Search NASA⌕ Search

SEARCH · Search NASA

Results for “Secure by Design”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 163 records · Page 9

Spacecraft Data and Relay Management using Delay Tolerant Networking

NASA's demonstration of the successful transmission of relay data through the orbiting Mars Odyssey, Mars Global Surveyor, and Mars Express by the Mars Exploration Rovers has shown not only the benefit of using a relay satellite for multiple landed assets in a deep space environment but also the benefit of international standards for such architecture. As NASA begins the quest defined in the Vision for Exploration with robotic and manned missions to the Moon, continues its study of Mars, and is joined in these endeavors by countries world-wide, landed assets transmitting data through relay satellites will be crucial for completing mission objectives. However, this method of delivery of data will result in increased complexity in routing and prioritization of data transmission as the number of missions increases. Also, there is currently no standard method among organizations conducting such missions to return these data sets to Earth given a complex environment. One possibility for establishing such a standard is for mission designers to deploy protocols which fall under the umbrella of Delay Tolerant Networking (DTN). These developing standards include the Bundle Protocol (BP) which provides a standard, secure, store and forward mechanism designed for high latency and asymmetric communication links and the Licklider Transmission Protocol (LTP) which is used to provide a reliable deep space link transmission service.

network congestion control algorithm↗

Spacecraft data and relay management using delay tolerant networking

NASA’s demonstration of the successful transmission of relay data through the orbiting Mars Odyssey, Mars Global Surveyor, and Mars Express by the Mars Exploration Rovers has shown not only the benefit of using a relay satellite for multiple landed assets in a deep space environment but also the benefit of international standards for such an architecture. As NASA begins the quest defined in the Vision for Exploration with robotic and manned missions to the Moon, continues its study of Mars, and is joined in these endeavors by countries world-wide, landed assets transmitting data through relay satellites will be crucial for completing mission objectives. However, this method of data delivery will result in increased complexity in routing and prioritization of data transmission as the number of missions increases. Also, there is currently no standard method among organizations conducting such missions to return these data sets to Earth given a complex environment. One possibility for establishing such a standard is for mission designers to deploy protocols which fall under the umbrella of Delay Tolerant Networking (DTN). These developing standards include the Bundle Protocol (BP) which provides a standard, secure, store and forward mechanism designed for high latency and asymmetric communication links and the Licklider Transmission Protocol (LTP) which is used to provide a reliable deep space link transmission service.

Torgerson, J. Leigh↗

DEVELOPMENT OF AN INTEGRATED SECURITY AND SAFETY MONITORING SYSTEM FOR SPENT NUCLEAR FUEL AND HIGH-LEVEL WASTE TRANSPORTATION

This paper provides an overview of the progress to date, and discussion of the path forward, related to designing, fabricating, and testing an integrated security and safety monitoring system (ISSMS) for railcars used to transport spent nuclear fuel (SNF) and high-level radioactive waste (HLW) in the United States. The system will comply with the US Department of Energy’s (DOE) Order 460.2B “Departmental Materials Transportation Management” and the Association of American Railroads’ (AAR) standard S-2043 “Performance Specification for Trains Used to Carry High-level Radioactive Material” [1] developed specifically for railcars used to transport high-level radioactive material (HLRM). DOE is in the process of developing and testing an ISSMS that will satisfy both DOE requirements and AAR standards. DOE has already developed railcar designs for transportation of HLRM. In 2024, DOE’s Atlas railcar project completed the design, fabrication and testing of three railcar types: transportation cask-carrying, buffer, and security escort, resulting in AAR conditional approval to operate on freight rail networks in North America. DOE decided to combine the required security and safety systems into one system, and this combined system is the subject of the current effort. DOE is developing and proposes to implement the ISSMS for these railcars as part of the build out of the railcar fleet. DOE began planning for development of the ISSMS in February 2020. The project is divided into seven phases starting with conceptual design and continuing through production design, as shown in Figure 1. An earlier version of the system was tested as part of the Atlas railcar consist demonstration test run in 2023. This paper describes the design features and system testing using the Atlas project railcars, and laboratory testing completed to date. The paper will also describe the activities planned to support the DOE project to ship the High Burn-Up Research Cask (HBRC) in 2027.

