{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T04:23:28Z","timestamp":1760243008102,"version":"build-2065373602"},"reference-count":33,"publisher":"MDPI AG","issue":"2","license":[{"start":{"date-parts":[[2015,3,24]],"date-time":"2015-03-24T00:00:00Z","timestamp":1427155200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Computers"],"abstract":"<jats:p>Embedded systems show the tendency of becoming more and more connected. This fact combined with the trend towards the Internet of Things, from which measuring instruments are not immune (e.g., smart meters), lets one assume that security in measuring instruments will inevitably play an important role soon. Additionally, measuring instruments have adopted general-purpose operating systems to offer the user a broader functionality that is not necessarily restricted towards measurement alone. In this paper, a flexible software system architecture is presented that addresses these challenges within the framework of essential requirements laid down in the Measuring Instruments Directive of the European Union. This system architecture tries to eliminate the risks general-purpose operating systems have by wrapping them, together with dedicated applications, in secure sandboxes, while supervising the communication between the essential parts and the outside world.<\/jats:p>","DOI":"10.3390\/computers4020061","type":"journal-article","created":{"date-parts":[[2015,3,24]],"date-time":"2015-03-24T13:07:25Z","timestamp":1427202445000},"page":"61-86","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":9,"title":["A Secure System Architecture for Measuring Instruments in Legal Metrology"],"prefix":"10.3390","volume":"4","author":[{"given":"Daniel","family":"Peters","sequence":"first","affiliation":[{"name":"Physikalisch-Technische Bundesanstalt (PTB), Abbestrasse 2\u201312, 10587 Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Michael","family":"Peter","sequence":"additional","affiliation":[{"name":"Security in Telecommunications, Technische Universit\u00e4t Berlin, Ernst-Reuter-Platz 7, 10587 Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jean-Pierre","family":"Seifert","sequence":"additional","affiliation":[{"name":"Security in Telecommunications, Technische Universit\u00e4t Berlin, Ernst-Reuter-Platz 7, 10587 Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Florian","family":"Thiel","sequence":"additional","affiliation":[{"name":"Physikalisch-Technische Bundesanstalt (PTB), Abbestrasse 2\u201312, 10587 Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2015,3,24]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"42","DOI":"10.1109\/MC.2009.118","article-title":"Embedded Software: Facts, Figures, and Future","volume":"42","author":"Ebert","year":"2009","journal-title":"IEEE Comput."},{"key":"ref_2","unstructured":"Leffler, N., and Thiel, F. (2013). Im Gesch\u00e4ftsverkehr das richtige Ma\u00df\u2014Das neue Mess und Eichgesetz, Schlaglichter der Wirtschaftspolitik, November 2013, Monatsbericht, Bundesministerium f\u00fcr Wirtschaft und Technologie (BMWi). In German."},{"key":"ref_3","unstructured":"Chelf, B. (2011). Measuring Software Quality\u2014A Study of Open Source Software, Coverity."},{"key":"ref_4","unstructured":"(2008). General Requirements for Software Controlled Measuring Instruments, Bureau International de M\u00e9trologie L\u00e9gale."},{"key":"ref_5","unstructured":"(2014). Directive 2014\/32\/EU of the European Parliament and of the Council, European Commission."},{"key":"ref_6","unstructured":"(2004). Directive 2004\/22\/EC of the European Parliament and of the Council, European Commission."},{"key":"ref_7","unstructured":"(2012). WELMEC 7.2, Issue 5, Software Guide, WELMEC Secretariat."},{"key":"ref_8","unstructured":"Lackorzynski, A., Warg, A., and Peter, M. (2010, January 25\u201327). Virtual Processors as Kernel Interface, Nairobi, Kenya."},{"key":"ref_9","doi-asserted-by":"crossref","first-page":"2","DOI":"10.1145\/1168919.1168860","article-title":"A Comparison of Software and Hardware Techniques for x86 Virtualization","volume":"34","author":"Adams","year":"2006","journal-title":"SIGARCH Comput. Archit. News"},{"key":"ref_10","unstructured":"Frenzel, T., Lackorzynski, A., Warg, A., and H\u00e4rtig, H. (2010, January 25\u201327). ARM TrustZone as a Virtualization Technique in Embedded Systems, Nairobi, Kenya."},{"key":"ref_11","unstructured":"Wojtczuk, R. (2008). Black Hat USA, Invisible Things Lab."},{"key":"ref_12","unstructured":"Liebergeld, A.S., Peter, M., and Lackorzynski, A. (2010, January 25\u201327). Towards Modular Security-Conscious Virtual Machines, Nairobi, Kenya."