Re: [Embedlets-dev] Re: Security
Status: Alpha
Brought to you by:
tkosan
|
From: Gregg G. W. <gr...@sk...> - 2003-02-10 03:38:03
|
>I think using vlans to secure the connection between embedlets and >enterprise systems is overly optimistic. Embedlet hardware with >temperature probing devices might be used in a plant, but in office >buildings as well and I don't think network groups are going to be fond of >creating vlans with lots of devices spread acros buildings. The point is that as soon as you have to send the data across a building or through a network, you really do need to know a lot more about the data's successful transference, as well as being able to guarentee that it does follow your corporate requirements for data security. This is not about lazy programmers. The code exists, processors exist, network equipment exists. You have to decide at what level the cost to the end devices is so overwhelming that it is more cost effective to do it at the point of network traversal rather then between end applications, which may not know about each others capabilities regarding secure data transmission. More importantly, when a keyset is compromized, soneone is going to need to fix the problem, and asking them to telnet to 1000 field devices to update keys is not going to go over well, when there are only 10 routers involved in the network. Data communication concentrators are your friend... Scalability is paramount here. The 10 device applications have been done. The 100 device applications have been done. The 500 device applications are being worked on using existing technologies. The 10000 device applications are in the future. Think about how you'll make it possible for a couple of people to watch over, manage, configure and repair 10,000 devices... ----- gr...@cy... (Cyte Technologies Inc) |