SlideShare uma empresa Scribd logo
1 de 13
Baixar para ler offline
Best practices in
solving PNT threats
in critical defense
communications
infrastructure
3/14/23 | 11:55-11:10a (15 min) | Nino De Falcis, director, sync business development, Americas, Oscilloquartz, Adtran
WSTS, March 13-16, Vancouver, BC
2023 © ADTRAN, INC.
2
• PNT stands for Positioning, Navigation & Timing. Timing enables P & N
• Protect defense/industry critical infrastructure (CI) against PNT services disruption from frequent
GPS & network timing attacks – GPS, commercial or M-Code, is a single point of failure & can no
longer be considered as a sole source for reliable PNT services in CI
• Deploy resilient, multisource and assured PNT systems
• Target critical infrastructure sectors under national security threats
• Use published resilient PNT guidelines & standard in progress
• DHS Resilient PNT Conformance Framework
• NIST Cybersecurity Framework for PNT Profile
• IEEE P1952 Resilient PNT for User Equipment Standard working group
DRIVEN BY US FEDERAL EXECUTIVE ORDER 13905
The new resilient PNT mandate & standard
Power grids Finance Transportation
DoD
Communications
DoD Data centers
2023 © ADTRAN, INC.
3
Why GPS alternatives are a high priority?
Sen. King Urges Top General to Make GPS
Alternatives a “High Priority”
LI post by Dana A. Goward, March 10, 2023
Senator Video
King says:
• “I believe GPS will be one of the first
targets in a conflict”
• “Are we developing alternatives to space-
based resources?”
General James H. Dickenson, Commander
of US Space Command, confirmed:
• “…I know there's efforts underway…
looking to alternative PNT and how we
can develop those types of capabilities.”
C5ISR - Command, Control, Communications, Computers,
Cyber, Intelligence, Surveillance & Reconnaissance
DISA/DISN
Army
Air Force
Navy
Space Force
C5ISR
land
sea
air
Data Centers
space
The current C5ISR infrastructure supports the Army’s combat capabilities with reliable & real-time
information for tactical battlefield decisions. Secure, resilient & synchronized datacomms support critical land,
sea, air & space missions
network
Centralized
JADC2 - Joint All-Domain Command & Control
DoD/DISN
Army
Air Force
Navy
Space Force
land
sea
air
Neural Data
Centers
space
The next-gen JADC2 is an AI-powered unified network, connecting sensors & weapons from all branches of the
armed forces. Tactical networks will utilize 5G ORAN capabilities for ubiquitous high-speed connectivity, to move
massive data to connect distant sensors into a dense & resilient battlefield network. Low-latency & synchronized
datacomms will enable next-gen connected unmanned/autonomous weapons systems across all domains
network
Decentralized
• National/Core
• Regional
• Local
• Edge & Mobile
C5ISR
JADC2
AI-Powered
5G
5G 5G
5G
5G
5G
2023 © ADTRAN, INC.
6
UNDER REVIEW
What are the PNT threats & GPS vulnerabilities?
jamming
environmental
satellite
attacks
adjacent-band transmitters
spoofing
External GPS/GNSS level
RARE
PNT threats
COMMON
GPS/GNSS
degradation
causes
sat ground
station
space
debris
Figure 4.1 – Known GPS vulnerabilities to telecom (updated)
RARE
Cyberattacks
Internal network level
COMMON
NTP
PTP
/ /
client clock
boundary
clock
network
interference
GPS/GNSS
receiver
2023 © ADTRAN, INC.
7
Are GPS/PNT threats real?
Oct 27, 2022
Jan 21, 2022
Disruption “lasted for 33.5 hours. Wireline and cellular
providers had timing backup systems and were unaffected.
A radio system with no backups suffered, as did a simulcast
radio system that used rubidium backup clocks”
