Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Secure by Design”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 109 records · Page 6

OSIRIS-REx Touch-and-Go (TAG) Mission Design for Asteroid Sample Collection

The Origins Spectral Interpretation Resource Identification Security Regolith Explorer (OSIRIS-REx) mission is a NASA New Frontiers mission launching in September 2016 to rendezvous with the near-Earth asteroid Bennu in October 2018. After several months of proximity operations to characterize the asteroid, OSIRIS-REx flies a Touch-And-Go (TAG) trajectory to the asteroid's surface to collect at least 60 g of pristine regolith sample for Earth return. This paper provides mission and flight system overviews, with more details on the TAG mission design and key events that occur to safely and successfully collect the sample. An overview of the navigation performed relative to a chosen sample site, along with the maneuvers to reach the desired site is described. Safety monitoring during descent is performed with onboard sensors providing an option to abort, troubleshoot, and try again if necessary. Sample collection occurs using a collection device at the end of an articulating robotic arm during a brief five second contact period, while a constant force spring mechanism in the arm assists to rebound the spacecraft away from the surface. Finally, the sample is measured quantitatively utilizing the law of conservation of angular momentum, along with qualitative data from imagery of the sampling device. Upon sample mass verification, the arm places the sample into the Stardust-heritage Sample Return Capsule (SRC) for return to Earth in September 2023.

OSIRIS-REX TOUCH-AND-GO (TAG) MISSION DESIGN FOR A↗

Software and System Health Management with R2U2

R2U2 (Realizable, Responsive, Unobtrusive Unit) is a hardware-supported tool and framework for the real-time system and software health management of cyber-physical systems. R2U2 continuously monitors properties about safety, performance, and security of the vehicle and can perform diagnostic reasoning. Efficient observers for past-time and future-time Metric Temporal Logic, reasoners for Bayesian Networks, and model-based prognostics algorithms are major components of R2U2. Their combination makes it possible to design powerful models for system runtime monitoring, diagnostics, software health management, prognostics, and security monitoring. The R2U2 monitoring engine is designed for minimal runtime overhead and is available as Simulink block or as a software component for integration into the flight software stack, and enables R2U2 to monitor complex cyber-physical systems without any instrumentation of the flight software. In this presentation, we give an overview of R2U2 architecture and reasoning algorithms, present its features, and give a life demo of the tool.

Schumann, Johann↗

Security Policy for a Generic Space Exploration Communication Network Architecture

This document is one of three. It describes various security mechanisms and a security policy profile for a generic space-based communication architecture. Two other documents accompany this document- an Operations Concept (OpsCon) and a communication architecture document. The OpsCon should be read first followed by the security policy profile described by this document and then the architecture document. The overall goal is to design a generic space exploration communication network architecture that is affordable, deployable, maintainable, securable, evolvable, reliable, and adaptable. The architecture should also require limited reconfiguration throughout system development and deployment. System deployment includes subsystem development in a factory setting, system integration in a laboratory setting, launch preparation, launch, and deployment and operation in space.

networking↗

Practical Pocket PC Application w/Biometric Security

I work in the Flight Software Engineering Branch, where we provide design and development of embedded real-time software applications for flight and supporting ground systems to support the NASA Aeronautics and Space Programs. In addition, this branch evaluates, develops and implements new technologies for embedded real-time systems, and maintains a laboratory for applications of embedded technology. The majority of microchips that are used in modern society have been programmed using embedded technology. These small chips can be found in microwaves, calculators, home security systems, cell phones and more. My assignment this summer entails working with an iPAQ HP 5500 Pocket PC. This top-of-the-line hand-held device is one of the first mobile PC's to introduce biometric security capabilities. Biometric security, in this case a fingerprint authentication system, is on the edge of technology as far as securing information. The benefits of fingerprint authentication are enormous. The most significant of them are that it is extremely difficult to reproduce someone else's fingerprint, and it is equally difficult to lose or forget your own fingerprint as opposed to a password or pin number. One of my goals for this summer is to integrate this technology with another Pocket PC application. The second task for the summer is to develop a simple application that provides an Astronaut EVA (Extravehicular Activity) Log Book capability. The Astronaut EVA Log Book is what an astronaut would use to report the status of field missions, crew physical health, successes, future plans, etc. My goal is to develop a user interface into which these data fields can be entered and stored. The applications that I am developing are created using eMbedded Visual C++ 4.0 with the Pocket PC 2003 Software Development Kit provided by Microsoft.

