Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Authentication”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 55 records · Page 3

Fermilab's Transition to Token Authentication

Fermilab is the first High Energy Physics institution to transition from X.509 user certificates to authentication tokens in production systems. All the experiments that Fermilab hosts are now using JSON Web Token (JWT) access tokens in their grid jobs. Many software components have been either updated or created for this transition, and most of the software is available to others as open source. The tokens are defined using the WLCG Common JWT Profile. Token attributes for all the tokens are stored in the Fermilab FERRY system which generates the configuration for the CILogon token issuer. High security-value refresh tokens are stored in Hashicorp Vault configured by htvault-config, and JWT access tokens are requested by the htgettoken client through its integration with HTCondor. The Fermilab job submission system jobsub was redesigned to be a lightweight wrapper around HTCondor. The grid workload management system GlideinWMS which is also based on HTCondor was updated to use tokens for pilot job submission. For automated job submissions a managed tokens service was created to reduce duplication of effort and knowledge of how to securely keep tokens active. The existing Fermilab file transfer tool ifdh was updated to work seamlessly with tokens, as well as the Fermilab POMS (Production Operations Management System) which is used to manage automatic job submission and the RCDS (Rapid Code Distribution System) which is used to distribute analysis code via the CernVM FileSystem. The dCache storage system was reconfigured to accept tokens for authentication in place of X.509 proxy certificates. As some services and sites have not yet implemented token support, proxy certificates are still sent with jobs for backwards compatibility, but some experiments are beginning to transition to stop using them.

Dykstra, Dave [Fermilab] (ORCID:0000000326539015)↗

Simulation of a Wireless Authentication Protocol

Abstract—A wireless authentication protocol that employs timeslots and associated frequency-channels (APEC) is simulated using Python as the simulation environment and implemented into radio hardware as a proof of concept. The APEC protocol does not rely on the use of challenge-response, multifactor authentication schemes but relies instead on the physical properties of a wireless signal. The APEC protocol provides opportunities for real-time deployment in cell phone network infrastructure, as well as in adverse civil and military applications. Description of the APEC implementation and the corresponding results of the simulation study are presented.

42 - ENGINEERING↗

Source Authentication of Distribution Synchrophasors for Cybersecurity of Microgrids

This letter proposes a hybrid approach combining Self-Adaptive Mathematical Morphology (SAMM) and Time-Frequency (TF) techniques to authenticate the source information of Distribution Synchrophasors (DS) within near-range locations. The SAMM can adaptively regulate the synchrophasors variations which are representatives of local environmental characteristics. Subsequently, TF mapping is employed to extract informative signatures from the regulated synchrophasors variation. Finally, Random Forest Classification (RFC) is used to correlate the extracted signatures with the source information based on the derived TF mapping. Experiment results using DS collected at multiple small geographical scales validated the proposed methodology.

24 POWER TRANSMISSION AND DISTRIBUTION↗

ExMASS: A viable model for authentic student-scientist research partnerships

The Exploration of the Moon and Asteroids by Secondary Students (ExMASS) program provides students the opportunity to conduct authentic, student-led, open-inquiry research with assistance from their teacher and a scientist. One goal of the program is to enhance participants’ attitudes toward science. Most students enter the ExMASS program with positive attitudes toward science. However, the attitude survey developed for ExMASS measured small but statistically significant increases in attitudes. This paper discusses the ExMASS program, an attitude towards science survey designed for the program’s specific audience, and the results of statistical analyses of the survey. The validity of the attitudes survey was tested with an exploratory factor analysis (EFA). The results of the EFA revealed two salient factors measured by the survey: 1) Personal Importance of Science and 2) Importance of Science to Society. A reliability analysis revealed a Cronbach alpha value of 0.89. Paired t-tests revealed statistically significant differences in students’ attitudes before and after the program. For Factor 1, participants’ before scores were statistically significantly lower than their post scores, t(88) = 3.16, p<0.05. For Factor 2, participants’ before scores were statistically significantly lower than their post scores, t(88) = 4.47, p<0.05. ExMASS has been shown to be a practical model for programs designed to increase high school student attitudes toward science. More information on the ExMASS program is available at https://www.lpi.usra.edu/exploration/education/hsResearch/.

