I have been asked by my IT department how a LabVIEW application is secure
In general how does a standard LabVIEW application respond to these requirements:
The runtime environment shall not be susceptible to buffer overflows, SQL injection, LDAP and XPath injection, code injection or any other injection flaws. Malicious file execution and insecure direct object references shall be prevented at all times.
I know certain ActiveX actions that are deemed "security risks" will now generate errors in the LabVIEW Run Time Engine unless the registry of the host computer has been specifically modified to allow such ActiveX calls.
I guess my point is, NI does take some steps to prevent some issues at the run-time level regardless of how your code is written, so if that is the level <they> are concerned about, I would reach out to my local NI Field engineer and/or NI Customer Support and ask for help in how to answer <them>.
As Sam_Sharp pointed out, there are several things that are difficult/impossible for the RunTimeEngine to protect against, in any language. If the author of the code does stupid things or deliberately has maliscious intent, there are many things they can do that is outside the bounds of an RTE. In LabVIEW, some of the 'holes' in other languages are hard (impossible??) to do. For example, you as a coder, do not have access to creating and manipulating pointers, so you can't create code that intentionally overwrites other [edit: memory-]sectors in the host machine memory. So that would also be a case of where the run-time-engine (and its memory manager) plugs (or significantly shores up) things and makes it "safer".
The main security threats I see coming from the LV RTE engine is that there is no way the RTE can protect against malicious file removals, file hashing, injecting bad commands and/or data into network(s) and databases etc., beyond the protection offered by the OS (file/folder permissions) and IT infrastructure (firewalls, database query protections etc.).
Not sure any of that helps you out or not.. A dialoge with NI seems required for you, perhaps bring together reps' from both parties (NI field engineer and your IT people) so that they can get a line of communication going.
QFang
CLD LabVIEW 7.1 to 2013
Similar Messages
-
I'm trying to set up my apple tv and have been asked for my apple id then my password. Then I am asked for the password for my password. What is this?
It's when I am in home share set up. I give my apple ID and password as asked, then I am prompted to provide a password for my password.
Sorry it's taken me so long to get back to you. had to go out for a few hours. -
A thin coloured line appeared on my i-Mac screen and I have been asked to pay £139 to have it repaired. This was reduced by the manager of the Sheffield store from c£300!!
The computer is 1 year and 19 days old but the warranty period is 1 year. I was uanable to bring the machine in earlier but the problem was there 2 weeks ago within the warranty period. Still no joy from the store as I had not reported it before the 12 months!!
What with Time Capsule back-up issues I an beginning to lose faith in Apple.
Surely a reasonable person could expect the machine to be repaired FOC as a goodwill gesture?opticalted wrote:
Surely a reasonable person could expect the machine to be repaired FOC as a goodwill gesture?
Not after the warranty has expired. Apple has no obligation to do so. -
I am using a Mac and just bought Photoshop Elements 13. I have been given a 28 page Pdf and have been asked to optimize the item to reduce the file size. Can this be done in Photoshop Elements? if so how?
No the pages will open as separate documents in Expert Mode. You really need Acrobat or possibly you could copy and paste the contents into MS word. Then re-save as PDF.
-
I have been asked to review a new app for Ipad/iphone . The developers site is asking me to download a plug- in to view, is this safe
What does http://developer.apple.com/ have to do with reviewing an app? Why aren't you downloading from the App Store?
I've never had any login there result in a request for any app....
The Dev Center is as safe as your logon... -
I have been asked to update my billing information on my account, when I update the account the info that comes back is that the card is denied? i have enterd it three times, and I know that the card is good and not expired. can anyone give me any advice?
How were you asked to update this information? Was it in an email? - if so you need to check whether it's genuine by looking at the sending address and the long header, and the URL of any link in it. If you are not absolutely sure it's from Apple you need to stop the card.
If you were actually on the iTunes Store having gone there directly then the request would be genuine, so no worries there, but you will need to contact Support. Go to https://getsupport.apple.com ; click 'See all products and services', then ' 'iTunes', and then 'iTunes Store', then 'Purchases, Billing & Redemption'. -
How do I reset my network settings on my iPad air. I have been asked for my password. I didn't know I had one. Where do I find it?
