Cyber Secure Experimental Physics and Industrial Control System

WEBG005
24 Sept 2025, 12:00
15m
Grand Ballroom (Palmer House Hilton Chicago)

Grand Ballroom

Palmer House Hilton Chicago

17 East Monroe Street Chicago, IL 60603, United States of America
Contributed Oral Presentation MC06: Control System Infrastructure and Cyber Security WEBG MC06 Infrastructure and Cyber Security

Speaker

George McIntyre (SLAC National Accelerator Laboratory)

Description

Secure PVAccess (SPVA) brings production-grade cybersecurity to the
Experimental Physics and Industrial Control System (EPICS) framework
by encapsulating the PVAccess protocol within Transport Layer Security
(TLS). It integrates X.509 certificate-based authentication with
common laboratory-wide services such as Kerberos and LDAP, and delivers a full certificate authority, management, and distribution solution.
Leveraging this robust authentication layer, Secure PVAccess extends
the existing EPICS Security model to enforce true Process Variable
(PV) access control based on verified peer identities, attributes, and
connection modes. We describe the overall architecture, key design decisions, software components, current status, envisioned future capabilities, and the collaborative effort driving this initiative.

Funding Agency

U.S. Dept. of Energy

Author

George McIntyre (SLAC National Accelerator Laboratory)

Co-authors

Mr Ernest Williams (SLAC National Accelerator Laboratory) Greg White (SLAC National Accelerator Laboratory) Dr Ivan Finch (Science and Technology Facilities Council) Joshua Einstein-Curtis (RadiaSoft (United States)) Kay-Uwe Kasemir (Oak Ridge National Laboratory) Leo Dalesio (EPIC Consulting) Michael Davidsaver (Osprey Distributed Control Systems LLC)

Presentation materials

There are no materials yet.