Esinye sezimo zobuchwepheshe ezithuthuka ngokushesha kakhulu eminyakeni yamuva nje i-Intanethi Yezinto (IoT). Ngo-2025, cishe kuzoba namadivayisi axhunyiwe angaphezu kwezigidigidi ezingama-27 emhlabeni jikelele, kubikezela I-IoT Analytics.
Yize abantu abaningi benganquma ukungawasebenzisi amadivaysi e-IoT ngenxa yokukhathazeka okukhulayo kwezokuphepha okuhlanganisa amaphutha nama-hacks e-software.
Emabhizinisini asebenza kwezokunakekelwa kwempilo, ezezimali, ezokukhiqiza, ezokuthutha, ezitolo, neminye esevele iqalile ukusebenzisa amadivayisi e-IoT, njengezindaba zokuphepha ze-inthanethi Yezinto zibaluleke kakhulu.
Sizohlola ukuphepha kwe-IoT ngokujulile kulesi siqeshana, kanye nezinkampani ezinikeza izixazululo zokuphepha ezihlobene.
Ngakho-ke, yini ukuphepha kwe-IoT?
Amadivayisi e-IoT (I-inthanethi Yezinto) ayazenzakalela, imikhiqizo exhunywe ku-inthanethi njengezimoto ezisebenza nge-WiFi, amakhamera okuvikela enethiwekhi, neziqandisi ezihlakaniphile.
Ukuphepha kwe-IoT kuyinqubo yokuvikela la magajethi nokuqinisekisa ukuthi awenzi usongo kunethiwekhi.
Amathuba okuhlaselwa kunoma yini exhunywe ku-inthanethi maningi.
Amasu amaningana, okuhlanganisa ukwebiwa kwemininingwane kanye nokuxhashazwa kokuba sengozini, angasetshenziswa abahlaseli ukuzama ukugebenga amadivayisi e-IoT bekude.
Lapho othile ezuza ukulawula idivayisi ye-IoT, angayisebenzisa ukuze antshontshe ulwazi, aqalise ukuhlasela kwe-distributed denial-of-service (DDoS), noma enze umzamo wokufaka engozini yonke inethiwekhi esele exhunyiwe.
Ukuphepha kwe-IoT kungaba nzima kakhulu njengoba amadivayisi amaningi e-IoT awakhiwe ngokuvikeleka okuqinile engqondweni; ngokuvamile, umenzi ugcizelela kakhulu ukusebenza nokusebenziseka kunokuphepha ukuze enze amadivayisi amakethwe ngokushesha okukhulu.
Njengoba abantu abaningi besebenzisa amadivaysi e-IoT empilweni yansuku zonke, izinkinga zokuphepha ze-IoT zingaphakama kubo bobabili abathengi kanye namabhizinisi.
Abahlinzeki besixazululo sokuphepha se-IoT abahamba phambili
Kudingeka amakhambi ahlukene ezingozini ezihlukahlukene. Ukuvikelwa kwamadivayisi axhunyiwe e-inthanethi Yezinto kudinga inhlanganisela yokutholwa, ukuvimbela, nezixazululo zokunciphisa kuzo zonke izendlalelo ezimbalwa.
Ukukusiza ekwakheni ukuphepha kwakho kwe-IoT, sikhethe abahlinzeki abaphezulu bango-2022 benethiwekhi ye-IoT nokuphepha kwedivayisi.
1. Cisco
UCisco, umhlinzeki wezinsizakalo zokuxhumana kwamabhizinisi, wenze intuthuko enkulu emkhakheni wezokuphepha kwezimboni ngo-2019 lapho ethenga inkampani yaseFrance ye-IoT iSentrio, manje eyaziwa ngeCyber Vision.
Ngesitaki samanje sezokuphepha se-Cisco kanye nesakhiwo sokuqapha esiguquguqukayo sonqenqema, ukusebenzisana okumphumela kukhiqize ukubonakala okuhle kakhulu kumanethiwekhi e-ICS.
