摘要: |
Ground processing systems are likely to use commercial-off-the-shelf (COTS) software and hardware for maintaining flight critical data. Hence, the COTS ground processing systems must be trustworthy and secure in order to maintain the integrity of the data. This requires various approaches, including information protection, data integrity and access security. This report describes the results of our studies on the existing guidance governing the use of COTS components for safety-critical applications of ground-based systems, and the objectives of current guidance from the point of view of applicability and shortcomings. The use of hazard analysis and vulnerability analysis as a means for developing an effective risk mitigation strategy is provided and the relevance of the Rotorcraft Advisory Circular to a COTS components scenario is summarized. In order to address security and vulnerability concerns, several technologies such as encryption/decryption, authentication, access control, intrusion detection, etc., particularly in relation to application within a health and usage monitoring system (HUMS) context, are discussed. The report also includes two case studies involving COTS products to determine if they can be qualified by following existing software guidance, such as DO-178B and DO-278. |