Engineering PapersSearch

SEARCH · Engineering Papers

Results for “Security and privacy”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 19 records

Zero-Trust Architecture for Autonomous Edge Computing

We are at the apex of an aviation revolution where autonomy will play a central role in enabling complex, multi-agent systems to communicate, interact, and collaborate on a myriad of applications spanning autonomous swarms to wild-fire management. Autonomy is not an absolute but rather a spectrum ranging from a system requiring significant human intervention to one requiring little to none [1]. For example, the extreme, in the case of an autonomous aircraft, is one that operates independently in the airspace interacting with all other elements (air traffic controllers, other pilots) as if it were a human pilot. Critical to this vision is an architecture that enables autonomous agents to interact with minimal latency. Edge computing is an emerging architecture where compute and storage is pushed to the ‘edge’ of the network in order to minimize the round-trip time from agent to resource thereby mitigating the latency associated with cloud-only based approaches. Additionally, services can generate massive amounts of data (e.g., video feeds), which may require analysis in near real-time. Moving this data to the cloud for further processing may not be feasible due to latency, bandwidth, and cost. Privacy, security, and reliability can also be improved by edge computing architectures. However, this geo-distributed and dynamic* architecture complicates the establishment of unambiguous network security boundaries and can lead to vulnerabilities including man in the middle attacks, replay attacks, physical security breaches of edge nodes, signal interception, etc. This motivates the need for zero-trust architectures [2–4] which de-emphasize the notion of static network perimeters and, as the name implies, do not instill any innate trust in any particular agent. It is required that all agents must be authorized and approved in every transaction. In this paper, we present a zero-trust architecture suitable for edge-computing applications that demand significant low-latency, security, privacy, and reliability.

zero trust

Giving the Public a Perspective into Unmanned Aircraft Systems' Operations

NASA is currently engaged in research to safely enable large-scale commercial applications of small Unmanned Aerial Systems (UAS) in low altitude airspace. This research effort, referred to as UAS Traffic Management (UTM), encompasses the concepts and technologies needed to accommodate the projected demand of UAS operating in the national airspace. One aspect related to the successful implementation of UTM in the future is public acceptance. Transparency will heavily influence this acceptance, and a public portal will provide much of that transparency through ease of access to information about the operations - mainly who, why, and where such operations are taking place. Related concerns to the public are individual privacy, security, and accountability of the operators. Providing the aforementioned information about operations can mitigate these concerns, but a balance will have to be achieved between the need for transparency from the public and the privacy of the operators. The proper balance and the needs of the various UTM stakeholders with regard to information access will be explored through the development and testing of a public portal as part of NASA's Technical Capability 3 (TCL 3) demonstration. Additionally, various approaches to the display of information and user interfaces will be surveyed through the development of a public portal by multiple UTM industry partners across different test sites.

UAS

Cloud Computing for Mission Design and Operations

The space mission design and operations community already recognizes the value of cloud computing and virtualization. However, natural and valid concerns, like security, privacy, up-time, and vendor lock-in, have prevented a more widespread and expedited adoption into official workflows. In the interest of alleviating these concerns, we propose a series of guidelines for internally deploying a resource-oriented hub of data and algorithms. These guidelines provide a roadmap for implementing an architecture inspired in the cloud computing model: associative, elastic, semantical, interconnected, and adaptive. The architecture can be summarized as exposing data and algorithms as resource-oriented Web services, coordinated via messaging, and running on virtual machines; it is simple, and based on widely adopted standards, protocols, and tools. The architecture may help reduce common sources of complexity intrinsic to data-driven, collaborative interactions and, most importantly, it may provide the means for teams and agencies to evaluate the cloud computing model in their specific context, with minimal infrastructure changes, and before committing to a specific cloud services provider.

