Skip to content
Open access

Software-Defined Runtime Reconfiguration of Cryptographic Service Chains for IIoT Edge Nodes

Jul 2026 · Electronics · Vol 15, pp. 3325 · 1 citation · 28 references

TL;DR

Experimental results show millisecond-level processing latency and a middleware overhead satisfies the real-time constraints of typical IIoT edge applications, while the reconfiguration latency satisfies the real-time constraints of typical IIoT edge applications.

Abstract

In Industrial Internet of Things (IIoT) environments, the security requirements of edge nodes change dynamically, whereas conventional cryptographic deployment relies on static configurations that require firmware upgrades or system reboots for algorithm updates, severely limiting flexibility and maintainability. To address this issue, this paper proposes a software-defined runtime reconfiguration mechanism for cryptographic service chains on OS-capable IIoT edge nodes. By decoupling cryptographic processing logic definition from its execution environment, the control plane generates integrity-protected executable service chains, which are dynamically loaded and executed at runtime on the edge node. A prototype implemented on a Raspberry Pi edge node supports dynamic composition and switching among AES, SM4, SHA-256, and SM3, and incorporates HMAC-based integrity verification, version-based rollback prevention, and a smooth transition mechanism supported by kernel buffering. Experimental results show millisecond-level processing latency and a middleware overhead of 3.9–5.2% relative to a static baseline in the same Python interpreter environment, while the reconfiguration latency satisfies the real-time constraints of typical IIoT edge applications. The security and deployment boundaries of the proposed approach are also analyzed.

Read PDF

Similar papers

Open access Sep 2026

FPGA-Based State Evolution Architecture for Tamper Detection in Embedded Systems

Reliable state continuity is essential for embedded and Internet of Things (IoT) devices that generate security-relevant events, audit records, and runtime status information. If an adversary can modify stored records, replay previous events, reorder updates, or roll back the device to a previously valid state, verifyi...

Meera Gladis Kurian, Neenu Achu Eapen, Yu-Hua Chen · 0 citations
Open access Sep 2026

Runtime Firmware Update for 32-Bit Microcontrollers with Instruction Cache Under Concurrent Task Execution

The proposed approach enables dynamic Flash Program Memory (FPM) reprogramming without reboot while preserving concurrent task execution, making it suitable for intelligent sensors and edge-based IoT devices requiring continuous operation.

B. Neves, Victor D. N. Santos, José Eduardo G. Oliveira et al. · 0 citations
Book Open access Aug 2026

Chameleon: Toward Runtime-Pluggable Verification of Programmable Networks

Experimental results show that Chameleon can augment P4 programs with small one-time preprocessing and compilation overheads, and supports millisecond-level runtime configuration operations for verification requirements.

Ying Yao, Le Tian, Yu-Xiang Hu · 0 citations
Open access Sep 2026

SDP-FW: Managing Transient Authorization in Software-Defined Perimeters for Zero Trust Networks

Software-Defined Perimeter (SDP) hides protected services until communicating entities have been authenticated and authorized. In operational SDP gateways, each successful Single Packet Authorization (SPA) request creates transient authorization state that must be enforced and subsequently revoked, potentially imposing...

Cen Chen, Tian-Yi Wang, Jing-Hong Lan et al. · 0 citations
Review Open access Aug 2026

Firmware Reverse Engineering: A Comprehensive Review and Directions

This review synthesises 118 works published from 2014 to 2026 covering the full firmware reverse engineering pipeline and identifies ten structural gaps, including the absence of unified evaluation benchmarks, fragmented peripheral modelling, the scalability–fidelity trade-off in re-hosting, and insufficient grounding...

Aditya Katpara, S. Sankaran · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.