Authorization and Identity Management for Smart Factorys

Supervisor(s): Sebastian Peters, Nikolai Puch
Status: open
Topic: Others
Type of Thesis: Masterthesis
Thesis topic in co-operation with the Fraunhofer Institute for Applied and Integrated Security AISEC, Garching


Motivation and Task
Identity management deals with the administration of digital entities and their access authorisations
to systems and applications. While there are common solutions availabale for IT, there is a lack of
them for OT/IACS/IIoT.
The task of this thesis is first to summarize, which solutions for identity management exist in OT.
Additionally it should be evaluated, if sufficiently mature concepts from IT could be adopted. From
this, an identity management concept for a smart factory (multi-device, multi-user, multi-process) is
to be derived and prototypically implemented. Important aspects include lifecycle management and
metadata, such as current machine commissioning and training status of workers.
The verification of the concept and implementation can then be performed on our industrial pro-
duction line. Optionally, the concept can be co-integrateed with existing research on multi-factor-
authentication at the production line.
The following list of prerequisites is neither complete nor binding, but shall give you an idea, what the topic is about:
• Knowledge of IT security
• Basic programming skills
• Ideally experience with Identity Management in IT (e.g., AD/LDAP)
• Ability to work self-directed and systematically
Please attach a current grade sheet and a short CV to your application so that we can assess your
qualification for the topic of your choice.
Nikolai Puch, Sebastian Peters
Phone: +49 89 322-9986-142 , Phone: +49 89 322-9986-1037
E-mail: nikolai.puch@aisec.fraunhofer.de,  E-mail: sebastian.peters@aisec.fraunhofer.de
Fraunhofer Research Institute for Applied and Integrated Security AISEC
Department Product Protection and Industrial Security
Lichtenbergstraße 11, 85748 Garching near Munich, Germany