Fieldbus Gateway IPv6 Addressing for Secure IoT Connectivity
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing technologies face challenges in securely connecting fieldbus devices to the Internet, as they are not IP protocol-based and lack effective security mechanisms, leading to vulnerabilities in data and access security.
Innovation Solution
A gateway device with a network adapter for IPv6 connections, a fieldbus network adapter, and an address assignment device that configures unique IPv6 addresses for each fieldbus device, along with a protocol converter and filter device for security and access control, enabling direct IP addressing and enhanced security.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If fieldbus devices are connected to the Internet via a gateway that converts multiple devices to one IP connection, then connectivity to non-IP devices is achieved, but data and access security are compromised due to manipulation vulnerabilities
Solution Approach 1:
The gateway divides the fieldbus network into individual virtual network interfaces, assigning each fieldbus device its own separate IPv6 address and virtual network adapter. This segmentation isolates each device's data stream, preventing manipulation of one device from affecting others and enabling individual security control for each device connection.
Solution Approach 2:
The gateway introduces virtual network adapters as intermediary components between fieldbus devices and the IPv6 network. These virtual adapters act as security intermediaries that enforce authentication, authorization, and data integrity checks, preventing direct access and manipulation of fieldbus devices while maintaining connectivity.
2Ease of operation
If conventional gateway addressing is used where devices are identified via internal numbers, then device access is simplified, but security mechanisms cannot detect manipulations
Solution Approach 1:
The gateway replaces the conventional mechanical addressing system (internal device numbers) with an IPv6-based addressing system. Each fieldbus device receives a globally unique IPv6 address through virtual network adapters, enabling standard IP security protocols and manipulation detection mechanisms to function effectively while maintaining ease of device access.
3Adaptability or versatility
If IPv4 networks are used for connecting fieldbus devices, then compatibility with existing networks is maintained, but addressing limitations and security weaknesses persist
Solution Approach 1:
The gateway changes the network protocol parameter from IPv4 to IPv6, leveraging IPv6's expanded addressing capability (128-bit addresses) to provide unique addresses for each fieldbus device. This parameter change enables both superior addressing capability and enhanced security features while maintaining compatibility through the gateway's protocol conversion functionality.
Data Source
AI summary
A gateway device includes: a network adapter for connection to an IPv6 network; a fieldbus network adapter for connection to an associated fieldbus; and an address assignment device for configuring one or more virtual IPv6 network adapters for one or more devices connected to the fieldbus, wherein an individual IPv6 address corresponds to each device connected to the fieldbus.