Schultze, Michael [ORNL] (ORCID:0000000283205671)↗

Advanced Reactor Safeguards & Security 2024 Program Roadmap

The Advanced Reactor Safeguards and Security (ARSS) program was established to provide research support addressing near term challenges that advanced nuclear reactor vendors face in meeting domestic Material Control and Accounting (MC&A), Physical Protection System (PPS), and Cybersecurity requirements for U.S. construction. The technical work in the program is meant to (1) support nuclear reactor vendors with advanced MC&A, PPS, and Cybersecurity designs for next generation reactors, (2) provide technical bases for the regulator, and (3) promote the integration of Safeguards and Security by Design early in the design process. Existing domestic regulations for safeguards and security, as outlined in the Code of Federal Regulations, were written for large light water reactors, and rule-making efforts are underway to develop regulations more suited to different reactor designs. The ARSS program seeks to remove roadblocks in the deployment of new and advanced reactors by solving regulatory challenges, reducing safeguards and security costs, and utilizing the latest technologies and approaches for robust plant monitoring and protection. This roadmap discusses the goals of the ARSS program, current research, and program plan for the next five years.

22 GENERAL STUDIES OF NUCLEAR REACTORS↗

Derived virtual devices: a secure distributed file system mechanism

This paper presents the design of derived virtual devices (DVDs). DVDs are the mechanism used by the Netstation Project to provide secure shared access to network-attached peripherals distributed in an untrusted network environment. DVDs improve Input/Output efficiency by allowing user processes to perform I/O operations directly from devices without intermediate transfer through the controlling operating system kernel. The security enforced at the device through the DVD mechanism includes resource boundary checking, user authentication, and restricted operations, e.g., read-only access. To illustrate the application of DVDs, we present the interactions between a network-attached disk and a file system designed to exploit the DVD abstraction. We further discuss third-party transfer as a mechanism intended to provide for efficient data transfer in a typical NAP environment. We show how DVDs facilitate third-party transfer, and provide the security required in a more open network environment.

VanMeter, Rodney↗

Cyber-Informed Engineering (CIE) Integration into Model- Based Systems Engineering (MBSE)

Engineering design in the field of industrial engineering, such as designing automated factories or warehouses, is critical for the effective operation of facilities. Any design flaws introduced early can result in significant capital expenses to correct. However, early-stage engineering design is inherently complex. The systems are not yet built, requiring designers to integrate various aspects, including digital engineering and cybersecurity, to support virtual representations throughout the design process. In this study, we propose an approach to integrate Cyber-Informed Engineering (CIE) principles into model-based systems engineering (MBSE). This approach facilitates the development of a digital thread for engineering systems, ensuring secure digital artifacts in the design of industrial engineering systems.

42 - ENGINEERING↗

Custom Turnkey Time and Frequency Systems: A structured, expandable approach

Radiocode Clocks Ltd. have developed a Turnkey Time and Frequency Generation and Distribution, System strategy based upon a bus of three, 'core' signals from which any Time code, Pulse rate or Frequency can be produced. The heart of the system is a ruggedized 19 inch, 3U Single Eurocard chassis constructed from machined 10mm aluminum alloy plate and designed to meet stringent Military, Security and Telecommunications specifications. The chassis is fitted with an advanced multilayer backplane with separate ground planes for analog and digital signals ensuring no degradation of low noise frequency references in the proximity of high speed digital pulse transmissions. The system has been designed to be used in three possible configurations: 1) As a stand alone generation and distribution instrument; 2) As a primary distribution unit in a turnkey Time and Frequency system; and 3) As a secondary distribution unit at a remote location from the Turnkey Time and Frequency System providing regeneration of core signals and correction for transmission delays. When configured as a secondary distribution unit the system will continue to provide usable outputs when one, two or even all three of the 'core' signals are lost. The instrument's placement within a system as a possible single point of system failure has required the development of very high reliability translator, synthesizer, phase locked loop and distribution modules together with a comprehensive alarm and monitoring strategy.

