SlideShare a Scribd company logo
Achieving resilient and assured PNT in secure information networks
June 8, 2022 (9:15-9:35a) | JNC, San Diego, CA | Chuck Perry, Sync Business Development Manager NA, Oscilloquartz
Resilient PNT mandate | Ideal PNT architecture | Best PNT practices for defense-in-depth security
PNT* cyber threats are at an all-time high everywhere and are
growing in sophistication
*Positioning, Navigation & Timing | T enables P & N | aPNT+ (assured PNT)
Pentagon
Army
Space Force
Air Force
Navy
PNT
assurance
© 2022 ADVA. All rights reserved.
3
Driven by US Federal Executive Order 13905 and UK and Euro Commissions
• PNT stands for Positioning, Navigation & Timing, and T is essential to enable P & N
• Protect government/industry critical infrastructure against PNT disruptions from GPS
jamming/spoofing and network timing cyberattacks
• Deploy resilient, assured and self-survivable PNT systems with defense-in-depth capability
• Target critical infrastructure under national security threats
• Use published resilient PNT guidelines and standard in progress
• DHS Resilient PNT Conformance Framework
• NIST Cybersecurity Framework for PNT Profile
• IEEE P1952 Resilient PNT for User Equipment Standard working group
What is the resilient PNT?
Power grids Finance Transportation Communications Data centers
resiliency levels
clock sources
1
2
3
N
multisource
1 2 3 4
next-gen
system
© 2022 ADVA. All rights reserved.
4
Critical infrastructure under warfighting and homeland security threats
If GPS is disrupted or compromised
Finance
Communications
Power grids
Transportation Data centers
All supported by
PNT cyber
threats
GPS
© 2022 ADVA. All rights reserved.
5
What are the PNT cyberthreats and GNSS vulnerabilities?
RARE
Cyberattacks
GPS/GNSS
receiver
Jamming
RARE
GPS/GNSS
degradation
causes
Environmental
GPS/GNSS ground
segment errors
Adjacent-band
transmitters
Spoofing
External GPS/GNSS level Internal network level
COMMON
NTP
PTP
More frequent
PNT cyber
threats
/ /
Network
interference
Client clock
Boundary
clock
© 2022 ADVA. All rights reserved.
6
Networkwide
Sync Mgmt
WAN network
packet LAN network
Redundant timing architecture with a single GPS source
Data comm Center 1
(DC 1)
GM-A
(GNSS NTP/PTP
grandmaster time server)
Data comm Center 2
(DC 2)
PTP failover backup
cross reference monitoring
1
2
3
GPS/GNSS
GM-B
PTP
Client machine/server/VM
running critical command and
control applications
PTP
4
NTP 4 4
Client software sync
monitor
PNT
assurance
Networkwide sync
management
© 2022 ADVA. All rights reserved.
7
WAN network
packet LAN network
“Zero-trust multisource backup” timing architecture
DC 1
ePRTC*
DC 2
PTP failover backup
Cross reference monitoring
1
3
GM-B
2
PNT backup
sources
PNT
assurance
Cesium, NIST, WR,
eLORAN, LEO, etc.
National time
standard like NIST
*Enhanced Primary
reference time clock
(GM-A + backup
sources)
1
Networkwide
Sync Mgmt