March 19, 2022
Oct 19, 2022
March 1, 2023
2023 © ADTRAN, INC.
8
TaaS+GBaaS solution for DoD’s zero-trust PNT strategy for all-domain branches
New PNT requirements
• DoD zero-trust strategy “never
trust, always verify”
• GPS cannot be a single point of
failure in critical PNT services
• Secure, resilient & assured PNT
with six 9’s reliability
• DHS Resilient PNT guideline
specifies the use of multiple
sources vs. user’s risk profile
• PNT capability with end-to-end
defense-in-depth
resiliency
Next-gen PNT applications
• Resilient & assured PNT for all combat domains (land, sea, air, space)
• Secure & synchronized multidomain tactical datacomms network
• Accurate timing for real-time DISN/C5ISR information network
• Synchronized JADC2 network powered with AI, 5G & neural DCs
• Precise timing for connected weapons/radars (event trigger/timestamp)
Resilient & assured PNT solution
• GPS TaaS+GBaaS (Time-as-a-Service + GPS-Backup-as-a-Service)
MIL network timing requirements, applications and solutions
• GPS/M-Code
• LEO PNT
• Sat surveillance
Next-gen JADC2 unified battlefield network
2023 © ADTRAN, INC.
9
ITU-T standard-based GPS TaaS+GBaaS solutions
PRTC (G.8272 A/B)
frequency + phase
GPS (or Mcode)
Grandmaster time server
PRTC A accuracy: 100ns | PRTC B: 40ns
ePRTC* (G.8272.1)
frequency + phase
Zero-trust multisource
validator + combiner
Grandmaster time server
sync
network
ePRTC accuracy: 30ns
sync
network
NTP PTP NTP PTP
PTP PTP
Cesium (Cs) backup
TaaS
GPS
Other backup sources
GBaaS
*enhanced
Primary
Reference
Time Clock
PTP / NIST/ eLoran / LEO PNT
Cs
backup
1 2
2023 © ADTRAN, INC.
10
BITS
10 MHz
SyncE
PTP/NTP
IRIG
PPS
PPS+TOD
ePRTC solution configuration and performance
GPS/M-code
receiver
GPS
antenna
Zero-trust
multisource validator
+ combiner
GPS receiver and Zero-trust multisource validator + combiner
are integrated into the Grandmaster
Other backup sources
Time/Phase holdover if GPS goes down
SePRTC*: 100ns over typ. 55 days
1µs over typ. 4 months
14 days
Time error
100ns
30ns
Short-term GPS backup holdover performance
Long-term GPS backup holdover performance
35ns
Masks
Optical Cesium
clock backup
Grandmaster
time server
65ns
45ns
ePRTC
ePRTC+
SePRTC
*Super ePRTC solution
GPS/
Mcode
GBaaS
TaaS
PTP / NIST/ eLoran / LEO PNT
ePRTC (G.8272.1)
(functional diagram)
2023 © ADTRAN, INC.
11
WAN network
Networkwide
Sync Mgmt
packet LAN network
GPS TaaS+GBaaS architecture in Hi-Rel MIL networks
MIL Network Node
Site-1
PTP failover backup
cross reference monitoring
2
5
GM-2*
NTP
(ms accuracy)
*GPS/Mcode NTP/PTP
Grandmaster Time Server with
“zero-trust multisource validator
+ combiner” solution
GM-1*
Cesium, PTP, NIST,
eLoran, LEO PNT, etc.
GPS/
Mcode
7
PTP PTP
(sub-µs accuracy)
PNT backup
sources
Servers/VMs running critical JADC2 battlefield applications supported by zero-trust PNT services
AI-based timing
management system
3
4
PTP
1
2
MIL Data Center
Site-2
6
Receiver
2023 © ADTRAN, INC.
12
Managing GPS TaaS+GBaaS architecture in Hi-Rel MIL networks
AI-based timing management system with multilevel fault-tolerance for
end-to-end control, visibility and six 9’s reliability
geolocation Site-1 & Site-2
PTP backup monitoring
from GM-2 to GM-1
timing chain alert with Cesium/
PTP backup rearrangements
GM-1 alert with Cesium backup
timing topology with
Cesium/PTP backup
GPS attack
vendor-agnostic
analytics for GPS
assurance
GM-2 alert with PTP backup
from GM-1
Site-2
Site-1
Site-2
Site-1
GM-2
GM-2 GM-1
PTP
ePRTC
Site-1
Site-2
7
6
5
4
3
2
1
Networkwide
Sync Mgmt
PTP
PTP
backup
Cesium
backup
Thank you!