Ama-firewall, izinjini zesevisi kamazisi (ISE), izindawo zokugcina ezivikelekile, kanye ne-SOAR ezinye izingxenye ze-Cisco IoT Threat Defense ngaphezu kwe-Cyber Vision.
Egameni le-zero trust, indlela ye-Cisco yokuvikela ukusongela kwezimboni isiza amabhizinisi ekuhloleni ubungozi, ukutholwa kobudlelwano besistimu, kanye nokuthunyelwa kwezingxenye ezincane.
Ukuze basebenzise izimiso zamanje, abaphathi bezokuphepha bathola umongo abawudingayo wezehlakalo zokuphepha ze-IoT ne-OT.
ICisco ibekwe endaweni yokuqala emkhakheni wezokuphepha we-ICS/OT yiForrester Wave ye-ICS Security Solutions, eshicilelwe ekuqaleni kwale nyanga nge-Q4 2021.
Izici
- Izexwayiso zokukhomba nokusabela kubungozi besofthiwe nehadiwe.
- Izinketho zokusebenzisa zihlanganisa izingxenyekazi zekhompuyutha ezishumekiwe kanye nenethiwekhi yokuqoqa ye-SPAN engaphandle kwebhendi.
- Ukuqwashisa kwesikhathi sangempela kwezimpahla zebhizinisi, izitayela zokuxhumana, nokugeleza kohlelo lokusebenza.
- Amapulatifomu e-SOC, izinhlelo ze-SIEM, nezinhlelo ze-SOAR zihlanganiswe ngaphandle komthungo
- Ukuqonda umongo womsebenzi ngokuhlola iphakethe elijulile (DPI).
2. Izikhali
Ngengqalasizinda yebhizinisi yanamuhla, i-Armis Security igxile ekunikezeni ukuphepha kwe-IoT okungenamenzeli.
Ukucebisa i-Armis Device Knowledgebase, elandelela futhi yazise abalawuli ngokungavamile kudatha yedivayisi ye-IoT, i-Armis Platform inikeza ukuhlaziywa kokuziphatha kwezigidigidi zamadivayisi.
Abasebenzisi bangabheka futhi bahlaziye amasevisi, izinqubomgomo, sengozini yakho kokubili amadivayisi aphethwe nangaphethwe, izinhlelo, namanethiwekhi kusetshenziswa i-Armis Standard Query (ASQ).
I-Armis Asset Management, umnikelo ohlukile ovela enkampanini, inikeza ukuqonda kumadivayisi kuyo yonke ingqalasizinda eyingxube njengoba amabhizinisi ethatha izingozi ezengeziwe ezihlobene nokuqaliswa kwe-IoT.
Izici
- Ulwazi lokuqukethwe kwedivayisi okuqinile, okuhlanganisa imodeli, ikheli le-IP/MAC, isistimu yokusebenza, negama lomsebenzisi
- Ukusakazwa kobuhlakani obusongelayo okunezici zokutholwa nokuphendula
- I-Playbooks yokusabela okwenziwa mathupha noma okuzenzakalelayo ekuphuleni umthetho kwenqubomgomo asevele akhelwe ngaphakathi.
- Ukugada okungenamsebenzi, okwenziwayo kokuhlanganiswa kwengqalasizinda okungenazihibe
- Amadivayisi ahlukahlukene ayagadwa, okuhlanganisa i-IoT, izimboni, ezokwelapha, izinhlelo zokusebenza, namafu
3. I-Trustwave
Ngezigidigidi zokuhlaselwa okungase kube khona okulandelelwa nsuku zonke, i-Trutwave, umhlinzeki wesevisi yezokuphepha ophethwe ovelele (MSSP), itholakala eChicago.
