DDS Security Extensions RFP Proposal

Date: 
July, 2010

Proposed RFP to add standard interoperable mechanisms to communicate data securely using DDS. The proposed standard would add several new capabilities to DDS:

  • A portable way for applications to authenticate to the middleware: 
    • Standard format for Public Key certificates that will be understood by all vendor. 
    • Standard way to configure / load certificates (e.g. via new QoS).
  • An interoperable way to communicate the identity of a Participant:
    • Standard way to embed identity within builtin-topic data to identify yourself 
    • Standard way to distributed your public key via discovery.
    • Standard way to communicate assertions to support single sign-on (e.g. use SAML).

The presentation also reviews requirements from the DDS Security Experts Panel held at the 2010 OMG Real-Time Workshop as well as some relevant IETF standards.