Some info for you ...
iOS: Forgot Passcode or Device Disabled
http://support.apple.com/kb/ht1212
iOS Passcodes
http://support.apple.com/kb/ht4113
Find My iPhone Activation Lock: Removing a Device from a Previous Owner's Account
http://support.apple.com/kb/ts4515 -
I have bought an used Iphone from a shop. then i put my account id in it. then it goes perfectly. After awhile i have done a reset all data and sitting then i could not get the Iphone started because it have been asked to put another email starting with u
For contact [email protected]Sounds like the Activation Lock is still set to the previous owner. If you are unable to get that Apple ID and password that iPhone is totally useless to you.
Take it back to the shop and demand your money back because they sold it to under false pretenses.
Allan -
I recently reset my phone and I have been asked to activate my iphone but I don't know either my email or password and I cannot get on to my phone any ideas what I can do?
Hi Meganmay22,
Welcome to the Apple Support Communities!
It sounds like the iPhone is in a status called Activation Lock. Please use the following article for information on Activation Lock; it includes information on locating your Apple ID.
iCloud: Find My iPhone Activation Lock in iOS 7
http://support.apple.com/kb/HT5818
Have a great day,
Joe -
I have just installed IoS7 on my I Phone. Having reset the security questions I have been ask for a Rescue Email address. My primary address is not acceptable, I have tried other addresses put but the process will not forward. I cannot go back, my phone now will not function. The Rescue Email address keeps appearing. Help please.
Did you check the email account for a verification email from Apple? You may need to respond by clicking the Verify Now link before the new rescue address will be accepted.
-
TS1702 We have been asked to purchase an update but can't cancel. It just keeps asking
We have been asked to purchase an update for a free app but it won't let us cancel? Just keeps popping back up!
Welcome to the Apple community.
Unfortunately, you cannot do very much with your phone unless you get assistance from the previous owner, they should either provide you with the password to unlock it or remove their account from the phone entirely remotely through iCloud.com > Find My Phone. -
I am locked out of the email account that i have been asked to go to to varify my icloud account what can I do
Contact the email service provider.
-
HT5622 I have been asked to change my password
I have been asked to change my password (i am sure i was using the correct one).
Since my change, i can not connect anymore (ICloud) or buy anything on ITunes.
Where should i ask for help (can't find the answer on Apple webste) ?I am back :-/
I've got this message : Le serveur n’a pas reconnu votre nom d’utilisateur ou votre mot de passe pour le compte « iCloud ». Assurez-vous de les avoir correctement saisis.
IN ENGLISH : The server did not recognize your user name or password for account "iCloud". Make sure you have correctly entered.
It works for ITunes and gets stuck with iCal.
When i enter my password, nothing happens and i have to force the system to get out.
I can't reach the 'assistance' button > i click but...nothing... -
I have been asked to change my Host Name . Is this genuine??
I have been asked to change my Host Name . Is this genuine??
For the DNS Changer malware see the following:
Will your internet service cut off on July 9?
DCWG | DNS Changer Working Group
How to remove the DNS Changer malware -
I have 300 apps organized in folders on my ipod touch 4th gen, and connected my iphone 4, these apps have copied over but none have been placed in folders, any ideas how to replicate folders from ipod to iphone...?
What may work is to restore the iPhone fom the backup of the iPod. However, if the two devices ahve different apps that come with the device, that may mess up some of the folders.
Maybe you are looking for
-
Page orientation - In Design CC
How do I add the odd landscape page into an In Design document which is mainly portrait? Any help would be appreciated.
-
Media Issues in Interactive PDF
I have inserted two video clips and two audio clips onto a page in a document I'm work on and they are giving me a lot of trouble. For some reason when I export the project as an swf, when I click the video files to play them they move up about a 1/
-
Problems with abc video podcast
I'm not sure what's causing this but none of the Abc news video podcast will play in iTunes on my Mac (10.4.4). If I load the files in Mplayer they work, with a bit of grey pixels here and there. The podcasts works just fine in iTunes on a windows ma
-
The radio changes stations on its own
The radio just changes stations by itself - it is irritating...i'm trying to study to nice, mellow music and all the sudden I get celtic fling music.....which is fine if I'm drinking a guiness, not so good if I'm trying to concentrate!
-
Hi All ... i have a serios issue with this we are developing an app and the client need to see the update and we can do any thing for the past 24 houers, any solution please ?