Ngemva kweminyaka engamashumi amabili ebhizinisini, umhlinzeki we-cybersecurity uba khona emhlabeni wonke kanye nolwazi lokuphatha amasistimu okuphepha, imininingwane yolwazi, izinhlelo zokusebenza, ukuthobela, nokutholwa kanye nezimpendulo.
Ngesofthiwe nezinhlelo zokusebenza ezidingekayo ukuze kuqashwe amadivayisi kanye nezingxenye ezishumekiwe ukuze kuthuthukiswe ukuvikeleka kwezingxenyekazi zekhompuyutha, i-Trurwave inikeza ukuphepha kwe-IoT kubaqalisi nabakhiqizi.
Umhlinzeki uhlinzeka ngokugadwa kwe-IoT ephethwe futhi ephethwe ukuhlolwa kokuphepha ukuze kuqinisekiswe isistimu eshumekiwe njengamasevisi womqalisi.
Ukuhlolwa komkhiqizo we-IoT, okuhlanganisa impendulo yesigameko, kungenziwa abathuthukisi bomkhiqizo nabakhiqizi.
Izici
- Hlola futhi uqaphe noma imaphi amadivayisi anikwe amandla i-IP ukuze uthole ukulawula kokufinyelela okufanele
- Ukuqina kokusebenza okunezici zokuthobela ezilawulwayo nezizenzakalelayo
- I-Trutwave SpiderLabs inikeza ukufinyelela kochwepheshe ekusangweni, ekubeni sengozini, nokuxhashazwa.
- Ukuphathwa kwezinhlelo ze-IoT kanye nedatha ehlobene kumabhizinisi esebenzisa indlela yomuntu siqu
- Iphenya uhlelo lokusebenza, iseva, i-IoT, nokuba sengozini kwamafu ngokuhlolwa kokungena
4. I-Broadcom Symantec
Akufanele kusimangaze ukuthi i-Broadcom Symantec ingumholi wemakethe kwezokuphepha kwe-IoT uma kubhekwa ubuchwepheshe be-IT giant ku-cybersecurity nengqalasizinda yenethiwekhi.
Bonke ubuchwepheshe obudingekayo ukuze kuqashwe futhi kuvikelwe amadivayisi e-IoT afakwe kumaphakheji ezokuphepha e-Symantec Edidiyelwe e-Cyber Defense (XDR, SASE, kanye ne-zero trust).
Ukuhlinzeka ngokuvikeleka okushumekiwe kwe-IoT, i-Broadcom futhi ihlinzeka ngamadivayisi e-System-on-a-Chip (SoC) kanye nesilawuli sehabhu lendawo samabhizinisi ahililekile ekukhiqizeni umkhiqizo.
Ngokuphendula ngokuqondile ezingozini ezibangelwa ukutholwa kwe-IoT, i-Symantec ICS Protection inikeza amabhizinisi umshayeli wokuphoqelela, i-ML esezingeni eliphezulu, kanye nobuhlakani obusongelayo.
I-Symantec CSP futhi ihlinzeka ngezinyathelo zokulwa nokuxhashazwa, ukuqina kwesistimu, kanye nokufakwa kuhlu kohlelo lokusebenza.
Izici
- Izigidi zemicimbi ye-IoT zicutshungulwa injini yokuhlaziya enamandla.
- Ukuphathwa kwe-Integral over-the-air (OTA) ngokuvikeleka okushumekiwe kwe-IoT
- ukwesekwa kuzo zonke izingqalasizinda eziyingxube zamadivayisi alawulwayo nangaphethwe
- Landelela ukusebenza kwe-IoT kwamafu, ama-API, izinhlelo zokusebenza, amadivayisi, amanethiwekhi, nezinye izindawo.
5. I-PTC
Cishe iminyaka engu-40 ngemva kokusungulwa kwayo, i-PTC, umhlinzeki wesikhathi eside womklamo osizwa ngekhompiyutha kanye nesofthiwe yokulawulwa komjikelezo wokuphila komkhiqizo, iyaqhubeka nokuhlangabezana nezidingo zezimboni ngobuchwepheshe obusha, kuhlanganise ne-augmented reality (AR) kanye nezixazululo ze-IIoT.