Logan, Julian↗

Considerations of persistence and security in CHOICES, an object-oriented operating system

The current design of the CHOICES persistent object implementation is summarized, and research in progress is outlined. CHOICES is implemented as an object-oriented system, and persistent objects appear to simplify and unify many functions of the system. It is demonstrated that persistent data can be accessed through an object-oriented file system model as efficiently as by an existing optimized commercial file system. The object-oriented file system can be specialized to provide an object store for persistent objects. The problems that arise in building an efficient persistent object scheme in a 32-bit virtual address space that only uses paging are described. Despite its limitations, the solution presented allows quite large numbers of objects to be active simultaneously, and permits sharing and efficient method calls.

Campbell, Roy H.↗

Test & Measurement System Security in an IT World

Automated test and measurement systems are coming under increased cybersecurity scrutiny. Most of these systems fall under the “Operational Technology” designation, as defined by NIST, and often have unique requirements that conflict with enterprise security policy. These systems are typically not well understood by traditional enterprise IT personnel, which leaves them ill-supported or invalidated.▪This presentation attempts to help Test System owners recognize the security landscape, determine their unique system requirements and concerns, and negotiate a peer-level working arrangement with an existing IT department while maintaining a NIST-recommended level of autonomy and sovereignty.

automated test↗

Design of a microprocessor based packet switch

The design of a packet switch incorporating a minicomputer to control and process data packets in a communications system has been reported. This paper proposes a design which uses a 6500 series microprocessor to realize the functions of a message switch in order to evaluate the viability of microprocessors in this application. The proposed design realizes the functions of header analysis, packet security, error control and line prioritization. The system hardware and software are presented together with a brief description of operation.

Carville, D. E.↗

Launching a dream: A teachers guide to a simulated space shuttle mission

Two simulated shuttle missions cosponsored by the NASA Lewis Research Center and Cleveland, Ohio, area schools are highlighted in this manual for teachers. A simulated space shuttle mission is an opportunity for students of all ages to plan, train for, and conduct a shuttle mission. Some students are selected to be astronauts, flight planners, and flight controllers. Other students build and test the experiments that the astronauts will conduct. Some set up mission control, while others design the mission patch. Students also serve as security officers or carry out public relations activities. For the simulated shuttle mission, school buses or recreation vehicles are converted to represent shuttle orbiters. All aspects of a shuttle mission are included. During preflight activities the shuttle is prepared, and experiments and a flight plan are made ready for launch day. The flight itself includes lifting off, conducting experiments on orbit, and rendezvousing with the crew from the sister school. After landing back at the home school, the student astronauts are debriefed and hold press conferences. The astronauts celebrate their successful missions with their fellow students at school and with the community at an evening postflight recognition program. To date, approximately 6,000 students have been involved in simulated shuttle missions with the Lewis Research Center. A list of participating schools, along with the names of their space shuttles, is included. Educations outcomes and other positive effects for the students are described.

Source record↗

Self-Aligning Sensor-Mounting Fixture

Optical welding sensors replaced without realignment. Mounting fixture for optical weld-penetration sensor enables accurate and repeatable alignment. Simple and easy to use. Assembled on welding torch, it holds sensor securely and keeps it pointed toward weld pool. Designed for use on gas/tungsten arc-welding torch, fixture replaces multipiece bracket.

Gilbert, Jeffrey L.↗

Fiber-Optic Terahertz Data-Communication Networks

Network protocols implemented in optical domain. Fiber-optic data-communication networks utilize fully available bandwidth of single-mode optical fibers. Two key features of method: use of subpicosecond laser pulses as carrier signals and spectral phase modulation of pulses for optical implementation of code-division multiple access as multiplexing network protocol. Local-area network designed according to concept offers full crossbar functionality, security of data in transit through network, and capacity about 100 times that of typical fiber-optic local-area network in current use.

Chua, Peter L.↗

Dielectric Covered Planar Antennas at Submillimeter Wavelengths for Terahertz Imaging