Mais conteúdo relacionado

Mais procurados

FTTH Planning using GIS
FTTH Planning using GISFTTH Planning using GIS
FTTH Planning using GIS
Umar Farooq
 

Mais procurados (20)

Dean Bubley presentation on enterprise & neutral host models for mobile
Dean Bubley presentation on enterprise & neutral host models for mobileDean Bubley presentation on enterprise & neutral host models for mobile
Dean Bubley presentation on enterprise & neutral host models for mobile
 
Synchronizing 5G networks
Synchronizing 5G networksSynchronizing 5G networks
Synchronizing 5G networks
 
Achieving resilient and assured PNT in secure information networks
Achieving resilient and assured PNT in secure information networksAchieving resilient and assured PNT in secure information networks
Achieving resilient and assured PNT in secure information networks
 
5G Network Overview
 5G Network Overview 5G Network Overview
5G Network Overview
 
ADVA aPNT+™ security enhancements
ADVA aPNT+™ security enhancementsADVA aPNT+™ security enhancements
ADVA aPNT+™ security enhancements
 
Beginners: 5G Terminology (Updated - Feb 2019)
Beginners: 5G Terminology (Updated - Feb 2019)Beginners: 5G Terminology (Updated - Feb 2019)
Beginners: 5G Terminology (Updated - Feb 2019)
 
SDM – A New (Subsea) Cable Paradigm
SDM – A New (Subsea) Cable ParadigmSDM – A New (Subsea) Cable Paradigm
SDM – A New (Subsea) Cable Paradigm
 
5G positioning for the connected intelligent edge
5G positioning for the connected intelligent edge5G positioning for the connected intelligent edge
5G positioning for the connected intelligent edge
 
Sync on TAP - Syncing infrastructure with software
Sync on TAP - Syncing infrastructure with softwareSync on TAP - Syncing infrastructure with software
Sync on TAP - Syncing infrastructure with software
 
Sky X Tech PPT by Manoj Datt
Sky X Tech PPT by Manoj DattSky X Tech PPT by Manoj Datt
Sky X Tech PPT by Manoj Datt
 
Inject precise synchronization into open compute servers
Inject precise synchronization into open compute serversInject precise synchronization into open compute servers
Inject precise synchronization into open compute servers
 
Overview of standardisation status and 3GPP technology evolution trend
Overview of standardisation status and 3GPP technology evolution trendOverview of standardisation status and 3GPP technology evolution trend
Overview of standardisation status and 3GPP technology evolution trend
 
Securing the Onion: 5G Cloud Native Infrastructure
Securing the Onion: 5G Cloud Native InfrastructureSecuring the Onion: 5G Cloud Native Infrastructure
Securing the Onion: 5G Cloud Native Infrastructure
 
Ericsson 5G learning portfolio 2018
Ericsson 5G learning portfolio 2018Ericsson 5G learning portfolio 2018
Ericsson 5G learning portfolio 2018
 
Turn on 5G with Ericsson 5G Platform
Turn on 5G with Ericsson 5G PlatformTurn on 5G with Ericsson 5G Platform
Turn on 5G with Ericsson 5G Platform
 
FTTH Planning using GIS
FTTH Planning using GISFTTH Planning using GIS
FTTH Planning using GIS
 
Enabling the metaverse with 5G- web.pdf
Enabling the metaverse with 5G- web.pdfEnabling the metaverse with 5G- web.pdf
Enabling the metaverse with 5G- web.pdf
 
Accelerating 5G enterprise networks with edge computing and latency assurance
Accelerating 5G enterprise networks with edge computing and latency assuranceAccelerating 5G enterprise networks with edge computing and latency assurance
Accelerating 5G enterprise networks with edge computing and latency assurance
 
DWDM & Packet Optical Fundamentals by Dion Leung [APRICOT 2015]
DWDM & Packet Optical Fundamentals by Dion Leung [APRICOT 2015]DWDM & Packet Optical Fundamentals by Dion Leung [APRICOT 2015]
DWDM & Packet Optical Fundamentals by Dion Leung [APRICOT 2015]
 
