The advent of the Industrial Internet Of Things (IIoT) has pushed the integration of Information Technology (IT) and Operational Technology (OT). In Distributed Smart Factory environments, this has enabled novel Industry 4.0 applications, with software components deployed in the Cloud-toedge continuum and Digital Twins (DTs) adopted as bridges towards industrial machines. However, the IT/OT convergence has also raised serious cybersecurity challenges, making obsolete traditional defense approaches typically based on the assumption that plant topology borders clearly split among trust and untrust devices. Based on these considerations, the paper proposes the adoption of the Zero Trust Architecture (ZTA) to improve the cybersecurity posture of Distributed Smart Factory environments. In particular, we identify original design guidelines to support the development and management of ZTA-aware Industry 4.0 applications accessing industrial machines via their DTs in a selective and configurable manner. The developed prototype has been tested both in a real-world industrial environment and in a virtualized testbed, with the twofold goal of demonstrating the feasibility as well as the scalability of the proposed solution.

Zero Trust Architecture and Digital Twin to Improve the Cybersecurity Posture of Distributed Smart Factory Environments

Fogli M.
Primo
;
Giannelli C.
;
Mari E.;Stefanelli C.
Ultimo
2025

Abstract

The advent of the Industrial Internet Of Things (IIoT) has pushed the integration of Information Technology (IT) and Operational Technology (OT). In Distributed Smart Factory environments, this has enabled novel Industry 4.0 applications, with software components deployed in the Cloud-toedge continuum and Digital Twins (DTs) adopted as bridges towards industrial machines. However, the IT/OT convergence has also raised serious cybersecurity challenges, making obsolete traditional defense approaches typically based on the assumption that plant topology borders clearly split among trust and untrust devices. Based on these considerations, the paper proposes the adoption of the Zero Trust Architecture (ZTA) to improve the cybersecurity posture of Distributed Smart Factory environments. In particular, we identify original design guidelines to support the development and management of ZTA-aware Industry 4.0 applications accessing industrial machines via their DTs in a selective and configurable manner. The developed prototype has been tested both in a real-world industrial environment and in a virtualized testbed, with the twofold goal of demonstrating the feasibility as well as the scalability of the proposed solution.
2025
9798331543723
Digital Twin; Distributed Smart Factory; Industry 4.0; Next Generation Firewall; Zero Trust Architecture;
File in questo prodotto:
File Dimensione Formato  
Zero_Trust_Architecture_and_Digital_Twin_to_Improve_the_Cybersecurity_Posture_of_Distributed_Smart_Factory_Environments.pdf

solo gestori archivio

Tipologia: Full text (versione editoriale)
Licenza: NON PUBBLICO - Accesso privato/ristretto
Dimensione 417.09 kB
Formato Adobe PDF
417.09 kB Adobe PDF   Visualizza/Apri   Richiedi una copia

I documenti in SFERA sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11392/2596731
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? ND
social impact