cloud computing

National Campaign Partner Demonstration Team Annual Review April 2023

- NASA developed the Advanced Air Mobility Project (AAM) and the National Campaign (NC) series to identify and address challenges ahead for advanced air mobility concepts. - NC seeks to challenge industry as follows; - Execute progressively more difficult ecosystem-wide system-level safety and integration scenarios - Demonstrate practical and scalable system concepts - Build a knowledge base for development of requirements and standards - There are currently three focus areas within the NASA AAM NC Portfolio - Vehicle Development and Operations: test and inform capabilities that are critical enablers for AAM such as electric aircraft propulsion and increasing levels of automation - Airspace Design and Operations: develop and validate an operational concept to integrate and manage AAM traffic safely and efficiently - Community Integration: understand and address critical barriers to community integration, such as public acceptance (noise, security, privacy, etc.), supporting infrastructure, and local regulation

Eric N Becker

Air Traffic Management Blockchain Infrastructure for Security, Authentication, and Privacy

Current radar-based air traffic service providers may preserve privacy for military and corporate operations by procedurally preventing public release of selected flight plans, position, and state data. The FAA mandate for national adoption of Automatic Dependent Surveillance Broadcast (ADS-B) in 2020 does not include provisions for maintaining these same aircraft-privacy options, nor does it address the potential for spoofing, denial of service, and other well-documented risk factors. This paper presents an engineering prototype that embodies a design and method that may be applied to mitigate these ADS-B security issues. The design innovation is the use of an open source permissioned blockchain framework to enable aircraft privacy and anonymity while providing a secure and efficient method for communication with Air Traffic Services, Operations Support, or other authorized entities. This framework features certificate authority, smart contract support, and higher-bandwidth communication channels for private information that may be used for secure communication between any specific aircraft and any particular authorized member, sharing data in accordance with the terms specified in the form of smart contracts. The prototype demonstrates how this method can be economically and rapidly deployed in a scalable modular environment.

air traffic privacy & authentication

Air Traffic Management Blockchain Infrastructure for Security, Authentication, and Privacy

Current radar-based air traffic service providers may preserve privacy for military and corporate operations by procedurally preventing public release of selected flight plans, position, and state data. The FAA mandate for national adoption of Automatic Dependent Surveillance Broadcast (ADS-B) in 2020 does not include provisions for maintaining these same aircraft-privacy options, nor does it address the potential for spoofing, denial of service, and other well-documented risk factors. This paper presents an engineering prototype that embodies a design and method that may be applied to mitigate these ADS-B security issues. The design innovation is the use of an open source permissioned blockchain framework to enable aircraft privacy and anonymity while providing a secure and efficient method for communication with Air Traffic Services, Operations Support, or other authorized entities. This framework features certificate authority, smart contract support, and higher-bandwidth communication channels for private information that may be used for secure communication between any specific aircraft and any particular authorized member, sharing data in accordance with the terms specified in the form of smart contracts. The prototype demonstrates how this method can be economically and rapidly deployed in a scalable modular environment.

ADS-B cybersecurity

Managing Cyber Risk: from the Ground to the Air and Beyond Out There

Experts from the aerospace sector with the focus of presenting current state-of-the-art in aviation cyber security and discussing major challenges, requirements, and developments. A variety of topics will be addressed by the panel, including: Aviation cyber security regulations, standards, and best practices Aviation information sharing and analysis challenges Aircraft systems and avionics cyber security challenges Airline and airport stakeholder cyber perspectives CNSATM cyber security challenges UAS cyber security and privacy requirements Military aviation cyber security issues in the NAS

Davis, Jerry L.