Most optical systems require antennas with directive patterns. This means that the physical area of the antenna will be large in terms of the wavelength. When non-cooled systems are used, the losses of microstrip or coplanar waveguide lines impede the use of standard patch or slot antennas for a large number of elements in a phased array format. Traditionally, this problem has been solved by using silicon lenses. However, if an array of such highly directive antennas is to be used for imaging applications, the fabrication of many closely spaced lenses becomes a problem. Moreover, planar antennas are usually fed by microstrip or coplanar waveguides while the mixer or the detector elements (usually Schottky diodes) are coupled in a waveguide environment. The coupling between the antenna and the detector/ mixer can be a fabrication challenge in an imaging array at submillimeter wavelengths. Antennas excited by a waveguide (TE10) mode makes use of dielectric superlayers to increase the directivity. These antennas create a kind of Fabry- Perot cavity between the ground plane and the first layer of dielectric. In reality, the antenna operates as a leaky wave mode where a leaky wave pole propagates along the cavity while it radiates. Thanks to this pole, the directivity of a small antenna is considerably enhanced. The antenna consists of a waveguide feed, which can be coupled to a mixer or detector such as a Schottky diode via a standard probe design. The waveguide is loaded with a double-slot iris to perform an impedance match and to suppress undesired modes that can propagate on the cavity. On top of the slot there is an air cavity and on top, a small portion of a hemispherical lens. The fractional bandwidth of such antennas is around 10 percent, which is good enough for heterodyne imaging applications.The new geometry makes use of a silicon lens instead of dielectric quarter wavelength substrates. This design presents several advantages when used in the submillimeter-wave and terahertz bands: a) Antenna fabrication compatible with lithographic techniques. b) Much simpler fabrication of the lens. c) A simple quarter-wavelength matching layer of the lens will be more efficient if a smaller portion of the lens is used. d) The directivity is given by the lens diameter instead of the leaky pole (the bandwidth will not depend anymore on the directivity but just on the initial cavity). The feed is a standard waveguide, which is compatible with proven Schottky diode mixer/detector technologies. The development of such technology will benefit applications where submillimeter- wave heterodyne array designs are required. The main fields are national security, planetary exploration, and biomedicine. For national security, wideband submillimeter radars could be an effective tool for the standoff detection of hidden weapons or bombs concealed by clothing or packaging. In the field of planetary exploration, wideband submillimeter radars can be used as a spectrometer to detect trace concentrations of chemicals in atmospheres that are too cold to rely on thermal imaging techniques. In biomedicine, an imaging heterodyne system could be helpful in detecting skin diseases.

Chattopadhyay, Goutam↗

Common Practice Lightning Strike Protection Characterization Technique to Quantify Damage Mechanisms on Composite Substrates

To support FAA certification airworthiness standards, composite substrates are subjected to lightning direct-effect electrical waveforms to determine performance characteristics of the lightning strike protection (LSP) conductive layers used to protect composite substrates. Test results collected from independent LSP studies are often incomparable due to variability in test procedures & applied practices at different organizations, which impairs performance correlations between different LSP data sets. Under a NASA supported contract, The Boeing Company developed technical procedures and documentation as guidance in order to facilitate a test method for conducting universal common practice lightning strike protection test procedures. The procedures obtain conformity in future lightning strike protection evaluations to allow meaningful performance correlations across data sets. This universal common practice guidance provides the manufacturing specifications to fabricate carbon fiber reinforced plastic (CFRP) test panels, including finish, grounding configuration, and acceptable methods for pretest nondestructive inspection (NDI) and posttest destructive inspection. The test operations guidance elaborates on the provisions contained in SAE ARP5416 to address inconsistencies in the generation of damage protection performance data, so as to provide for maximum achievable correlation across capable lab facilities. In addition, the guidance details a direct effects test bed design to aid in quantification of the multi-physical phenomena surrounding a lightning direct attachment supporting validation data requirements for the development of predictive computational modeling. The lightning test bed is designed to accommodate a repeatable installation procedure to secure the test panel and eliminate test installation uncertainty. It also facilitates a means to capture the electrical waveform parameters in 2 dimensions, along with the mechanical displacement and thermal heating parameters which occur during lightning attachment. Following guidance defined in the universal common practice LSP test documents, protected and unprotected CFRP panels were evaluated at 20, 40 and 100KAmps. This report presents analyzed data demonstrating the scientific usefulness of the common practice approach. Descriptions of the common practice CFRP test articles, LSP test bed fixture, and monitoring techniques to capture the electrical, mechanical and thermal parameters during lightning attachment are presented here. Two methods of measuring the electrical currents were evaluated, inductive current probes and a newly developed fiberoptic sensor. Two mechanical displacement methods were also examined, optical laser measurement sensors and a digital imaging correlation camera system. Recommendations are provided to help users implement the common practice test approach and obtain LSP test characterizations comparable across data sets.