science↗

Fractionation of critical metals from authentic acid mine drainage using a multi-bed immobilized amine sorbent setup: A field site study

Here for the first time reported, a flow-through multi-fixed bed immobilized amine/silica sorbent strategy was employed to fractionate purified critical metals from authentic acid mine drainage (AMD). The U.S. Department of Energy’s (DOE) National Energy Technology Laboratory’s (NETL) patent-pending Multi-functional Sorbent Technology (MUST) sorbents were used to recover critical metals from AMD at the Pittsburgh Botanic Garden (Pittsburgh, PA USA). By adjusting the AMD/sorbent ratio, we recovered > 80% of pure adsorbed Mn (by adsorbed metal weight) and >90% pure adsorbed Al at lab-scale. Further optimizing the weight hourly space velocity (WHSV) enhanced the rate of adsorbed Al recovery by over five times, justifying a field site test. After treating >100 L of AMD at the field site, the optimized polyamine/epoxysilane/aminosilane sorbent recovered approximately 0.7 wt% adsorbed Al at > 90% purity. A tangible amount of purified aluminum hydroxide [Al(OH) 3 ] and aluminum sulfate [Al 2 (SO 4 ) 3 ] solids were then recovered after eluting and precipitating the previously adsorbed metals.

37 INORGANIC, ORGANIC, PHYSICAL, AND ANALYTICAL CH↗

Mild, Electroreductive Lignin Cleavage: Optimizing the Depolymerization of Authentic Lignins

Among candidate strategies to depolymerize lignin, electroreduction has promise as a mild, environmentally friendly, low-cost method to cleave lignin’s most common linkage, the β-O-4 bond. Much of the prior work on lignin electrolysis has focused on anodic (oxidative) approaches, while most available electroreduction studies have studied lignin model compounds rather than authentic lignin. Here, after optimizing with a model system, we investigated the room-temperature electroreductive cleavage of four common lignin samples from different pretreatment approaches, including Kraft, Soda, GVL, and Cu-AHP lignin. This mild electrolysis process resulted in the solubilization of 45% of the GVL lignin and 60% of the Cu-AHP lignin, affording approximately 17.6 and 19.4 wt % of monomeric materials, respectively. Furthermore, the present work is an encouraging first step toward an electroreductive strategy for lignin depolymerization and upgrading.

37 INORGANIC, ORGANIC, PHYSICAL, AND ANALYTICAL CH↗

Secure Command Line Solution for Token-based Authentication

The WLCG is modernizing its security infrastructure, replacing X.509 client authentication with the newer industry standard of JSON Web Tokens (JWTs) obtained through the Open ID Connect (OIDC) protocol. There is a wide variety of software available using the standards, but most of it is for Web browser-based applications and doesn’t adapt well to the command line-based software used heavily in High Throughput Computing (HTC). OIDC command line client software did exist, but it did not meet our requirements for security and convenience. This paper discusses a command line solution we have made based on the popular existing secrets management software from Hashicorp called vault. We made a package called htvault-config to easily configure a vault service and another called htgettoken to be the vault client. In addition, we have integrated use of the tools into the HTCondor workload management system, although they also work well independent of HTCondor. All of the software is open source, under active development, and ready for use.

Dykstra, Dave↗

Secure Firmware Update and Device Authentication for Smart Inverters using Blockchain and Physically Uncloable Function (PUF)-Embedded Security Module

Cybersecurity of inverters has been significantly important as inverters become smarter in cyber-physical environments. However, firmware security of smart inverters against firmware attacks from various attack vectors has been less studied. Furthermore, this paper proposes a secure firmware update and device authentication method using a blockchain-based public key infrastructure (PKI) management system and a physically unclonable function (PUF)-embedded security module in a smart inverter. The proposed method is validated by experiments.

blockchain↗

Hardware-Based Randomized Encoding for Sensor Authentication in Power Grid SCADA Systems