I-PTC ihlinzeka nge-ThingWorx Industrial IoT Solutions Platform njengeqoqo lamathuluzi noma izixazululo ezizimele zokuphepha ze-IoT.
Izinhlangano zingaxhumeka ngokuphephile kumasistimu e-OT, okokusebenza, nezitshalo ezivame ukubekwa zodwa kumaphrothokholi akhethekile zisebenzisa i-Kepware kanye Neseva ye-ThingWorx Kepware.
Ngokunikeza ukufinyelela nezimvume ezisekelwe emisebenzini yabasebenzisi, abalawuli bangachaza izinqubomgomo zohlelo lokuvikela. Ukubonakala nokuvumelana nezimo okudingekayo ukuze kufakwe futhi kusetshenziswe amasistimu ayingxube, amafu, kanye nasendaweni kunikezwa izixazululo ze-PTC.
Izici
- Ukuhlaziywa kwesikhathi sangempela kunikezwa ngokuqapha nokuphatha ukusebenza.
- Izexwayiso, ukuhlaziya ithrafikhi namaphethini wesistimu, nokuqapha kwempahla okukude
- Yehlisa izingozi noma ukungasebenzi okubangelwa izinhlelo zezimboni eziphelelwe yisikhathi
- Izinhlelo zokusebenza ezakhelwe ngaphambilini namathuluzi kanjiniyela wokuthunyelwa kwesicelo se-IoT
- Ukusebenza kokuxhumana, ukucabanga, nokuxhumana phakathi kwemishini (M2M)
6.I-Order
Umhlinzeki wesixazululo sezokuphepha sokuthola ubungozi kumadivayisi we-IoT.
Isofthiwe yenkampani isebenzisa injini yokulawula amasistimu asekelwe ku-AI ukuze ihlale iqapha futhi iqalise ngokuziphatha kwedivayisi ngayinye ukuze kutholwe ubungozi.
Ithola ubungozi obuveziwe futhi ikhiqize izilinganiso zengcuphe ezinemininingwane ukuze zibekwe phambili futhi zinciphise ubungozi.
Ingasetshenziselwa ukusebenzisa izinqubomgomo ngokuhlanganisa nenethiwekhi nokuphepha kwengqalasizinda yokuphatha ubuchwepheshe.
Ingasetshenziselwa ukuletha izinsiza embonini yezokunakekelwa kwempilo, ezokukhiqiza, ezokuthengisa nezokuthutha.
Izici
- Misa izinqubomgomo zokuhlukaniswa kwezero zezero zamadivayisi asengozini kanye namathuluzi abalulekile kalula.
- Gcina uhlu lwamanje, olunembile oluxhunywe ku-CMDB yakho. Hlangana nemibandela yokuphepha ku-inthanethi ebekwe yizinhlaka ezifana nezilawuli ze-CIS, i-NIST, i-HIPAA, i-PCI-DSS, ne-ISO/IEC 27001/ISO 27002.
- Bona ukunyakaza kwezinhlangothi, ukuxhaphaza okwaziwayo, nokuziphatha kwedivayisi okungavamile. Thuthukisa izikhathi zokusabela ekuhlaselweni kwamanje njenge-ransomware ngokulungisa ngokuqhubekayo izingozi.
7. I-JFrog
U-JFrog unesipiliyoni esingaphezu kweshumi leminyaka njengomthengisi ophawulekayo wezixazululo ze-DevOps zokuphela-to-ekupheleni.
Ifemu yomjikelezo wokuphila wesofthiwe yakwa-Israel-American manje ingaqhubeka ithuthukisa futhi ivikele amadivayisi e-IoT njengekhambi elithuthukayo le-DevSecOps ngenxa yokutholwa kwe-Vdoo ne-Upswift phakathi nehlobo.