Networkwide sync
management
PTP
Client machine/server/VM
running critical command and
control applications
PTP
5
NTP 5 5
Client software sync
monitor
4
© 2022 ADVA. All rights reserved.
8
WAN network
packet LAN network
“Zero-trust multi-source backup” timing architecture
DC 1
ePRTC*
DC 2
PTP failover backup
Cross reference monitoring
1
3
GM-B
2
PNT backup
sources
PNT
assurance
Cesium, NIST, WR,
eLORAN, LEO, etc.
National time
standard like NIST
*Enhanced primary
reference time clock
(GM-A + backup
sources)
1
Networkwide
Sync Mgmt
Networkwide sync
management
PTP
Client machine/server/VM
running critical command and
control applications
PTP
5
NTP 5 5
Client software sync
monitor
4
Worst
case
scenario:
GPS sats
shot down
© 2022 ADVA. All rights reserved.
9
PPS/PPS+ToD
10MHz
BITS
SyncE
PTP
How ePRTC cesium backup timing works
GNSS MB
receiver Time/phase holdover if GPS/GNSS goes down
ePRTC+ solution: 100ns over 100 days
Anti-jam
antenna
14 days
coreSync
Optical cesium atomic clock
Multi-source
clock combiner
Grandmaster
clock
Next-Gen Optical
Cesium clock
GPS Time error
100ns
30ns
edgeSync
grandmaster
ePRTC+ solution
(functional diagram)
✓
Other sources
GPS
GPS + combiner integrated into the grandmaster
© 2022 ADVA. All rights reserved.
10
Secure network-wide sync management
Neural AI/ML intelligence for self-survivability, end-to-end control,
visibility, resilient and assured PNT
Geolocation DCs 1 and 2 alert
PTP backup assurance to DC 2
Timing chain alert with ePRTC/
PTP backup rearrangements
DC 1 GM-A alert with ePRTC/PTP backup to DC 2
Timing topology with
ePRTC/PTP backup
Vendor-agnostic GNSS
analytics/assurance
PTP backup
ePRTC backup DC 2
DC 1
DC 2
DC 1
DC 2
DC 1 DC 2
PTP backup
ePRTC backup
DC 1
DC 2
8
6
5
3
2
1
DC 2 GM-B alert with PTP
backup from DC 1 ePRTC
4
Client sync monitor
7
Interoperability with
other command and
control systems
API
Open
interface
9
Networkwide
Sync Mgmt
Networkwide sync
management
9
• Secure communications
• MIL 5G PNT systems (land, air, sea)
• Command and control centers
• Radar event tagging system
• SATCOM ground stations
• SATCOM network operations centers
Thank you
IMPORTANT NOTICE
ADVA is the exclusive owner or licensee of the content, material, and information in this presentation. Any reproduction, publication or reprint, in whole or in part, is strictly prohibited.
The information in this presentation may not be accurate, complete or up to date, and is provided without warranties or representations of any kind, either express or implied. ADVA shall not be responsible for and disclaims any liability for any loss or damages, including without limitation,
direct, indirect, incidental, consequential and special damages, alleged to have been caused by or in connection with using and/or relying on the information contained in this presentation.
Copyright © for the entire content of this presentation: ADVA.
info@adva.com