Supervisory Control and Data Acquisition (SCADA) systems are utilized extensively in critical power grid infrastructures. Modern SCADA systems have been proven to be susceptible to cyber-security attacks and require improved security primitives in order to prevent unwanted influence from an adversarial party. One section of weakness in the SCADA system is the integrity of field level sensors providing essential data for control decisions at a master station. In this paper we propose a lightweight hardware scheme providing inferred authentication for SCADA sensors by combining an analog to digital converter and a permutation generator as a single integrated circuit. Through this method we encode critical sensor data at the time of sensing, so that unencoded data is never stored in memory, increasing the difficulty of software attacks. We show through experimentation how our design stops both software and hardware false data injection attacks occurring at the field level of SCADA systems.

42 ENGINEERING↗

Extracting Critical Metals from Authentic Bauxite Residue

Securing domestic sources of critical minerals (CM) is paramount to ensuring a robust and self-sustaining technology infrastructure. Utilizing untapped non-conventional sources, like acid mine drainage, coal ash, bauxite residue/red mud, and more is an emerging approach that addresses this national concern while identifying new value-added pathways originating from waste streams. Red mud is a byproduct of the Bayer process that produces alumina and contains a wealth of CM – 50 µg/g Ga, 2.9 mg/g total rare earth elements plus yttrium, 12 mg/g Mn, 58 mg/g Al, and others. About 170 MM tonnes of red mud are co-produced annually alongside the 142 MM tonnes of alumina generated, highlighting the abundancy of this feedstock. In this work, different strategies were explored for extracting CM from authentic bauxite residue that involve thermal heating, microwave heating, and sonication all with different acids and buffers. CM recovery was then explored one step further by testing the adsorption of the extracted metals onto NETL’s Multi-functional Sorbent Technology (MUST). Microwave treatment of red mud proved the most effective CM extraction, whereas sonication was less desirable due to scale-up concerns. Successful recovery of CM from this leachate with MUST supports further studies toward optimizing the overall process.

bauxite residue↗

Securing Environmental IoT Data Using Masked Authentication Messaging Protocol in a DAG-Based Blockchain: IOTA Tangle

The demand for the digital monitoring of environmental ecosystems is high and growing rapidly as a means of protecting the public and managing the environment. However, before data, algorithms, and models can be mobilized at scale, there are considerable concerns associated with privacy and security that can negatively affect the adoption of technology within this domain. In this paper, we propose the advancement of electronic environmental monitoring through the capability provided by the blockchain. The blockchain’s use of a distributed ledger as its underlying infrastructure is an attractive approach to counter these privacy and security issues, although its performance and ability to manage sensor data must be assessed. We focus on a new distributed ledger technology for the IoT, called IOTA, that is based on a directed acyclic graph. IOTA overcomes the current limitations of the blockchain and offers a data communication protocol called masked authenticated messaging for secure data sharing among Internet of Things (IoT) devices. We show how the application layer employing the data communication protocol, MAM, can support the secure transmission, storage, and retrieval of encrypted environmental sensor data by using an immutable distributed ledger such as that shown in IOTA. Finally, we evaluate, compare, and analyze the performance of the MAM protocol against a non-protocol approach.

Gangwani, Pranav (ORCID:0000000159226002)↗

Authentication controversies and impactite petrography of the New Quebec Crater

The literature reports that led to the current acceptance of New Quebec Crater (Chubb Crater) as an authentic impact crater are reviewed, and it is noted that, for reasons that are not entirely clear, a meteoritic origin for the New Quebec Crater achieved wider acceptance at an earlier data than for the Lake Bosumtwi Crater, for which petrographic and chemical evidence is more abundant and compelling. The petrography of two impact melt samples from the New Quebec Crater was investigated, and new evidence is obtained on the degrees of shock metamorphism affecting the accessory minerals such as apatite, sphene, magnetite, and zircon.