5G Evolution: Progressive Enhancement & N ew Features for New Markets
5G Evolution: Progressive Enhancement & N ew Features for New Markets5G Evolution: Progressive Enhancement & N ew Features for New Markets
5G Evolution: Progressive Enhancement & N ew Features for New Markets
 

Semelhante a Best practices in solving PNT threats in critical defense communications infrastructure

NextGen Network Synchronization
NextGen Network SynchronizationNextGen Network Synchronization
NextGen Network Synchronization
Dhiman Chowdhury
 
Improvement of quality of service parameters using reinvented fsmac protocol ...
Improvement of quality of service parameters using reinvented fsmac protocol ...Improvement of quality of service parameters using reinvented fsmac protocol ...
Improvement of quality of service parameters using reinvented fsmac protocol ...
eSAT Journals
 
FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...
FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...
FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...
Vince Garr
 

Semelhante a Best practices in solving PNT threats in critical defense communications infrastructure (20)

The need for GBaaS as GPS/GNSS is no longer a reliable source for critical PN...
The need for GBaaS as GPS/GNSS is no longer a reliable source for critical PN...The need for GBaaS as GPS/GNSS is no longer a reliable source for critical PN...
The need for GBaaS as GPS/GNSS is no longer a reliable source for critical PN...
 
ADVA launches new aPNT+™ platform to protect critical network infrastructure
ADVA launches new aPNT+™ platform to protect critical network infrastructureADVA launches new aPNT+™ platform to protect critical network infrastructure
ADVA launches new aPNT+™ platform to protect critical network infrastructure
 
Best practices for secure synchronization in smart grids
Best practices for secure synchronization in smart gridsBest practices for secure synchronization in smart grids
Best practices for secure synchronization in smart grids
 
Best sync practices and architecture strategies for secure, resilient PNT in ...
Best sync practices and architecture strategies for secure, resilient PNT in ...Best sync practices and architecture strategies for secure, resilient PNT in ...
Best sync practices and architecture strategies for secure, resilient PNT in ...
 
Best practices for resilient NIST/UTC traceable sub-µsec timestamping of fina...
Best practices for resilient NIST/UTC traceable sub-µsec timestamping of fina...Best practices for resilient NIST/UTC traceable sub-µsec timestamping of fina...
Best practices for resilient NIST/UTC traceable sub-µsec timestamping of fina...
 
ADVA’s telecommunications solutions for smart grids
ADVA’s telecommunications solutions for smart grids ADVA’s telecommunications solutions for smart grids
ADVA’s telecommunications solutions for smart grids
 
Signal Classification and Identification for Cognitive Radio
Signal Classification and Identification for Cognitive RadioSignal Classification and Identification for Cognitive Radio
Signal Classification and Identification for Cognitive Radio
 
Best practices for secure PNT management in a multi vendor environment
Best practices for secure PNT management in a multi vendor environmentBest practices for secure PNT management in a multi vendor environment
Best practices for secure PNT management in a multi vendor environment
 
NextGen Network Synchronization
NextGen Network SynchronizationNextGen Network Synchronization
NextGen Network Synchronization
 
dan-web5g.pptx
dan-web5g.pptxdan-web5g.pptx
dan-web5g.pptx
 
Improvement of quality of service parameters using reinvented fsmac protocol ...
Improvement of quality of service parameters using reinvented fsmac protocol ...Improvement of quality of service parameters using reinvented fsmac protocol ...
Improvement of quality of service parameters using reinvented fsmac protocol ...
 