More Related Content

PDF
In-service synchronization monitoring and assurance
PDF
Addressing PNT threats in critical defense infrastructure
PDF
Introducing ultra-precise time for server-hosted applications
PDF
Introducing GNSS/GPS backup as a service (GBaaS)
PDF
Best practices in synchronizing IP-based packet broadcast networks
PDF
ePRTC in data centers – GNSS backup as a service (GBaaS)
PDF
Introducing the market's first high-performance optical cesium clock
PDF
Best practices in synchronizing IP-based packet broadcasting networks
In-service synchronization monitoring and assurance
Addressing PNT threats in critical defense infrastructure
Introducing ultra-precise time for server-hosted applications
Introducing GNSS/GPS backup as a service (GBaaS)
Best practices in synchronizing IP-based packet broadcast networks
ePRTC in data centers – GNSS backup as a service (GBaaS)
Introducing the market's first high-performance optical cesium clock
Best practices in synchronizing IP-based packet broadcasting networks

What's hot (20)

PDF
Single vs. multi-carrier in ROADM networks
PDF
Timing and synchronization for 5G over optical networks
PDF
Introducing Coherent 100ZR for the optical edge
PDF
Introducing Ensemble SaaS MANO
PDF
Syncing the cloud - from T1 to TAP
PPTX
Microsoft Azure in 5 minutes
PDF
Beginners: Open RAN Terminology – Virtualization, Disaggregation & Decomposition
PPTX
Mavenir: OpenRAN and 5G Network Economics
PDF
ePRTC in data centers - GNSS-backup-as-a-service (GBaaS)
PDF
5G Network Managament for Inteligent Transport Systems
PDF
Sync on TAP - Syncing infrastructure with software
PPTX
Software defined networking(sdn) vahid sadri
PDF
Ericsson NFVi solution
PDF
O-RAN and the enterprise
PDF
ADVA aPNT+™ security enhancements
PDF
Part 8: 5G Spectrum - 5G for Absolute Beginners
PDF
Synchronizing 5G networks
PDF
Meet stringent latency demands with time-sensitive networking
PDF
Introducing MQTT
DOC
Gcc notes unit 1
Single vs. multi-carrier in ROADM networks
Timing and synchronization for 5G over optical networks
Introducing Coherent 100ZR for the optical edge
Introducing Ensemble SaaS MANO
Syncing the cloud - from T1 to TAP
Microsoft Azure in 5 minutes
Beginners: Open RAN Terminology – Virtualization, Disaggregation & Decomposition
Mavenir: OpenRAN and 5G Network Economics
ePRTC in data centers - GNSS-backup-as-a-service (GBaaS)
5G Network Managament for Inteligent Transport Systems
Sync on TAP - Syncing infrastructure with software
Software defined networking(sdn) vahid sadri
Ericsson NFVi solution
O-RAN and the enterprise
ADVA aPNT+™ security enhancements
Part 8: 5G Spectrum - 5G for Absolute Beginners
Synchronizing 5G networks
Meet stringent latency demands with time-sensitive networking
Introducing MQTT
Gcc notes unit 1
Ad

Similar to Achieving resilient and assured PNT in secure information networks (20)

PDF
The need for GBaaS as GPS/GNSS is no longer a reliable source for critical PN...
PDF
ADVA launches new aPNT+™ platform to protect critical network infrastructure
PDF
Best practices for secure synchronization in smart grids
PPTX
ADVA’s telecommunications solutions for smart grids
PDF
Best sync practices and architecture strategies for secure, resilient PNT in ...
PDF
Best practices for resilient NIST/UTC traceable sub-µsec timestamping of fina...
PDF
Best practices in solving PNT threats in critical defense communications infr...
PDF
Assured PNT for data centers: All you need to know
PDF
Best practices for secure PNT management in a multi vendor environment
PDF
Protecting third-party timing receivers from cyberattacks with trusted networ...
PDF
Precise and assured timing for enterprise networks
PDF
Assured timing for power networks
PDF
Making substation clocks and private LTE/5G networks robust against GPS/GNSS ...
PDF
Case studies in achieving resilient timing in mission-critical networks
PDF
PNT alternatives for multi-source timing deployments
PDF
Time as a service for the IoT world of tomorrow
PDF
Solving synchronization challenges with critical infrastructures
PDF
Strengthening resilience and integrity in timing
PDF
Pushing the limits of ePRTC: 100ns holdover for 100 days
PDF
Synchronization For High Frequency Trading Networks: A How To Guide
The need for GBaaS as GPS/GNSS is no longer a reliable source for critical PN...
ADVA launches new aPNT+™ platform to protect critical network infrastructure
Best practices for secure synchronization in smart grids
ADVA’s telecommunications solutions for smart grids
Best sync practices and architecture strategies for secure, resilient PNT in ...
Best practices for resilient NIST/UTC traceable sub-µsec timestamping of fina...
Best practices in solving PNT threats in critical defense communications infr...
Assured PNT for data centers: All you need to know
Best practices for secure PNT management in a multi vendor environment
Protecting third-party timing receivers from cyberattacks with trusted networ...
Precise and assured timing for enterprise networks
Assured timing for power networks
Making substation clocks and private LTE/5G networks robust against GPS/GNSS ...
Case studies in achieving resilient timing in mission-critical networks
PNT alternatives for multi-source timing deployments
Time as a service for the IoT world of tomorrow
Solving synchronization challenges with critical infrastructures
Strengthening resilience and integrity in timing
Pushing the limits of ePRTC: 100ns holdover for 100 days
Synchronization For High Frequency Trading Networks: A How To Guide
Ad

More from ADVA (16)