Sleep Environment Recommendations for Future Spaceflight Vehicles

Current evidence demonstrates that astronauts experience sleep loss and circadian desynchronization during spaceflight. Ground-based evidence demonstrates that these conditions lead to reduced performance, increased risk of injuries and accidents, and short and long-term health consequences. Many of the factors contributing to these conditions relate to the habitability of the sleep environment. Noise, inadequate temperature and airflow, and inappropriate lighting and light pollution have each been associated with sleep loss and circadian misalignment during spaceflight operations and on Earth. As NASA prepares to send astronauts on long-duration, deep space missions, it is critical that the habitability of the sleep environment provide adequate mitigations for potential sleep disruptors. We conducted a comprehensive literature review summarizing optimal sleep hygiene parameters for lighting, temperature, airflow, humidity, comfort, intermittent and erratic sounds, and privacy and security in the sleep environment. We reviewed the design and use of sleep environments in a wide range of cohorts including among aquanauts, expeditioners, pilots, military personnel and ship operators. We also reviewed the specifications and sleep quality data arising from every NASA spaceflight mission, beginning with Gemini. Finally, we conducted structured interviews with individuals experienced sleeping in non-traditional spaces including oil rig workers, Navy personnel, astronauts, and expeditioners. We also interviewed the engineers responsible for the design of the sleeping quarters presently deployed on the International Space Station. We found that the optimal sleep environment is cool, dark, quiet, and is perceived as safe and private. There are wide individual differences in the preferred sleep environment; therefore modifiable sleeping compartments are necessary to ensure all crewmembers are able to select personalized configurations for optimal sleep. A sub-optimal sleep environment is tolerable for only a limited time, therefore individual sleeping quarters should be designed for long-duration missions. In a confined space, the sleep environment serves a dual purpose as a place to sleep, but also as a place for storing personal items and as a place for privacy during non-sleep times. This need for privacy during sleep and wake appears to be critically important to the psychological well-being of crewmembers on long-duration missions.

Flynn-Evans, Erin E.

Telescience in the Space Station era

Telescience refers to the development of systems where participants involved in research in space can access their fellow scientists and the appropriate NASA services before flight, during flight, and after flight, preferably from their home institutions and through the same equipment. Telescience requires integration of available technologies to develop computer environments that maintain interoperability across different disciplines and different portions of the lifetimes of space experiments, called teledesign, teleoperations, and teleanalysis. Participants in the NASA Telescience Testbed Program are using a rigid prototyping approach to evaluate the necessary technologies and select the options and tradeoffs that best suit their accustomed modalities. The concept of transaction management is described, where the emphasis is placed on the effects of commands, whether event-generated onboard the spacecraft or sent up from the ground. Interoperability, security, and privacy issues are also discussed, and the Telescience Testbed Pilot Program is described.

Schmerling, E. R.

The Database Query Support Processor (QSP)

The number and diversity of databases available to users continues to increase dramatically. Currently, the trend is towards decentralized, client server architectures that (on the surface) are less expensive to acquire, operate, and maintain than information architectures based on centralized, monolithic mainframes. The database query support processor (QSP) effort evaluates the performance of a network level, heterogeneous database access capability. Air Force Material Command's Rome Laboratory has developed an approach, based on ANSI standard X3.138 - 1988, 'The Information Resource Dictionary System (IRDS)' to seamless access to heterogeneous databases based on extensions to data dictionary technology. To successfully query a decentralized information system, users must know what data are available from which source, or have the knowledge and system privileges necessary to find out this information. Privacy and security considerations prohibit free and open access to every information system in every network. Even in completely open systems, time required to locate relevant data (in systems of any appreciable size) would be better spent analyzing the data, assuming the original question was not forgotten. Extensions to data dictionary technology have the potential to more fully automate the search and retrieval for relevant data in a decentralized environment. Substantial amounts of time and money could be saved by not having to teach users what data resides in which systems and how to access each of those systems. Information describing data and how to get it could be removed from the application and placed in a dedicated repository where it belongs. The result simplified applications that are less brittle and less expensive to build and maintain. Software technology providing the required functionality is off the shelf. The key difficulty is in defining the metadata required to support the process. The database query support processor effort will provide quantitative data on the amount of effort required to implement an extended data dictionary at the network level, add new systems, adapt to changing user needs, and provide sound estimates on operations and maintenance costs and savings.