},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Lange, M., Liebergeld, S., Lackorzynski, A., Warg, A., and Peter, M. (2011, January 17\u201321). L4Android: A Generic Operating System Framework for Secure Smartphones, Chicago, IL, USA.","DOI":"10.1145\/2046614.2046623"},{"key":"ref_14","doi-asserted-by":"crossref","unstructured":"Heiser, G., Uhlig, V., and LeVasseur, J. (2006). Are Virtual-machine Monitors Microkernels Done Right?. SIGOPS Oper. Syst. Rev., 40.","DOI":"10.1145\/1113361.1113363"},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Hohmuth, M., Peter, M., H\u00e4rtig, H., and Shapiro, J.S. (2004, January 19\u201322). Reducing TCB Size by Using Untrusted Components: Small Kernels Versus Virtual-machine Monitors, Leuven, Belgium.","DOI":"10.1145\/1133572.1133615"},{"key":"ref_16","unstructured":"Heiser, G. (April, January 31). The Role of Virtualization in Embedded Systems, Glasgow, UK."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Peter, M., Schild, H., Lackorzynski, A., and Warg, A. (2009, January 31). Virtual Machines Jailed: Virtualization in Systems with Small Trusted Computing Bases, Nuremberg, Germany.","DOI":"10.1145\/1518684.1518688"},{"key":"ref_18","unstructured":"Beckwith, R.W., Vanfleet, W.M., and MacLaren, L. (April, January 29). High Assurance Security\/Safety for Deeply Embedded, Real-time Systems, San Francisco, CA, USA."},{"key":"ref_19","unstructured":"O\u2019Dowd, D. Available online: http:\/\/www.rtcmagazine.com\/articles\/view\/101494."},{"key":"ref_20","unstructured":"H\u00e4rtig, H., Loeser, J., Mehnert, F., Reuther, L., Pohlack, M., and Warg, A. (2004, January 6\u20138). An I\/O Architecture for Mikrokernel-Based Operating Systems, San Francisco, CA, USA."},{"key":"ref_21","unstructured":"Kerstan, T., Baldin, D., and Groesbrink, S. (2010, January 7\u20139). Full virtualization of real-time systems by temporal partitioning, Brussels, Belgium."},{"key":"ref_22","doi-asserted-by":"crossref","unstructured":"Azab, A.M., Ning, P., Sezer, E.C., and Zhang, X. (2009, January 7\u201311). HIMA: A Hypervisor-Based Integrity Measurement Agent, Honolulu, HI, USA.","DOI":"10.1109\/ACSAC.2009.50"},{"key":"ref_23","unstructured":"Klein, G., Elphinstone, K., Heiser, G., Andronick, J., Cock, D., Derrin, P., Elkaduwe, D., Engelhardt, K., Kolanski, R., and Norrish, M. (2009, January 11\u201314). seL4: Formal Verification of an OS Kernel, Big Sky, MT, USA."},{"key":"ref_24","unstructured":"Lackorzynski, A., Danisevskis, J., Nordholz, J., and Peter, M. (2011, January 20\u201322). Real-Time Performance of L4Linux, Prague, Czech."},{"key":"ref_25","unstructured":"Neve, M., and Seifert, J.-P. (2006, January 17\u201318). Advances on Access-driven Cache Attacks on AES, Montreal, QC, Canada."},{"key":"ref_26","first-page":"5","article-title":"The challenge for legal metrology of operating systems embedded in measuring instruments","volume":"52","author":"Thiel","year":"2011","journal-title":"OIML Bull."},{"key":"ref_27","unstructured":"Available online: https:\/\/www.nsa.gov\/ia\/_files\/os\/redhat\/rhel5-guide-i731.pdf."},{"key":"ref_28","doi-asserted-by":"crossref","unstructured":"Steinberg, U., and Kauer, B. (2010, January 13\u201316). NOVA: A Microhypervisor-based Secure Virtualization Architecture, Paris, France.","DOI":"10.1145\/1755913.1755935"},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Garfinkel, T., Pfaff, B., Chow, J., Rosenblum, M., and Boneh, D. (2003, January 19\u201322). Terra: A Virtual Machine-based Platform for Trusted Computing, Bolton Landing, NY, USA.","DOI":"10.1145\/945445.945464"},{"key":"ref_30","doi-asserted-by":"crossref","first-page":"744","DOI":"10.1109\/TSG.2011.2174811","article-title":"Cumulative Attestation Kernels for Embedded Systems","volume":"3","author":"LeMay","year":"2012","journal-title":"IEEE Trans. Smart Grid."},{"key":"ref_31","unstructured":"Doeornemann, K., and von Gernler, A. (2013, January 5\u20136). Cybergateways for Securing Critical Infrastructures, Berlin, Germany."},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Boccardo, D.R., da Costa Carmo, L.F.R., Dezan, M.H., Machado, R.C.S., and de Aguiar Portugal, S. (2010, January 11\u201313). Software evaluation of smart meters within a Legal Metrology perspective: A Brazilian case, Gothenburg, Sweden.","DOI":"10.1109\/ISGTEUROPE.2010.5638881"},{"key":"ref_33","doi-asserted-by":"crossref","first-page":"22","DOI":"10.1080\/19315775.2014.11721691","article-title":"Software Analysis and Protection for Smart Metering","volume":"9","author":"Boccardo","year":"2014","journal-title":"NCSLI Meas."}],"container-title":["Computers"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2073-431X\/4\/2\/61\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T20:43:53Z","timestamp":1760215433000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2073-431X\/4\/2\/61"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015,3,24]]},"references-count":33,"journal-issue":{"issue":"2","published-online":{"date-parts":[[2015,6]]}},"alternative-id":["computers4020061"],"URL":"https:\/\/doi.org\/10.3390\/computers4020061","relation":{},"ISSN":["2073-431X"],"issn-type":[{"type":"electronic","value":"2073-431X"}],"subject":[],"published":{"date-parts":[[2015,3,24]]}}}