The public comment period for this NIST IR is open through November 15, 2024.
Manufacturing Supply Chain Traceability Using Blockchain Related Technologies
Presently, end operating environments within critical infrastructure sectors have limited ability to obtain trusted pedigree and provenance information for the components supporting their operational environments. Insufficient traceability information for critical components reduces effectiveness of risk-based evaluations of security, safety, sustainability, and other compliance needs within end operating environments, including reduced ability to detect vectors of adversarial attack.
A decentralized data approach to help manufacturers and critical infrastructure sectors to secure their supply chains and end operating environments
Abstract
The MVP RI demonstrates traceability of non-repudiable claims and supporting evidence about products and production methods from authoritative sources across manufacturing supply chains using blockchain related technologies. This is a follow-on effort from NIST IR 8419.
The delivered MVP reference implementation serves as an early example of the mechanics of manufacturing supply chain traceability using blockchain related technologies and is a starting point for further refinement. The MVP implementation will provide a generalized architecture, applicable across a broad array of verticals and use cases.
This MVP implementation may be further refined and specialized by industry, academia, or other organizations, using specific data standards, and illustrating different supply chain domain contexts. The MVP implementation will demonstrate the traceability mechanics in the context of microelectronics and industrial control software used by end operating environments in critical infrastructure sectors.
To help manufacturers across the United States to secure supply chains, the NCCoE, together with industry and standards stakeholders, will implement a reference implementation illustrating securing and exchanging component traceability information using multiple blockchain enabled ecosystems.
Join the Community of Interest
A Community of Interest (COI) is a group of professionals and advisors who share business insights, technical expertise, challenges, and perspectives to guide NCCoE projects. COIs often include experts, innovators, and everyday users of cybersecurity and privacy technologies. Share your expertise and consider becoming a member of this project's COI.