Closing in on the Security and Operational Issues of IP CCTV

16
Closed IPTV is Patent Pending Closing in on the Security and Operational Issues of IP CCTV Mike Newton CEO and CTO Dedicated Micros and AD Group Thursday 21 October 1.10 PM - 1.40 PM

Transcript of Closing in on the Security and Operational Issues of IP CCTV

Closed IPTV is Patent Pending

Closing in on the Security and

Operational Issues of IP CCTV

Mike NewtonCEO and CTO

Dedicated Micros and AD GroupThursday 21 October 1.10 PM - 1.40 PM

Closed IPTV is Patent Pending

AD Group OperationsSales Regions

Key

AD Group and Dedicated Micros - Global Operations

UK Headquarters

European Operation

Closed IPTV is Patent Pending

Dedicated Micros

Worldwide reputation, No1 DVR manufacturer

Video specialists who created the first commercially viable video multiplexer 1984

First fully digital transmission and storage solutions – DVST – in 1991

Evolved into the worlds biggest selling desktop digital recorder line

First IP Video Servers for Aerospace and Remote Surveillance markets in 1997

Closed IPTV is Patent Pending

WWW vs. Deterministic

Closed IPTV is Patent Pending

IP Video over a general network No Deterministic connection

Closed IPTV is Patent Pending

Not so “impossible”- Defcon 2009 -

Security Violation

Closed IPTV is Patent Pending

Deterministic

Deterministic camera connectionYou know that camera one is

definitely camera one!

Enhanced Layer 3 CCTV Switch

Closed IPTV is Patent Pending

User undertakes Secure

transaction

Security on the WWW for Financial Transactions vs. CCTV

Certificate Sent by Bank

Certificate Verified by

Thawte

Closed IPTV is Patent Pending

Is there a Certificate Verified by Thawte?

Insecure location,Certificate could be

compromised

Are you the right camera? - Maybe?

Closed IPTV is Patent Pending

Control Room Operator

undertakes Insecure

transaction

Is there a Certificate Verified by Thawte?

Insecure location,Certificate could be

compromised

Are you the right camera? - Maybe?

Closed IPTV is Patent Pending

Are you the right camera? - Maybe?

Copied Certificate Verified by Thawte?

Insecure location,Certificate is compromised

Are you my camera?- yes of course...

Control Room Operator

undertakes Insecure

transaction Security Violation

Closed IPTV is Patent Pending

192.168.1.100:D9:42:A4:B7:FA

Firewall allows images from the camera to be

viewedIP Address and MAC match

ACL on Router

Closed IPTV as a Trusted Endpoint solution

Closed IPTV is Patent Pending

Other device spoofs the ID of the original camera

Control room is unaware because the IP Address

and MAC are the same as the original camera

Security Violation

192.168.1.100:D9:42:A4:B7:FA

Closed IPTV as a Trusted Endpoint solution

Closed IPTV is Patent Pending

Unique digital fingerprint applied which cannot be

copied by a spoofing device

Camera is a Trusted Endpoint

192.168.1.100:D9:42:A4:B7:FA

Secret key added at point of lock down

Closed IPTV as a Trusted Endpoint solution

Closed IPTV is Patent Pending

Summary of Closed IPTV

Deterministic configuration and operation

Single click, secure firewall ACL policies

Segregation of exposed endpoints and Corporate network

Optional simultaneous zeroconf network, independent of Corporate DHCP services

Trusted endpoint, image and data integrity from insecure endpoints

A complete range of cameras, hybrid DVRs and NVRs

Closed IPTV is Patent Pending

Sophisticated and Dependable network

security can be achieved with a single click

www.Closed-IPTV.com