Regarding building automation systems, which are what everyone often calls quantum cryptography after BAS application, in fact, many people don’t know what it is and what it can be used for. Today I will try my best to talk to you in plain language! Post-quantum cryptography, simply put, is an encryption method specifically used to prevent future quantum computer attacks. Because once the quantum computer really matures, it is said that the encryption methods we commonly use now, such as RSA and ECC, seem to be useless and will be cracked all at once. Then, will the important control information, user data, etc. in the BAS system be stolen or tampered with? Therefore, it is very important to put the "bulletproof vest" of post-quantum cryptography on BAS in advance!
Provide global procurement services for weak current intelligent products!
1. Why does BAS need this post-quantum cryptography technology? : The BAS system is not simple, it is connected to the building's air conditioning, lighting, parking security and other subsystems. The operation of these systems day after day will generate massive and very critical data. If these data are hijacked and cracked by quantum computers during transmission, the consequences are really unthinkable. The building may not be able to operate normally, and it may even cause security threats.
2. What specific places can post-quantum cryptography be used in BAS? For example , when transmitting data between the sensor and the controller, you can add a password to the data so that the bad guys can't understand even if they intercept it. Also, when the devices recognize each other's identities, this technology can ensure that the devices connected to it are all their own people, not "spy equipment" in disguise; and when the system software is upgraded, it can ensure that the upgrade package comes from the source and has not been passive!
How to choose the right one for BAS with so many types of post-quantum cryptographic algorithms? This requires careful consideration, and you can’t just grab one of them! It is necessary to see if this algorithm has been certified by authoritative institutions, such as the post-quantum cryptographic standardization plan developed by the National Institute of Standards and Technology (NIST). The algorithms selected in it will be more reliable; it also takes into account the computing power of the devices in the BAS. Some algorithms may be particularly complicated, and those older sensors or controllers may not be able to withstand it and do not react for a long time after running, so it will be troublesome!
1. What compatibility issues should be paid attention to when migrating : If BAS has been used for many years and suddenly changes to a brand new post-quantum cryptographic system, it is likely to be incompatible with the original old equipment and old protocols. You have to go step by step and slowly transition, and try it on an unimportant subsystem first!
2. Also pay attention to performance : it is very important whether the encryption and decryption speed is fast or not. If the speed is too slow and the data is stuck on the road, the BAS system will be slow to respond, and the people in the building will definitely have opinions, and the comfort level will be greatly reduced!
How to determine whether the existing BAS needs to deploy the post-quantum password immediately? If the BAS system involves very sensitive information, such as BAS in some important government buildings or research institutions, then I think it is definitely not bad to prepare early; then look at how long the equipment in the system can be replaced, and if the whole set is replaced in two years, it will be necessary to directly support the post-quantum cipher function when purchasing new equipment, which is easier to save trouble!
The benefits of post-quantum cryptography to BAS data security are real. Although you may feel that quantum computers are still far from us now, it is better to be prepared in advance than to be busy at that time! In this process, if appropriate encryption-related weak electronic equipment is needed, we will provide global procurement services for weak current intelligent products! It can help a lot, don't have to run around and look for it!
Leave a Reply