PDF
Industrial optically pumped cesium beam clock
PDF
Industry's longest holdover with the OSA 3350 SePRC™ optical cesium clock
PDF
Introducing Ensemble Cloudlet for on-premises cloud demand
PDF
Making networks secure with multi-layer encryption
PDF
Quantum threat: How to protect your optical network
PDF
Optical networks and the ecodesign tradeoff between climate change mitigation...
PDF
Trends in next-generation data center interconnects (DCI)
PPTX
Open optical edge connecting mobile access networks
PDF
Introducing Adva Network Security – a trusted German anchor
PDF
Meet the industry's first pluggable 10G demarcation device
PDF
Introducing ADVA AccessWave25™
PDF
10G edge technology for outdoor environments
PDF
The quantum age - secure transport networks
PDF
From leased lines to optical spectrum services
PDF
The coherent optical edge
PDF
Get your timing right for 5G OpenRAN!
Industrial optically pumped cesium beam clock
Industry's longest holdover with the OSA 3350 SePRC™ optical cesium clock
Introducing Ensemble Cloudlet for on-premises cloud demand
Making networks secure with multi-layer encryption
Quantum threat: How to protect your optical network
Optical networks and the ecodesign tradeoff between climate change mitigation...
Trends in next-generation data center interconnects (DCI)
Open optical edge connecting mobile access networks
Introducing Adva Network Security – a trusted German anchor
Meet the industry's first pluggable 10G demarcation device
Introducing ADVA AccessWave25™
10G edge technology for outdoor environments
The quantum age - secure transport networks
From leased lines to optical spectrum services
The coherent optical edge
Get your timing right for 5G OpenRAN!

Recently uploaded (20)

PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PPT
Teaching material agriculture food technology
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
DOCX
The AUB Centre for AI in Media Proposal.docx
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PDF
Approach and Philosophy of On baking technology
PPTX
Cloud computing and distributed systems.
PDF
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PDF
Spectral efficient network and resource selection model in 5G networks
PPTX
sap open course for s4hana steps from ECC to s4
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Building Integrated photovoltaic BIPV_UPV.pdf
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
Per capita expenditure prediction using model stacking based on satellite ima...
Teaching material agriculture food technology
Review of recent advances in non-invasive hemoglobin estimation
The Rise and Fall of 3GPP – Time for a Sabbatical?
The AUB Centre for AI in Media Proposal.docx
Digital-Transformation-Roadmap-for-Companies.pptx
Approach and Philosophy of On baking technology
Cloud computing and distributed systems.
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Understanding_Digital_Forensics_Presentation.pptx
Spectral efficient network and resource selection model in 5G networks
sap open course for s4hana steps from ECC to s4
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
20250228 LYD VKU AI Blended-Learning.pptx
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...