Szatkowski, George N.↗

Non-Maximally Decimated Filter Banks Enable Adaptive Frequency Hopping for Unmanned Aircraft Vehicles

In the last few years, radio technologies for unmanned aircraft vehicle (UAV) have advanced very rapidly. The increasing need to fly unmanned aircraft systems (UAS) in the national airspace system (NAS) to perform missions of vital importance to national security, defense, and science has pushed ahead the design and implementation of new radio platforms. However, a lot still has to be done to improve those radios in terms of performance and capabilities. In addition, an important aspect to account for is hardware cost and the feasibility to implement these radios using commercial off-the-shelf (COTS) components. UAV radios come with numerous technical challenges and their development involves contributions at different levels of the design. Cognitive algorithms need to be developed in order to perform agile communications using appropriate frequency allocation while maintaining safe and efficient operations in the NAS and, digital reconfigurable architectures have to be designed in order to ensure a prompt response to environmental changes. Command and control (C2) communications have to be preserved during "standard" operations while crew operations have to be minimized. It is clear that UAV radios have to be software-defined systems, where size, weight and power consumption (SWaP) are critical parameters. This paper provides preliminary results of the efforts performed to design a fully digital radio architecture as part of a NASA Phase I STTR. In this paper, we will explain the basic idea and technical principles behind our dynamic/adaptive frequency hopping radio for UAVs. We will present our Simulink model of the dynamic FH radio transmitter design for UAV communications and show simulation results and FPGA system analysis.

UAV↗

Sleep Environment Recommendations for Future Spaceflight Vehicles

Current evidence demonstrates that astronauts experience sleep loss and circadian desynchronization during spaceflight. Ground-based evidence demonstrates that these conditions lead to reduced performance, increased risk of injuries and accidents, and short and long-term health consequences. Many of the factors contributing to these conditions relate to the habitability of the sleep environment. Noise, inadequate temperature and airflow, and inappropriate lighting and light pollution have each been associated with sleep loss and circadian misalignment during spaceflight operations and on Earth. As NASA prepares to send astronauts on long-duration, deep space missions, it is critical that the habitability of the sleep environment provide adequate mitigations for potential sleep disruptors. We conducted a comprehensive literature review summarizing optimal sleep hygiene parameters for lighting, temperature, airflow, humidity, comfort, intermittent and erratic sounds, and privacy and security in the sleep environment. We reviewed the design and use of sleep environments in a wide range of cohorts including among aquanauts, expeditioners, pilots, military personnel and ship operators. We also reviewed the specifications and sleep quality data arising from every NASA spaceflight mission, beginning with Gemini. Finally, we conducted structured interviews with individuals experienced sleeping in non-traditional spaces including oil rig workers, Navy personnel, astronauts, and expeditioners. We also interviewed the engineers responsible for the design of the sleeping quarters presently deployed on the International Space Station. We found that the optimal sleep environment is cool, dark, quiet, and is perceived as safe and private. There are wide individual differences in the preferred sleep environment; therefore modifiable sleeping compartments are necessary to ensure all crewmembers are able to select personalized configurations for optimal sleep. A sub-optimal sleep environment is tolerable for only a limited time, therefore individual sleeping quarters should be designed for long-duration missions. In a confined space, the sleep environment serves a dual purpose as a place to sleep, but also as a place for storing personal items and as a place for privacy during non-sleep times. This need for privacy during sleep and wake appears to be critically important to the psychological well-being of crewmembers on long-duration missions.

Flynn-Evans, Erin E.↗

Sleep Environment Recommendations for Future Spaceflight Vehicles

We conducted a comprehensive literature review summarizing optimal sleep hygiene parameters for lighting, temperature, airflow, humidity, comfort, intermittent and erratic sounds, and privacy and security in the sleep environment. We reviewed the design and use of sleep environments in a wide range of cohorts including among aquanauts, expeditioners, pilots, military personnel and ship operators. We also reviewed the specifications and sleep quality data arising from every NASA spaceflight mission, beginning with Gemini. Finally, we conducted structured interviews with individuals experienced in sleeping in non-traditional spaces including oilrig workers, Navy personnel, astronauts, and expeditioners. We also interviewed the engineers responsible for the design of the sleeping quarters presently deployed on the International Space Station. We found that the optimal sleep environment is cool, dark, quiet, and is perceived as safe and private. There are wide individual differences in the preferred sleep environment; therefore modifiable sleeping compartments are necessary to ensure all crewmembers are able to select personalized configurations for optimal sleep. It is possible to utilize lessons learned from prior spaceflight missions and from other industries in order to guide the design of an optimal sleep space suitable for long-duration spaceflight.