Wright, David F.↗

NASA Technology Utilization House technical support package Summary of results and house description

The Technology Utilization House (Tech House) was designed and constructed to demonstrate to the building industry and the public the benefits of aerospace technology and other new technology that are presently available or will be in very near future. Use of solar energy, conservation of energy and of water, safety, and security were incorporated in the design of the house. The terms to be incorporated into the house and to assist in the design of the house were evaluated. An architectural engineering team was employed to investigate energy conservation ideas, determine cost effectiveness of new materials and systems, and prepare specifications and drawings for the house. The Tech House was constructed during the spring of 1976. All the systems were monitored to insure proper operation, and data were collected during a one year occupancy. Results obtained during the family live-in period, comments on the acceptance of the various energy-saving systems by the family, and suggestions for improvement of the systems are presented.

Source record↗

Scan2Sim: Software to Convert Network Scans to Emulations

Within operational technology (OT) systems design, the construction of testing environments for simulation is often a tedious, manual process that slows down safety and security evaluations. This document details the design and functionality of Scan2Sim, a program designed to construct high-fidelity topological schematics for OT systems without significant manual human input. Scan2Sim may take as input a detailed network scan of a system, and produces an instruction set to re-create the original scanned network within a virtualized simulation network. This construction is achieved via heuristic methods of machine template selection, which allows for a fast, performant approach to automated environment construction. The current tool is designed to produce topology schematics compatible with the Minimega, a tool designed by Sandia National Laboratories for repeatable experimentation management.

97 MATHEMATICS AND COMPUTING↗

Secure Container For Discarded Hypodermic Needles

Container designed for safe retention of discarded blood-collecting hypodermic needles and similar sharp objects used in life-science experiments aboard spacecraft. Needles inserted through self-closing lid and retained magnetically. They are inserted, sharp end first, through spring-loaded flap. Long needles and needles on syringes cannot turn around in container. Can be emptied, cleaned, and reused. Used on Earth to provide unusually secure containment of sharp objects.

Lee, Angelene M.↗

Advanced UAS Border Monitoring

Effective border security is essential for maintaining national safety and managing immigration. This helps prevent illegal activities such as smuggling, trafficking, and unauthorized entry. Traditional methods of border monitoring are heavily reliant on human patrols which can be inadequate given the cost and labor-intensity given the challenging terrain involved. This report presents an advanced unmanned solution designed to significantly enhance border security through currently used drone technology using integrated autonomy by the adoption of ORNL’s sophisticated software platform known as Mapster-Nomad.

45 MILITARY TECHNOLOGY, WEAPONRY, AND NATIONAL DEF↗

River systems under peaked stress

The change in the global energy production mix towards variable renewable energy sources requires efficient utilization of regulated rivers to optimise hydropower operations meet the needs of a changing energy market. However, the flexible operation of hydropower plants causes non-natural, sub-daily fluctuating flows in the receiving water bodies, often referred to as ‘hydropeaking’. Drastic changes in sub-daily flow regimes undermine attempts to improve river system health. Environmental decision makers, including permitting authorities and river basin managers facing the intense and increasing pressure on river environments, should consider ecosystem services and biodiversity issues more thoroughly. The need for research innovations in hydropeaking operation design to fulfil both the water and energy security responsibilities of hydropower is highlighted. Our paper outlines optimized hydropeaking design as a future research direction to help researchers, managers, and decision-makers prioritize actions that could enable better integration of river science and energy system planning. The goal of this is to find a balanced hydropower operation strategy.