Achieving resilient and assured PNT in secure information networks

  • 1. Achieving resilient and assured PNT in secure information networks June 8, 2022 (9:15-9:35a) | JNC, San Diego, CA | Chuck Perry, Sync Business Development Manager NA, Oscilloquartz Resilient PNT mandate | Ideal PNT architecture | Best PNT practices for defense-in-depth security
  • 2. PNT* cyber threats are at an all-time high everywhere and are growing in sophistication *Positioning, Navigation & Timing | T enables P & N | aPNT+ (assured PNT) Pentagon Army Space Force Air Force Navy PNT assurance
  • 3. © 2022 ADVA. All rights reserved. 3 Driven by US Federal Executive Order 13905 and UK and Euro Commissions • PNT stands for Positioning, Navigation & Timing, and T is essential to enable P & N • Protect government/industry critical infrastructure against PNT disruptions from GPS jamming/spoofing and network timing cyberattacks • Deploy resilient, assured and self-survivable PNT systems with defense-in-depth capability • Target critical infrastructure under national security threats • Use published resilient PNT guidelines and standard in progress • DHS Resilient PNT Conformance Framework • NIST Cybersecurity Framework for PNT Profile • IEEE P1952 Resilient PNT for User Equipment Standard working group What is the resilient PNT? Power grids Finance Transportation Communications Data centers resiliency levels clock sources 1 2 3 N multisource 1 2 3 4 next-gen system
  • 4. © 2022 ADVA. All rights reserved. 4 Critical infrastructure under warfighting and homeland security threats If GPS is disrupted or compromised Finance Communications Power grids Transportation Data centers All supported by PNT cyber threats GPS
  • 5. © 2022 ADVA. All rights reserved. 5 What are the PNT cyberthreats and GNSS vulnerabilities? RARE Cyberattacks GPS/GNSS receiver Jamming RARE GPS/GNSS degradation causes Environmental GPS/GNSS ground segment errors Adjacent-band transmitters Spoofing External GPS/GNSS level Internal network level COMMON NTP PTP More frequent PNT cyber threats / / Network interference Client clock Boundary clock
  • 6. © 2022 ADVA. All rights reserved. 6 Networkwide Sync Mgmt WAN network packet LAN network Redundant timing architecture with a single GPS source Data comm Center 1 (DC 1) GM-A (GNSS NTP/PTP grandmaster time server) Data comm Center 2 (DC 2) PTP failover backup cross reference monitoring 1 2 3 GPS/GNSS GM-B PTP Client machine/server/VM running critical command and control applications PTP 4 NTP 4 4 Client software sync monitor PNT assurance Networkwide sync management
  • 7. © 2022 ADVA. All rights reserved. 7 WAN network packet LAN network “Zero-trust multisource backup” timing architecture DC 1 ePRTC* DC 2 PTP failover backup Cross reference monitoring 1 3 GM-B 2 PNT backup sources PNT assurance Cesium, NIST, WR, eLORAN, LEO, etc. National time standard like NIST *Enhanced Primary reference time clock (GM-A + backup sources) 1 Networkwide Sync Mgmt Networkwide sync management PTP Client machine/server/VM running critical command and control applications PTP 5 NTP 5 5 Client software sync monitor 4
  • 8. © 2022 ADVA. All rights reserved. 8 WAN network packet LAN network “Zero-trust multi-source backup” timing architecture DC 1 ePRTC* DC 2 PTP failover backup Cross reference monitoring 1 3 GM-B 2 PNT backup sources PNT assurance Cesium, NIST, WR, eLORAN, LEO, etc. National time standard like NIST *Enhanced primary reference time clock (GM-A + backup sources) 1 Networkwide Sync Mgmt Networkwide sync management PTP Client machine/server/VM running critical command and control applications PTP 5 NTP 5 5 Client software sync monitor 4 Worst case scenario: GPS sats shot down
  • 9. © 2022 ADVA. All rights reserved. 9 PPS/PPS+ToD 10MHz BITS SyncE PTP How ePRTC cesium backup timing works GNSS MB receiver Time/phase holdover if GPS/GNSS goes down ePRTC+ solution: 100ns over 100 days Anti-jam antenna 14 days coreSync Optical cesium atomic clock Multi-source clock combiner Grandmaster clock Next-Gen Optical Cesium clock GPS Time error 100ns 30ns edgeSync grandmaster ePRTC+ solution (functional diagram) ✓ Other sources GPS GPS + combiner integrated into the grandmaster
  • 10. © 2022 ADVA. All rights reserved. 10 Secure network-wide sync management Neural AI/ML intelligence for self-survivability, end-to-end control, visibility, resilient and assured PNT Geolocation DCs 1 and 2 alert PTP backup assurance to DC 2 Timing chain alert with ePRTC/ PTP backup rearrangements DC 1 GM-A alert with ePRTC/PTP backup to DC 2 Timing topology with ePRTC/PTP backup Vendor-agnostic GNSS analytics/assurance PTP backup ePRTC backup DC 2 DC 1 DC 2 DC 1 DC 2 DC 1 DC 2 PTP backup ePRTC backup DC 1 DC 2 8 6 5 3 2 1 DC 2 GM-B alert with PTP backup from DC 1 ePRTC 4 Client sync monitor 7 Interoperability with other command and control systems API Open interface 9 Networkwide Sync Mgmt Networkwide sync management 9 • Secure communications • MIL 5G PNT systems (land, air, sea) • Command and control centers • Radar event tagging system • SATCOM ground stations • SATCOM network operations centers
  • 11. Thank you IMPORTANT NOTICE ADVA is the exclusive owner or licensee of the content, material, and information in this presentation. Any reproduction, publication or reprint, in whole or in part, is strictly prohibited. The information in this presentation may not be accurate, complete or up to date, and is provided without warranties or representations of any kind, either express or implied. ADVA shall not be responsible for and disclaims any liability for any loss or damages, including without limitation, direct, indirect, incidental, consequential and special damages, alleged to have been caused by or in connection with using and/or relying on the information contained in this presentation. Copyright © for the entire content of this presentation: ADVA. info@adva.com