Tag: PNT data

  • NIST cybersecurity profile designed  to safeguard critical infrastructure

    NIST cybersecurity profile designed to safeguard critical infrastructure

    NIST's new cybersecurity profile is designed to help mitigate risks to systems that use PNT data, including finance, transportation, energy and other critical infrastructure. While its scope does not include ground- or space-based PNT source signal generators and providers (such as satellites), the profile still covers a wide swath of technologies. (Image: B. Hayes/NIST)
    NIST’s new cybersecurity profile is designed to help mitigate risks to systems that use PNT data, including finance, transportation, energy and other critical infrastructure. While its scope does not include ground- or space-based PNT source signal generators and providers (such as satellites), the profile still covers a wide swath of technologies. (Image: B. Hayes/NIST)

    The National Institute of Standards and Technology (NIST) has drafted guidelines for applying its Cybersecurity Framework to critical technologies such as GPS that use positioning, navigation and timing (PNT) data. Part of a larger NIST effort to safeguard systems that rely on PNT data, these cybersecurity guidelines accompany NIST efforts to provide and test a resilient timekeeping signal that is independent of GPS.

    Formally titled the “Cybersecurity Profile for the Responsible Use of Positioning, Navigation and Timing (PNT) Services (NISTIR 8323),” the new guidelines are designed to help mitigate cybersecurity risks that endanger systems important to national and economic security, including those that underpin modern finance, transportation, energy and additional economic sectors.

    The draft profile is part of NIST’s response to the Feb. 12, 2020, Executive Order on PNT. In early 2020, NIST sought public input regarding the general use of PNT data. The PNT profile will join the growing list of profiles created to help apply the NIST Cybersecurity Framework to particular economic sectors, such as manufacturing, the power grid and the maritime industry. The scope of the profile includes any system, network or other asset that uses PNT services, including systems that receive and rebroadcast PNT data.

    While its scope does not include ground- or space-based source PNT signal generators and providers (such as satellites), the profile still covers a wide swath of technologies. Partly for this reason, NIST’s Jim McCarthy said that it is intended to be a foundational set of guidelines that PNT users can customize.

    “The profile is meant to help a broad set of users address their cybersecurity needs,” said McCarthy, one of the draft’s authors. “Rather than focus on a single economic sector, we designed it to apply to all users of PNT. Agencies and companies can tailor it to their needs based on their particular cybersecurity risk and other sector-specific factors.”

    As directed by the Executive Order, the profile can help organizations accomplish four tasks:

    • identify systems that use PNT data, and/or that propagate this data based on a source signal
    • identify PNT data sources, such as a GPS signal
    • detect disturbance to and manipulation of systems that use PNT services
    • manage the risks that come with responsible use of these PNT services

    “Our premise is that there are organizations that may not realize they are using PNT data, or know how they are using it,” McCarthy said. “Part of our goal is to help them make these connections so they can protect their operations more effectively.”

    The Executive Order also delegates to the Department of Commerce the critical task of providing a source of Coordinated Universal Time (UTC) that is independent of GPS. To this end, NIST also recently conducted initial tests of a special calibration service for companies, utilities or other organizations that wish to receive NIST’s version of the global time standard, UTC(NIST), through commercial fiber-optic cable.

    The service aims to provide a time reference directly traceable to UTC(NIST) with an accuracy of 1 microsecond — good enough for telecom networks, the power grid and financial markets, and thereby boosting the resilience of accurate time distribution and the infrastructure sectors and subsectors that use timing services.

    The initial link is a collaboration between NIST and OPNT, a commercial time-service provider based in Amsterdam, the Netherlands. While the work was led by researchers at NIST’s Boulder, Colorado, campus, the dedicated optical fiber connects the reference time scale at NIST headquarters in Gaithersburg, Maryland, to a facility in McLean, Virginia, that will ultimately serve as the hub for East Coast distribution of timing data.

    OPNT has extended the initial fiber link to Atlanta, Georgia, about 800 kilometers from McLean. Preliminary data suggest that this link will be able to support the requirements of the Executive Order.

  • Orolia to host industry discussion on PNT Executive Order

    Orolia to host industry discussion on PNT Executive Order

    GPS jamming and spoofing threats are national priorities

    Logo: OroliaOrolia will host an industry discussion online at 2 p.m. ET on May 7 on the Positioning, Navigation and Timing (PNT) Executive Order. Register here for the informal PNT Coffee Talk.

    The PNT Coffee Talk event will be held online and is open to those interested in learning more and discussing this national priority from the industry and government perspectives.

    The Executive Order, issued Feb. 12, is a federal initiative to protect critical infrastructure from GPS/GNSS jamming and spoofing threats, and other disruptions to critical PNT services. These threats can deny access to, or compromise, essential PNT data that critical infrastructure needs to operate.

    This initiative, titled “Executive Order on Strengthening National Resilience through Responsible Use of Positioning, Navigation and Timing Services,” includes the following critical infrastructure: defense, homeland security, transportation, power grids, communications/mobile, precision agriculture, weather forecasting and emergency response.

    Key actions include assessing jamming, spoofing and other PNT disruption risks across these critical infrastructure programs, developing customized PNT profiles to address risks, and deploying Resilient PNT technology to increase resilience.

    Survey seeks feedback. Orolia asks those interested to share questions and comments and let the company know what you’d like to discuss during this PNT Coffee Talk event through an anonymous survey.

     

  • Staying ahead of NAVWAR and resilient PNT in 2020

    Staying ahead of NAVWAR and resilient PNT in 2020

    Image: Orolia
    Image: Orolia

    Year-End Message from Orolia

    In 2019, military forces witnessed the global threat of GPS/GNSS interference grow, with more sophisticated threats and increasing military demand for assured operations in Navigation Warfare (NAVWAR) and GPS-denied environments.

    Enemy forces are deploying more advanced jamming and spoofing technologies worldwide, jeopardizing the security and reliability of positioning, navigation and timing (PNT) data that feeds into GPS receivers, downstream networks and subsystems.

    Military forces must vigilantly protect their information advantage from malicious attacks by delivering situational awareness, mission planning and warfighter solutions.

    For these priorities, proven and efficient signal integrity solutions will be even more critical in 2020.

    Requirements to Ensure Signal Integrity in 2020

    Any critical system that relies on PNT data should go into the field with two known states:

    • First, it should withstand a GPS outage during testing and simulation — including rigorous jamming and spoofing simulation to predict how the system will react under various conditions. Simulation scenarios can vary in complexity, and newer software-defined simulators provide flexibility to meet current requirements while future-proofing investments in test equipment.
    • Second, the system should have a signal threat detection and alert mechanism. Critical systems also need backup layers such as anti-jam antennas, threat mitigation technology and alternative encrypted signals to ensure continuous operations, even in compromised environments.

    Going into 2020, GNSS simulation and interference detection and mitigation (IDM) will continue to adapt to emerging threats and provide the essential foundation for Assured PNT.


    For more about Resilient PNT and NAVWAR solutions, visit www.Orolia.com.