Improvement of quality of service parameters using
Improvement of quality of service parameters usingImprovement of quality of service parameters using
Improvement of quality of service parameters using
 
CDMA Based Secure Cellular Communication via Satellite Link
CDMA Based Secure Cellular Communication via Satellite LinkCDMA Based Secure Cellular Communication via Satellite Link
CDMA Based Secure Cellular Communication via Satellite Link
 
Time sync: Existing mobile networks need to be ready for 5G and time-sensitiv...
Time sync: Existing mobile networks need to be ready for 5G and time-sensitiv...Time sync: Existing mobile networks need to be ready for 5G and time-sensitiv...
Time sync: Existing mobile networks need to be ready for 5G and time-sensitiv...
 
ePRTC in data centers – GNSS backup as a service (GBaaS)
ePRTC in data centers – GNSS backup as a service (GBaaS)ePRTC in data centers – GNSS backup as a service (GBaaS)
ePRTC in data centers – GNSS backup as a service (GBaaS)
 
Recent growth in timing
Recent growth in timingRecent growth in timing
Recent growth in timing
 
Get your timing right for 5G OpenRAN!
Get your timing right for 5G OpenRAN!Get your timing right for 5G OpenRAN!
Get your timing right for 5G OpenRAN!
 
Future tech trend for public safety proximity-based service
Future tech trend for public safety proximity-based serviceFuture tech trend for public safety proximity-based service
Future tech trend for public safety proximity-based service
 
FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...
FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...
FFM_–_Technical_Brief_–_Network_Solutions_for_Intelligence_Surveillance_and_R...
 
INTEGRATION_ASPECTS_OF_TELEMETRY_SYSTEM_FOR_A_SURVEILLANCE_UAV.pdf
INTEGRATION_ASPECTS_OF_TELEMETRY_SYSTEM_FOR_A_SURVEILLANCE_UAV.pdfINTEGRATION_ASPECTS_OF_TELEMETRY_SYSTEM_FOR_A_SURVEILLANCE_UAV.pdf
INTEGRATION_ASPECTS_OF_TELEMETRY_SYSTEM_FOR_A_SURVEILLANCE_UAV.pdf
 

Mais de Adtran

Mais de Adtran (17)

Meet the new FSP 3000 M-Flex800™
Meet the new FSP 3000 M-Flex800™Meet the new FSP 3000 M-Flex800™
Meet the new FSP 3000 M-Flex800™
 
Timing and sync requirements in railway networks
Timing and sync requirements in railway networksTiming and sync requirements in railway networks
Timing and sync requirements in railway networks
 
National plan for distribution of time and frequency
National plan for distribution of time and frequencyNational plan for distribution of time and frequency
National plan for distribution of time and frequency
 
Assured timing for power networks
Assured timing for power networksAssured timing for power networks
Assured timing for power networks
 
Deep PON assurance with Adtran ALM
Deep PON assurance with Adtran ALMDeep PON assurance with Adtran ALM
Deep PON assurance with Adtran ALM
 
Addressing GPS vulnerabilities with Satellite Time and Location technology
Addressing GPS vulnerabilities with Satellite Time and Location technologyAddressing GPS vulnerabilities with Satellite Time and Location technology
Addressing GPS vulnerabilities with Satellite Time and Location technology
 
A new era of in-home Wi-Fi has arrived
A new era of in-home Wi-Fi has arrivedA new era of in-home Wi-Fi has arrived
A new era of in-home Wi-Fi has arrived
 
Introducing the industry's smallest Combo PON OLT
Introducing the industry's smallest Combo PON OLTIntroducing the industry's smallest Combo PON OLT
Introducing the industry's smallest Combo PON OLT
 
A new era of Wi-Fi has arrived
A new era of Wi-Fi has arrivedA new era of Wi-Fi has arrived
A new era of Wi-Fi has arrived
 
Deep PON assurance with Adtran ALM
Deep PON assurance with Adtran ALMDeep PON assurance with Adtran ALM
Deep PON assurance with Adtran ALM
 
Transforming DCI connectivity with the FSP 3000 S-Flex
Transforming DCI connectivity with the FSP 3000 S-FlexTransforming DCI connectivity with the FSP 3000 S-Flex
Transforming DCI connectivity with the FSP 3000 S-Flex
 
Meet the new FSP 3000 Edge OLS
Meet the new FSP 3000 Edge OLSMeet the new FSP 3000 Edge OLS
Meet the new FSP 3000 Edge OLS
 
Introducing high-performance ONTs for the multigigabit edge
Introducing high-performance ONTs for the multigigabit edgeIntroducing high-performance ONTs for the multigigabit edge
Introducing high-performance ONTs for the multigigabit edge
 
