Generally a single cable with a digital signal
– Can be fiber or copper
• The communication signal uses all of the bandwidth
– Utilization is either 0% or 100%
• Bidirectional communication
– But not at the same time using the same wire/fiber
• Ethernet standard - 100BASE-TX,
1000BASE-T, 10GBASE-T
Baseband