I-JFrog inikeza ukuqonda kuyo yonke imijikelezo yokuphila yezinhlelo zokusebenza namasevisi, futhi ingenza ngokuzenzakalelayo futhi iqondise izindlela zokuphepha zokubhekana nethrafikhi nemishini.
Inqolobane yomhlaba wonke kanambambili egcina konke okuncikile, ukwakha ama-artifact, futhi ikhiphe ulwazi lokuphatha iyisisekelo se-JFrog Platform.
I-JFrog ihlinzeka ngokuhlaziywa kokwakheka kwesoftware (i-SCA), ekwazi ukuskena zonke izinhlobo zephakheji ezibalulekile, kanye nokuqonda okuphelele. I-REST API ukuze kuhlanganiswe kahle nengqalasizinda ekhona, yokuhlola isofthiwe yenkampani yangaphandle neyomthombo ovulekile ukuze kuvikeleke nokuhambisana.
Izici
- Izinhlobo zamaphakheji ezifana ne-Go, Docker, Python, npm, Nuget, ne-Maven zikhonjisiwe futhi ziyaskenwa.
- Ubuhlakani bobungozi bokuxwayisa mayelana nokuqondisa ukulungisa iziphazamisi
- Ukusekela ukufakwa emafini, amafu amaningi, noma endaweni
- Sesha i-artifact usebenzisa imethadatha yayo ngokusebenzisa igama layo, ingobo yomlando, i-checksum, noma izibaluli.
8. Ukungena
Ohulumeni, amabhange, namabhizinisi emhlabeni wonke bathembele ku-Entrust njengomholi wemboni ekukhishweni kwezitifiketi, ukuphathwa komazisi, kanye nezixazululo zokuphepha zedijithali.
I-Entrust IoT Security isebenzisa isisombululo somthengisi se-Public Key Infrastructure (PKI), esigunyazwe imboni.
Imikhiqizo ye-Intrust ye-PKI ihlanganisa Ihabhu Lesitifiketi, elivumela ukulawula okunembile phezu kwezitifiketi zedijithali, Amasevisi E-PKI Aphethwe, avumela ukukhishwa kokukhishwa kwesitifiketi nokunakekelwa, noma Umhlinzeki Wokuphepha Wobunhloli, owenza ngokuzenzakalelayo ukuphathwa kwe-ID yebhizinisi.
Kumabhizinisi namaqembu ezimboni asebenzisa amadivayisi we-IoT, i-Entrust ingavikela ukuthengiselana okubalulekile okudingekayo ukuze ibhizinisi liqhubeke.
Izixazululo zokuphathwa kwedivayisi ezinqenqemeni eziphuma ku-Etrust zifaka i-IoT Identity Issuance kanye ne-IoT Identity Management, ngaphezu kwebanga eligcwele lenkampani lezinsizakalo zokuphatha idivayisi.
Izici
- Ukufinyelela olwazini oludlule olubalulekile, izilungiselelo zokwenza ikhophi yasenqolobaneni nezokuthola, nokuningi
- Ukwesekwa kwezinhlelo ze-top enterprise mobility management (EMM).
- Ukuphepha kobunikazi obuphethwe, okufaka amasiginesha edijithali, ukufakazela ubuqiniso, nokubethela
- Izibuyekezo nezithuthukisi eziphephile, ezizenzakalelayo, nezihlangabezana nemibandela yakamuva yokuphepha
9. Overwatch
I-Overwatch, inkampani egxile kwezokuphepha kwe-IoT, inikeza isixazululo sayo se-ThreatWatch ukuvikela inani elandayo lamadivayisi e-IoT ekuhlaselweni okunamandla, ukuba sengozini kwezinhlelo zeseva, nokufinyelela okuthuthukile.