OFCNet demo: Optical spectrum services over FSP 3000 OLS
OFCNet demo: Optical spectrum services over FSP 3000 OLSOFCNet demo: Optical spectrum services over FSP 3000 OLS
OFCNet demo: Optical spectrum services over FSP 3000 OLS
 
Case studies in achieving resilient timing in mission-critical networks
Case studies in achieving resilient timing in mission-critical networksCase studies in achieving resilient timing in mission-critical networks
Case studies in achieving resilient timing in mission-critical networks
 
Analytics for automating critical infrastructures
Analytics for automating critical infrastructuresAnalytics for automating critical infrastructures
Analytics for automating critical infrastructures
 
Real-life demands and examples of management and control in disaggregated opt...
Real-life demands and examples of management and control in disaggregated opt...Real-life demands and examples of management and control in disaggregated opt...
Real-life demands and examples of management and control in disaggregated opt...
 

Último

Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...
Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...
Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...
panagenda
 
Structuring Teams and Portfolios for Success
Structuring Teams and Portfolios for SuccessStructuring Teams and Portfolios for Success
Structuring Teams and Portfolios for Success
UXDXConf
 

Último (20)

Portal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russePortal Kombat : extension du réseau de propagande russe
Portal Kombat : extension du réseau de propagande russe
 
Working together SRE & Platform Engineering
Working together SRE & Platform EngineeringWorking together SRE & Platform Engineering
Working together SRE & Platform Engineering
 
A Business-Centric Approach to Design System Strategy
A Business-Centric Approach to Design System StrategyA Business-Centric Approach to Design System Strategy
A Business-Centric Approach to Design System Strategy
 
Syngulon - Selection technology May 2024.pdf
Syngulon - Selection technology May 2024.pdfSyngulon - Selection technology May 2024.pdf
Syngulon - Selection technology May 2024.pdf
 
Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...
Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...
Easier, Faster, and More Powerful – Alles Neu macht der Mai -Wir durchleuchte...
 
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdfSimplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
Simplified FDO Manufacturing Flow with TPMs _ Liam at Infineon.pdf
 
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
1111 ChatGPT Prompts PDF Free Download - Prompts for ChatGPT
 
Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...
Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...
Behind the Scenes From the Manager's Chair: Decoding the Secrets of Successfu...
 
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
Choosing the Right FDO Deployment Model for Your Application _ Geoffrey at In...
 
Structuring Teams and Portfolios for Success
Structuring Teams and Portfolios for SuccessStructuring Teams and Portfolios for Success
Structuring Teams and Portfolios for Success
 
The Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdf
The Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdfThe Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdf
The Value of Certifying Products for FDO _ Paul at FIDO Alliance.pdf
 
ECS 2024 Teams Premium - Pretty Secure
ECS 2024   Teams Premium - Pretty SecureECS 2024   Teams Premium - Pretty Secure
ECS 2024 Teams Premium - Pretty Secure
 
What's New in Teams Calling, Meetings and Devices April 2024
What's New in Teams Calling, Meetings and Devices April 2024What's New in Teams Calling, Meetings and Devices April 2024
What's New in Teams Calling, Meetings and Devices April 2024
 
Enterprise Knowledge Graphs - Data Summit 2024
Enterprise Knowledge Graphs - Data Summit 2024Enterprise Knowledge Graphs - Data Summit 2024
Enterprise Knowledge Graphs - Data Summit 2024
 
FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...
FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...
FDO for Camera, Sensor and Networking Device – Commercial Solutions from VinC...
 
AI mind or machine power point presentation
AI mind or machine power point presentationAI mind or machine power point presentation
AI mind or machine power point presentation
 
The Metaverse: Are We There Yet?
The  Metaverse:    Are   We  There  Yet?The  Metaverse:    Are   We  There  Yet?
The Metaverse: Are We There Yet?
 