Source record

Secure Intra-Body Wireless Communications (SIWiC) System Project

SIWiC System is a project to investigate, design and implement future wireless networks of implantable sensors in the body. This futuristic project is designed to make use of the emerging and yet-to-emerge technologies, including ultra-wide band (UWB) for wireless communications, smart implantable sensors, ultra low power networking protocols, security and privacy for bandwidth and power deficient devices and quantum computing. Progress in each of these fronts is hindered by the needs of breakthrough. But, as we will see in this paper, these major challenges are being met or will be met in near future. SIWiC system is a network of in-situ wireless devices that are implanted to coordinate sensed data inside the body, such as symptoms monitoring collected internally, or biometric data collected of an outside object from within the intra-body network. One node has the capability of communicating outside the body to send data or alarm to a relevant authority, e.g., a remote physician.

Ahmad, Aftab

Sleep Environment Recommendations for Future Spaceflight Vehicles

We conducted a comprehensive literature review summarizing optimal sleep hygiene parameters for lighting, temperature, airflow, humidity, comfort, intermittent and erratic sounds, and privacy and security in the sleep environment. We reviewed the design and use of sleep environments in a wide range of cohorts including among aquanauts, expeditioners, pilots, military personnel and ship operators. We also reviewed the specifications and sleep quality data arising from every NASA spaceflight mission, beginning with Gemini. Finally, we conducted structured interviews with individuals experienced in sleeping in non-traditional spaces including oilrig workers, Navy personnel, astronauts, and expeditioners. We also interviewed the engineers responsible for the design of the sleeping quarters presently deployed on the International Space Station. We found that the optimal sleep environment is cool, dark, quiet, and is perceived as safe and private. There are wide individual differences in the preferred sleep environment; therefore modifiable sleeping compartments are necessary to ensure all crewmembers are able to select personalized configurations for optimal sleep. It is possible to utilize lessons learned from prior spaceflight missions and from other industries in order to guide the design of an optimal sleep space suitable for long-duration spaceflight.

spaceflight

Sleep Environment Recommendations for Future Spaceflight Vehicles

Evidence from spaceflight and ground-based missions demonstrate that sleep loss and circadian desynchronization occur among astronauts, leading to reduced performance and, increased risk of injuries and accidents. We conducted a comprehensive literature review to determine the optimal sleep environment for lighting, temperature, airflow, humidity, comfort, intermittent and erratic sounds, privacy and security in the sleep environment. We reviewed the design and use of sleep environments in a wide range of cohorts including among aquanauts, expeditioners, pilots, military personnel, and ship operators. We also reviewed the specifications and sleep quality data arising from every NASA spaceflight mission, beginning with Gemini. We found that the optimal sleep environment is cool, dark, quiet, and is perceived as safe and private. There are wide individual differences in the preferred sleep environment; therefore modifiable sleeping compartments are necessary to ensure all crewmembers are able to select personalized configurations for optimal sleep.

Caddick, Zachary A.

NASA Earth eXchange (NEX) App Store

NASA Earth Exchange (NEX), and her public cloud version OpenNEX, have become platforms supporting scientific collaboration, knowledge sharing and research for the entire Earth science community. To date, a number of custom tools and capabilities have been integrated into the platforms. However, such integration has to undergo a case-by-case manual process thus lacks scalability. This timely project builds an App Store onto OpenNEX as a building block. Climate data analytics tools/programs can be easily uploaded, shared, organized, searched, and recommended like photos and videos on the YouTube. The foundation of our App Store is a provenance server, which not only records metadata but also execution history of climate data analytics apps including the input data and parameters, output data and products, who runs the app for which purpose, and how apps may be chained into workflows. Researchers can thus understand, reproduce, and repurpose existing apps and workflows. Machine learning approaches are applied to mine provenance to provide recommend-as-you-go services for Earth scientists, such as to recommend suitable apps and workflow snippets. A browser-based workflow tool is also provided for researchers to explore the provenance server and design value-added workflows. Scalability, sustainability, extensibility, usability, adaptability, security and privacy are considered in the App Store.

