Initial Situation
V-ZUG networks its household appliances to offer additional digital services. However, this creates new attack surfaces. Unauthorized parties must not be able to control devices or make manipulated software or messages appear trustworthy. V-ZUG therefore required a security infrastructure that allows devices to be clearly identified and communication partners to be verified.
The Contribution of SCS
Together with V-ZUG, SCS developed a Public Key Infrastructure for identification, encryption, and digital signing. This allows devices and systems to communicate with each other trustworthily and verify the origin of messages.
Result
All produced IoT-capable devices from V-ZUG are equipped with an individual digital certificate and can thus connect securely to the V-ZUG cloud. The PKI is integrated into both device manufacturing and the internal IT landscape, forming a central basis of trust for device communication, firmware, and service access. It has evolved into a core component of V-ZUG’s IT landscape. Additional digital services can be built upon it. Value-added functions can be specifically activated on individual devices, such as an additional wash cycle, while service access is only enabled for authorized personnel and for a limited time. A prior Proof of Concept tested the essential aspects in advance and reduced project risks.
1 Certificate per Device
Individual digital identity directly from the factory.
ISO/IEC 27002
Root CA secured based on the security standard.
Periodic Audits
Of systems, access rights, and work processes.