BT & Neo4j _ How Knowledge Graphs help BT deliver Digital Transformation.pptx
BT & Neo4j _ How Knowledge Graphs help BT deliver Digital Transformation.pptxBT & Neo4j _ How Knowledge Graphs help BT deliver Digital Transformation.pptx
BT & Neo4j _ How Knowledge Graphs help BT deliver Digital Transformation.pptx
 
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdfLinux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
Linux Foundation Edge _ Overview of FDO Software Components _ Randy at Intel.pdf
 
Google I/O Extended 2024 Warsaw
Google I/O Extended 2024 WarsawGoogle I/O Extended 2024 Warsaw
Google I/O Extended 2024 Warsaw
 

Best practices in solving PNT threats in critical defense communications infrastructure

  • 1. Best practices in solving PNT threats in critical defense communications infrastructure 3/14/23 | 11:55-11:10a (15 min) | Nino De Falcis, director, sync business development, Americas, Oscilloquartz, Adtran WSTS, March 13-16, Vancouver, BC
  • 2. 2023 © ADTRAN, INC. 2 • PNT stands for Positioning, Navigation & Timing. Timing enables P & N • Protect defense/industry critical infrastructure (CI) against PNT services disruption from frequent GPS & network timing attacks – GPS, commercial or M-Code, is a single point of failure & can no longer be considered as a sole source for reliable PNT services in CI • Deploy resilient, multisource and assured PNT systems • Target critical infrastructure sectors under national security threats • Use published resilient PNT guidelines & standard in progress • DHS Resilient PNT Conformance Framework • NIST Cybersecurity Framework for PNT Profile • IEEE P1952 Resilient PNT for User Equipment Standard working group DRIVEN BY US FEDERAL EXECUTIVE ORDER 13905 The new resilient PNT mandate & standard Power grids Finance Transportation DoD Communications DoD Data centers
  • 3. 2023 © ADTRAN, INC. 3 Why GPS alternatives are a high priority? Sen. King Urges Top General to Make GPS Alternatives a “High Priority” LI post by Dana A. Goward, March 10, 2023 Senator Video King says: • “I believe GPS will be one of the first targets in a conflict” • “Are we developing alternatives to space- based resources?” General James H. Dickenson, Commander of US Space Command, confirmed: • “…I know there's efforts underway… looking to alternative PNT and how we can develop those types of capabilities.”
  • 4. C5ISR - Command, Control, Communications, Computers, Cyber, Intelligence, Surveillance & Reconnaissance DISA/DISN Army Air Force Navy Space Force C5ISR land sea air Data Centers space The current C5ISR infrastructure supports the Army’s combat capabilities with reliable & real-time information for tactical battlefield decisions. Secure, resilient & synchronized datacomms support critical land, sea, air & space missions network Centralized
  • 5. JADC2 - Joint All-Domain Command & Control DoD/DISN Army Air Force Navy Space Force land sea air Neural Data Centers space The next-gen JADC2 is an AI-powered unified network, connecting sensors & weapons from all branches of the armed forces. Tactical networks will utilize 5G ORAN capabilities for ubiquitous high-speed connectivity, to move massive data to connect distant sensors into a dense & resilient battlefield network. Low-latency & synchronized datacomms will enable next-gen connected unmanned/autonomous weapons systems across all domains network Decentralized • National/Core • Regional • Local • Edge & Mobile C5ISR JADC2 AI-Powered 5G 5G 5G 5G 5G 5G
  • 6. 2023 © ADTRAN, INC. 6 UNDER REVIEW What are the PNT threats & GPS vulnerabilities? jamming environmental satellite attacks adjacent-band transmitters spoofing External GPS/GNSS level RARE PNT threats COMMON GPS/GNSS degradation causes sat ground station space debris Figure 4.1 – Known GPS vulnerabilities to telecom (updated) RARE Cyberattacks Internal network level COMMON NTP PTP / / client clock boundary clock network interference GPS/GNSS receiver