Marvin, Ursula B.↗

A multimedia adult literacy program: Combining NASA technology, instructional design theory, and authentic literacy concepts

For a number of years, the Software Technology Branch of the Information Systems Directorate has been involved in the application of cutting edge hardware and software technologies to instructional tasks related to NASA projects. The branch has developed intelligent computer aided training shells, instructional applications of virtual reality and multimedia, and computer-based instructional packages that use fuzzy logic for both instructional and diagnostic decision making. One outcome of the work on space-related technology-supported instruction has been the creation of a significant pool of human talent in the branch with current expertise on the cutting edges of instructional technologies. When the human talent is combined with advanced technologies for graphics, sound, video, CD-ROM, and high speed computing, the result is a powerful research and development group that both contributes to the applied foundations of instructional technology and creates effective instructional packages that take advantage of a range of advanced technologies. Several branch projects are currently underway that combine NASA-developed expertise to significant instructional problems in public education. The branch, for example, has developed intelligent computer aided software to help high school students learn physics and staff are currently working on a project to produce educational software for young children with language deficits. This report deals with another project, the adult literacy tutor. Unfortunately, while there are a number of computer-based instructional packages available for adult literacy instruction, most of them are based on the same instructional models that failed these students when they were in school. The teacher-centered, discrete skill and drill-oriented, instructional strategies, even when they are supported by color computer graphics and animation, that form the foundation for most of the computer-based literacy packages currently on the market may not be the most effective or most desirable way to use computer technology in literacy programs. This project is developing a series of instructional packages that are based on a different instructional model - authentic instruction. The instructional development model used to create these packages is also different. Instead of using the traditional five stage linear, sequential model based on behavioral learning theory, the project uses the recursive, reflective design and development model (R2D2) that is based on cognitive learning theory, particularly the social constructivism of Vygotsky, and an epistemology based on critical theory. Using alternative instructional and instructional development theories, the result of the summer faculty fellowship is LiteraCity, a multimedia adult literacy instructional package that is a simulation of finding and applying for a job. The program, which is about 120 megabytes, is distributed on CD-ROM.

Willis, Jerry W.↗

Authentication, Time-Stamping and Digital Signatures

Time and frequency data are often transmitted over public packet-switched networks, and the use of this mode of distribution is likely to increase in the near future as high-speed logical circuits transmitted via networks replace point-to-point physical circuits. ALthough these networks have many technical advantages, they are susceptible to evesdropping, spoofing, and the alteration of messages enroute using techniques that are relatively simple to implement and quite difficult to detect. I will discuss a number of solutions to these problems, including the authentication mechanism used in the Network Time Protocol (NTP) and the more general technique of signing time-stamps using public key cryptography. This public key method can also be used to implement the digital analog of a Notary Public, and I will discuss how such a system could be realized on a public network such as the Internet.

Levine, Judah↗

Elemental Scanning Devices Authenticate Works of Art

To better detect aluminum compounds, Marshall Space Flight Center partnered with KeyMaster Inc. (later acquired by Madison, Wisconsin-based Bruker AXS Inc.) to develop a vacuum pump system that could be attached to X-ray fluorescence (XRF) scanners. The resulting technology greatly expanded XRF scanner capabilities, and hundreds of museums now use them to authenticate artifacts and works of art.

Source record↗

Method and system for source authentication in group communications

A method and system for authentication is provided. A central node for issuing certificates to a plurality of nodes associated with the central node in a network is also provided. The central node receives a first key from at least one node from among the plurality of nodes and generates a second key based on the received first key and generates a certificate for the at least one node. The generated certificate is transmitted to the at least one node.

Roy-Chowdhury, Ayan↗

Using Authentic Data to Facilitate Comparative Planetology & Student-led Classroom Investigations

This session will engage participants in a hands‐on activity that uses stunning NASA imagery from space to help participants gain an understanding of how scientists use Earth to gain a better understanding of other planetary bodies in the solar system. Participants will make observations, develop identification criteria, and use evidence to justify inferences made about processes sculpting the surface of different planetary worlds. Participants will also "build" a comparative planetology feature wall that will facilitate a comparative view of major geologic processes and features across the inner solar system. This session will highlight additional comparative planetology activities and demonstrate how the use of authentic data and imagery can help facilitate student‐led research in the classroom, helping teachers address the Next Generation Science Standards.

Graff, Paige↗