54 ENVIRONMENTAL SCIENCES↗

LDRD FY25 Program Overview

As Lawrence Livermore National Laboratory’s (LLNL’s) Laboratory Directed Research and Development (LDRD) program enters its fifth decade of leading-edge research and development, its impact and importance have never been stronger. The program continues to advance strategic investments in pioneering science, technology, and engineering, ensuring LLNL will be ready to deliver on our mission as it evolves over the coming decades. Investing in LDRD research, and the people who perform this critical work, gives LLNL the ability to sustain our role as a leader in the Department of Energy and National Nuclear Security Administration enterprise. The LDRD program enables high-risk, high-payoff research that anticipates emerging threats and future mission needs. By nurturing the ingenuity of the Lab’s greatest asset, its people, LDRD funding advances not only our research but also grows and nurtures our workforce: engaging future innovators with student mentoring, challenging postdoctoral researchers to apply their skills to support national security, and strengthening the leadership skills of early career staff. This annual report documents how LDRD investments advance LLNL’s science, technology, and engineering across our mission space. To assess LDRD’s impact we track both short and long-term metrics such as peer-reviewed publications, number of students, or professional fellows. In addition to reviewing these metrics, I encourage you to delve deeper into the breadth of science and technology that illustrate the strategic value of this research portfolio. For instance, a recent exploratory research project used advanced manufacturing to construct miniaturized three-dimensional ion traps for a quantum computer with reduced quantum error rates to enable applications that address national security missions and support basic science. Another project has delved into studying detonation by examining deflagration to enhance the safety and security of the nuclear weapons stockpile. LDRD researchers are also deploying AI agents on two of the world’s most powerful supercomputers to automate and accelerate inertial confinement fusion experiments. Other teams are delivering more accurate optical constants to enable improved validation for aluminum to advance atomic and molecular physics models. LDRD-driven discoveries of how metals deform under extreme conditions strengthen our ability to model and design materials for demanding national security environments. National security challenges are increasingly complex and continuously evolving. LDRD focuses our most innovative science and technology on these challenges, ensuring the Laboratory is developing creative, forward-leaning solutions for our nation and the world. The following pages feature highlights of published scientific advances, patents, and honors that stem from LDRD investments. As you read this report, I hope you will understand how these investments position the Laboratory, and our partners, to meet the demands of the decades ahead.

36 MATERIALS SCIENCE↗

Application of quantitative risk assessment to address stakeholder questions in geologic carbon storage

Ambitious international greenhouse gas emissions reduction targets demand a rapid transformation to a low-carbon economy. This transformation includes the accelerated adoption of carbon dioxide (CO2) capture and storage (CCS) technology. However, as with any large-scale engineering enterprise, the widespread commercial-scale deployment of geologic carbon storage (GCS) raises important questions about technology and cost-effectiveness, safety, environmental risk, and long-term liability. Effectively assessing and managing risks and liability associated with GCS projects is a key technical need throughout the project life cycle-from site selection and permitting to monitoring design, operational risk management, and post-operational site closure. This presentation highlights recent advancements in tools for quantitative risk assessment, being developed by the National Risk Assessment Partnership (NRAP). NRAP is a multi-year, multinational laboratory research collaboration sponsored by the U.S. Department of Energy's Office of Fossil Energy and Carbon Management. Our focus will be on these tools' applications in addressing critical stakeholder questions related to supporting permitting to ensure secure and environmentally protective storage; designing effective and efficient monitoring plans; evaluating the effectiveness of remedial actions and risk management alternatives; and informing liability assessment and investment decisions. This paper will detail the key functionality of NRAP’s Open-Source Integrated Assessment Model (NRAP-Open-IAM), a computational framework for assessing leakage risk and containment assurance. This model features streamlined workflows for calculating leakage risk profiles, delineating risk-based area of review, and assessing contingency plans and post-injection site care requirements. ORION is an open-source, observation-based ensemble forecasting toolkit to help operators assess the seismic hazard at a carbon storage site. The State of Stress Analysis Tool (SOSAT), designed to assess subsurface stress conditions and evaluate geomechanical risk resulting from CO2 injection in an area of interest will also be presented. We will also introduce a prototype model to evaluate storage project costs and liability associated with risk management. The Technoeconomic and Liability Evaluation for Storage (TALES) model uses results from forecasts of leakage and induced seismicity risk to estimate the lifecycle cost of managing risk. Finally, a preliminary example of how the NRAP Risk-based Adaptive Monitoring Plan (RAMP) tool can be used to design efficient and effective site monitoring plans and estimate the detectability of fluid leakage will be provided. The relevance of these tools for addressing key stakeholder questions amidst uncertainty will be emphasized.