spaceflight↗

Sleep Environment Recommendations for Future Spaceflight Vehicles

Evidence from spaceflight and ground-based missions demonstrate that sleep loss and circadian desynchronization occur among astronauts, leading to reduced performance and, increased risk of injuries and accidents. We conducted a comprehensive literature review to determine the optimal sleep environment for lighting, temperature, airflow, humidity, comfort, intermittent and erratic sounds, privacy and security in the sleep environment. We reviewed the design and use of sleep environments in a wide range of cohorts including among aquanauts, expeditioners, pilots, military personnel, and ship operators. We also reviewed the specifications and sleep quality data arising from every NASA spaceflight mission, beginning with Gemini. We found that the optimal sleep environment is cool, dark, quiet, and is perceived as safe and private. There are wide individual differences in the preferred sleep environment; therefore modifiable sleeping compartments are necessary to ensure all crewmembers are able to select personalized configurations for optimal sleep.

Caddick, Zachary A.↗

Secure Intra-Body Wireless Communications (SIWiC) System Project

SIWiC System is a project to investigate, design and implement future wireless networks of implantable sensors in the body. This futuristic project is designed to make use of the emerging and yet-to-emerge technologies, including ultra-wide band (UWB) for wireless communications, smart implantable sensors, ultra low power networking protocols, security and privacy for bandwidth and power deficient devices and quantum computing. Progress in each of these fronts is hindered by the needs of breakthrough. But, as we will see in this paper, these major challenges are being met or will be met in near future. SIWiC system is a network of in-situ wireless devices that are implanted to coordinate sensed data inside the body, such as symptoms monitoring collected internally, or biometric data collected of an outside object from within the intra-body network. One node has the capability of communicating outside the body to send data or alarm to a relevant authority, e.g., a remote physician.

Ahmad, Aftab↗

Toward Synthesis, Analysis, and Certification of Security Protocols

Implemented security protocols are basically pieces of software which are used to (a) authenticate the other communication partners, (b) establish a secure communication channel between them (using insecure communication media), and (c) transfer data between the communication partners in such a way that these data only available to the desired receiver, but not to anyone else. Such an implementation usually consists of the following components: the protocol-engine, which controls in which sequence the messages of the protocol are sent over the network, and which controls the assembly/disassembly and processing (e.g., decryption) of the data. the cryptographic routines to actually encrypt or decrypt the data (using given keys), and t,he interface to the operating system and to the application. For a correct working of such a security protocol, all of these components must work flawlessly. Many formal-methods based techniques for the analysis of a security protocols have been developed. They range from using specific logics (e.g.: BAN-logic [4], or higher order logics [12] to model checking [2] approaches. In each approach, the analysis tries to prove that no (or at least not a modeled intruder) can get access to secret data. Otherwise, a scenario illustrating the &tack may be produced. Despite the seeming simplicity of security protocols ("only" a few messages are sent between the protocol partners in order to ensure a secure communication), many flaws have been detected. Unfortunately, even a perfect protocol engine does not guarantee flawless working of a security protocol, as incidents show. Many break-ins and security vulnerabilities are caused by exploiting errors in the implementation of the protocol engine or the underlying operating system. Attacks using buffer-overflows are a very common class of such attacks. Errors in the implementation of exception or error handling can open up additional vulnerabilities. For example, on a website with a log-in screen: multiple tries with invalid passwords caused the expected error message (too many retries). but let the user nevertheless pass. Finally, security can be compromised by silly implementation bugs or design decisions. In a commercial VPN software, all calls to the encryption routines were incidentally replaced by stubs, probably during factory testing. The product worked nicely. and the error (an open VPN) would have gone undetected, if a team member had not inspected the low-level traffic out of curiosity. Also, the use secret proprietary encryption routines can backfire, because such algorithms often exhibit weaknesses which can be exploited easily (see e.g., DVD encoding). Summarizing, there is large number of possibilities to make errors which can compromise the security of a protocol. In today s world with short time-to-market and the use of security protocols in open and hostile networks for safety-critical applications (e.g., power or air-traffic control), such slips could lead to catastrophic situations. Thus, formal methods and automatic reasoning techniques should not be used just for the formal proof of absence of an attack, but they ought to be used to provide an end-to-end tool-supported framework for security software. With such an approach all required artifacts (code, documentation, test cases) , formal analyses, and reliable certification will be generated automatically, given a single, high level specification. By a combination of program synthesis, formal protocol analysis, certification; and proof-carrying code, this goal is within practical reach, since all the important technologies for such an approach actually exist and only need to be assembled in the right way.

Schumann, Johann↗