  • 7. 2023 © ADTRAN, INC. 7 Are GPS/PNT threats real? Oct 27, 2022 Jan 21, 2022 Disruption “lasted for 33.5 hours. Wireline and cellular providers had timing backup systems and were unaffected. A radio system with no backups suffered, as did a simulcast radio system that used rubidium backup clocks” March 19, 2022 Oct 19, 2022 March 1, 2023
  • 8. 2023 © ADTRAN, INC. 8 TaaS+GBaaS solution for DoD’s zero-trust PNT strategy for all-domain branches New PNT requirements • DoD zero-trust strategy “never trust, always verify” • GPS cannot be a single point of failure in critical PNT services • Secure, resilient & assured PNT with six 9’s reliability • DHS Resilient PNT guideline specifies the use of multiple sources vs. user’s risk profile • PNT capability with end-to-end defense-in-depth resiliency Next-gen PNT applications • Resilient & assured PNT for all combat domains (land, sea, air, space) • Secure & synchronized multidomain tactical datacomms network • Accurate timing for real-time DISN/C5ISR information network • Synchronized JADC2 network powered with AI, 5G & neural DCs • Precise timing for connected weapons/radars (event trigger/timestamp) Resilient & assured PNT solution • GPS TaaS+GBaaS (Time-as-a-Service + GPS-Backup-as-a-Service) MIL network timing requirements, applications and solutions • GPS/M-Code • LEO PNT • Sat surveillance Next-gen JADC2 unified battlefield network
  • 9. 2023 © ADTRAN, INC. 9 ITU-T standard-based GPS TaaS+GBaaS solutions PRTC (G.8272 A/B) frequency + phase GPS (or Mcode) Grandmaster time server PRTC A accuracy: 100ns | PRTC B: 40ns ePRTC* (G.8272.1) frequency + phase Zero-trust multisource validator + combiner Grandmaster time server sync network ePRTC accuracy: 30ns sync network NTP PTP NTP PTP PTP PTP Cesium (Cs) backup TaaS GPS Other backup sources GBaaS *enhanced Primary Reference Time Clock PTP / NIST/ eLoran / LEO PNT Cs backup 1 2
  • 10. 2023 © ADTRAN, INC. 10 BITS 10 MHz SyncE PTP/NTP IRIG PPS PPS+TOD ePRTC solution configuration and performance GPS/M-code receiver GPS antenna Zero-trust multisource validator + combiner GPS receiver and Zero-trust multisource validator + combiner are integrated into the Grandmaster Other backup sources Time/Phase holdover if GPS goes down SePRTC*: 100ns over typ. 55 days 1µs over typ. 4 months 14 days Time error 100ns 30ns Short-term GPS backup holdover performance Long-term GPS backup holdover performance 35ns Masks Optical Cesium clock backup Grandmaster time server 65ns 45ns ePRTC ePRTC+ SePRTC *Super ePRTC solution GPS/ Mcode GBaaS TaaS PTP / NIST/ eLoran / LEO PNT ePRTC (G.8272.1) (functional diagram)
  • 11. 2023 © ADTRAN, INC. 11 WAN network Networkwide Sync Mgmt packet LAN network GPS TaaS+GBaaS architecture in Hi-Rel MIL networks MIL Network Node Site-1 PTP failover backup cross reference monitoring 2 5 GM-2* NTP (ms accuracy) *GPS/Mcode NTP/PTP Grandmaster Time Server with “zero-trust multisource validator + combiner” solution GM-1* Cesium, PTP, NIST, eLoran, LEO PNT, etc. GPS/ Mcode 7 PTP PTP (sub-µs accuracy) PNT backup sources Servers/VMs running critical JADC2 battlefield applications supported by zero-trust PNT services AI-based timing management system 3 4 PTP 1 2 MIL Data Center Site-2 6 Receiver
  • 12. 2023 © ADTRAN, INC. 12 Managing GPS TaaS+GBaaS architecture in Hi-Rel MIL networks AI-based timing management system with multilevel fault-tolerance for end-to-end control, visibility and six 9’s reliability geolocation Site-1 & Site-2 PTP backup monitoring from GM-2 to GM-1 timing chain alert with Cesium/ PTP backup rearrangements GM-1 alert with Cesium backup timing topology with Cesium/PTP backup GPS attack vendor-agnostic analytics for GPS assurance GM-2 alert with PTP backup from GM-1 Site-2 Site-1 Site-2 Site-1 GM-2 GM-2 GM-1 PTP ePRTC Site-1 Site-2 7 6 5 4 3 2 1 Networkwide Sync Mgmt PTP PTP backup Cesium backup