decision support↗

Engineering Privacy at the Edge: A Practical Guide to Differential Privacy in System Architectures

The rapid expansion of distributed and edge computing platforms—spanning autonomous vehicles, IoT sensors, and healthcare monitors—has heightened concerns about data privacy. Differential Privacy (DP) offers a rigorous mathematical framework to protect sensitive information while retaining analytical utility. This tutorial introduces the foundations of DP for both numerical and categorical datasets and extends the discussion to correlation-aware techniques tailored for structured and high-dimensional data. Hands-on demonstrations will begin with the PETINA (Privacy prEservaTIoN Algorithms) package for numerical data and continue with MIC-DP (Maximum Information Correlated Differential Privacy) for tabular data. Designed for researchers and practitioners in secure systems, embedded architectures, and AI accelerators, the tutorial emphasizes practical and scalable methods for integrating DP into real-world system designs.

Kotevska, Olivera [ORNL] (ORCID:0000000316772243)↗

Secure Networks for First Responders and Special Forces

When NASA needed help better securing its communications with orbiting satellites, the Agency called on Western DataCom Co., Inc., to help develop a prototype Internet Protocol (IP) router. Westlake, Ohio-based Western DataCom designs, develops, and manufactures hardware that secures voice, video, and data transmissions over any IP-based network. The technology that it jointly developed with NASA is now serving as a communications solution in military and first-response situations.

Source record↗

Design of Zone-Based Hierarchical Protection System for 100% Renewable Microgrids

Design of a reliable and secure protection system for a 100% renewable microgrid with only inverter-based resources (IBRs), is quite challenging. Most of the existing protection schemes in the state-of-the-art are suitable for microgrids with mixed-type of distributed energy resources (DERs) that covers both rotating machine-based DERs as well as IBR-based DERs, where the fault current level is moderately high. Due to drastic reduction in fault current level based on mode of operation and the variation of the low fault current level based on the operating level of the IBRs, the existing protection schemes face critical challenges, in case of a 100% renewable microgrid. This article proposes a zone-based hierarchical protection scheme that partitions a microgrid into various zones-of-protection and assigns speed-based hierarchical protection schemes in order to address the fundamental challenges of such microgrids. The performance of the proposed scheme is evaluated using time-domain simulation study on a microgrid test system. The results corroborates that the proposed hierarchical zone-based protection scheme exhibits enhanced reliability, security and dependability while tested with various fault cases (fault types, locations, and impedances), and non-fault cases during both grid-tied and islanded mode.

grid-forming inverter↗

Oak Ridge National Laboratory's Strategic Research and Development Insights for Digital Twins

Oak Ridge National Laboratory (ORNL) is pleased to provide our response to the NITRD RFI on Digital Twins Research and Development. Digital twins are virtual representations of physical systems, leveraging real-time data to simulate and predict behaviors. ORNL is advancing digital twin technology across various disciplines, including neutron scattering, networking, science ecosystems, supercomputing, secure facilities, mobility technologies, materials design and discovery, power systems, fusion reactors, biological sciences, and earth observation. These efforts aim to enhance scientific research, operational efficiency, and decision-making processes. ORNL facilities, such as the High Flux Isotope Reactor (HFIR), Grid-C, Spallation Neutron Source (SNS), and Oak Ridge Leadership Computing Facility (OLCF), provide the infrastructure to develop and demonstrate these digital twin technologies. In this document, we lay out key challenges, research gaps, and future opportunities based on our experience with digital twins that aim to serve as useful contributions towards a National Digital Twins R&D Strategic Plan. In the remaining document, we address nine of the thirteen topic areas specified in the RFI.

97 MATHEMATICS AND COMPUTING↗