eXchange

CyberGAN: Generating High-fidelity Cybersecurity Data With Generative Adversarial Networks

Machine learning for cyber defense offers the promise of detecting adversarial activity against the ground data systems managing critical space assets. A fundamental challenge facing machine learning research in cybersecurity is the lack of high-fidelity, shareable datasets for robust evaluation and testing of machine learning-based solutions. High-fidelity, real-world datasets are necessary for reliable benchmarking of nominal system behavior and malicious activity. Unfortunately, such realistic datasets of both nominal and adversarial activity are rarely shared publicly by data owners due to security and privacy concerns. Besides, the available adversarial data is sparse, which makes training models on malicious activity much harder. This situation has impeded and continues to impede the research and successful adoption of machine learning methods for cyber defense. Researchers have dealt with this problem by generating data within a low-fidelity lab environment, using classified and thus unshareable datasets, or downloading low-fidelity public datasets made available by others. We propose an innovative solution to the problem by employing machine learning methods to generate high-fidelity data. Specifically, we propose the use of Generative Adversarial Networks (GANs) to generate high-fidelity data for cybersecurity purposes. GANs have found successful image processing and natural language applications, but have not yet been investigated for cyber data generation. Our proposed approach first involves training the `discriminator' network of the GAN with a sample of real-world data consisting of malicious and nominal samples. We then use the `generator' network to generate new high-fidelity data samples consisting of an appropriate mix of malicious and nominal activity. We demonstrate applications of our architecture by generating high-fidelity cybersecurity data containing both malicious and nominal samples. We thoroughly evaluate the fidelity of our generated data using heuristics and evaluate its usefulness for machine learning applications using three different datasets. Overall, our approach results in high-fidelity, shareable datasets.

Zhang, Yuening

The Field Guide to NASA’s Life Sciences Data Repositories

For over 30 years, NASA has invested in life sciences research both in space and on the ground. Data accessibility is an important tool for researchers, and NASA has committed to preserving this vital resource for ongoing use. The Life Sciences Data Archive’s multi-center collaboration between NASA’s Johnson Space Center, Ames Research Center, and Kennedy Space Center is geared toward preserving unique and high-value data from a wide variety of disciplines, data collection methods, and species within NASA’s Life Sciences Portal (NLSP). The data generated by the Human Research Program (HRP) require a systematic approach to data preservation that accounts for diverse data sources, formats, physical storage requirements, and security and privacy protections. This poster presentation will provide a guide to the repositories where the various types of human, non-human animal, plant, and microbial data NASA generates are archived and tips for navigating these data collections. Topics will include where different types of data, metadata, and biospecimens are archived or preserved, how the federated repositories work together as a data preservation ecosystem, and how researchers can access each repository’s collections.

Robert S Beaton

A Field Guide to NASA’s Life Sciences Data Repositories

For over 30 years, NASA has invested in life sciences research both in space and on the ground. Data accessibility is an important tool for researchers, and NASA has committed to preserving this vital resource for ongoing use. The Life Sciences Data Archive’s multi-center collaboration between NASA’s Johnson Space Center, Ames Research Center, and Kennedy Space Center is geared toward preserving unique and high-value data from a wide variety of disciplines, data collection methods, and species within NASA’s Life Sciences Portal (NLSP). The data generated by the Human Research Program (HRP) require a systematic approach to data preservation that accounts for diverse data sources, formats, physical storage requirements, and security and privacy protections. This poster presentation will provide a guide to the repositories where the various types of human, non-human animal, plant, and microbial data NASA generates are archived and tips for navigating these data collections. Topics will include where different types of data, metadata, and biospecimens are archived or preserved, how the federated repositories work together as a data preservation ecosystem, and how researchers can access each repository’s collections.

LSDA