Ihlinzeka ngezici zokuqapha usongo kanye nokusabela kokusongela, izibalo zokuphathwa kokuphepha kwamadivayisi enethiwekhi, kanye nemephu ebonakalayo yawo wonke amadivayisi axhunyiwe ezinkampani.
Ukuze kunikezwe abaphathi ukuhlaziywa kwesikhathi sangempela kwethrafikhi, i-ejenti ye-Overwatch, ithuluzi lokuqapha ukuphepha elisenqenqemeni, ixhumana nenkundla ye-Threatwatch kumadivayisi.
Uma kudingekile, abalawuli bangenza izinyathelo zokulungisa njengokuqalisa kabusha idivayisi noma ukukhiya idivayisi njengoba benolwazi ngoxhumo lwamanje.
Izici
- I-ejenti ehlakaniphile, enesisindo esincane eqinile ngokwanele ukuvimbela ukuxhaphaza
- I-API yokwazisa abenzeli bedivayisi mayelana nokuhlola ukusongela kwesikhathi sangempela kanye nokunciphisa
- Ukuphathwa kokuhlaziya, ukugcinwa kwedatha, nokuhlola
- Setha imithetho yokuphepha enezidingo ezicacisiwe zamadivayisi we-IoT namaqoqo.
10. I-Paloalto Networks
Omunye wabakhiqizi abacabanga phambili kakhulu bemikhiqizo ye-cybersecurity emhlabeni jikelele, i-Palo Alto Networks nayo inendlela entsha ye-IoT.
Ukuphathwa kwe-Edge kusondela kumenzi esebenzisa i-IoT Security Lifecycle, eyingxenye ye-Palo Alto's. Network Security mpo.
Wonke amabhizinisi kufanele aqonde, ahlole, futhi alawule ubungozi be-IoT futhi ahlonze izingozi ezibonwayo futhi athathe izinyathelo ezifanele lapho kuvela okungavamile.
Ukuze kuhlinzekwe ngokubonakala kokuphela, i-PAN's IoT security architecture futhi iqukethe i-ZTNA, EDR, ukuphathwa kwempahla, ukuphathwa kobungozi, kanye ne-NAC.
Abalawuli bangakwazi ukubhekana ngokushesha nezinsongo zokuphepha ze-IoT ezifana nokuhlanganiswa okuholwa yi-API okugxilwa kakhulu kwensiza kanye nezinqubo zokukhiqiza amathikithi okwenziwa ngesandla ngezincwadi zokudlala ezakhelwe ngaphakathi zomthengisi.
Izici
- Isevisi yezokuphepha engasindi inikezwe phezu kwamafu ukuze isetshenziswe ngokushesha
- Ukusebenzisa i-NGFW noma i-NAC ukuze udale i-zero-trust architecture
- I-NAC, SIEM, kanye nokuhlanganiswa kwe-ITSM okwakhelwe ngaphambili kwezinhlelo zamanje ze-IT
- ukutholwa kwezinsongo ezithuthukisiwe kanye nokusabela kwe-Bluetooth, IoT, OT, nobunye ubuchwepheshe
- I-Telemetry futhi ukufunda ngomshini ukuze kuhlolwe ubungozi kanye nokunciphisa
Isiphetho
Sengiphetha, izivumelwano zokuphepha eziqondene ne-IoT nezixazululo zizodingeka ukuze kuvikelwe isizukulwane esilandelayo sezindawo ze-IT ngenxa yokwanda kwamadivayisi e-IoT.
Izinkampani ezisebenzisa ngenkuthalo amadivayisi e-IoT kufanele ziqaphele futhi ziqaphele ubungozi bokuphepha obubangelwa amadivayisi angathembekile onqenqemeni.
Izinhlangano kufanele zihlonze futhi zilawule izimpahla ze-IoT, zihlole ubungozi bazo, zenze izinyathelo zokuphepha ezifanele, futhi zibheke ithrafikhi ye-IoT ngezinsongo ezingaba khona.
shiya impendulo