The progressive digitization of Operation Technology (OT), thanks also to the integration of Industrial Internet of Things (IIoT) devices, is reshaping the landscape of modern industrial systems. This introduces additional complexity and amplifies the heterogeneity across hardware and software ecosystems, thus exacerbating the challenges of orchestration and lifecycle management, which become particularly intricate and demanding. To meet these challenges, modern DevOps practices, such as Continuous Integration and Continuous Deployment (CI/CD), runtime observability, and fine-grained access control, are essential to shorten time-to-market, ensure service quality, manage operational complexity, while providing security guarantees. Moving a step toward seamless integration of OT into cloud-native ecosystems, we propose Kubernetes-based OT Orchestrator (KOTO), an orchestration platform that extends Kubernetes to enable comprehensive lifecycle management of OT devices in industrial environments. KOTO bridges the gap between IT and OT by seamlessly integrating with existing CI/CD pipelines and implementing Role-Based Access Control (RBAC) mechanisms tailored to device-level permissions. It abstracts the management of heterogeneous, multi-vendor hardware through a unified abstraction, enabling scalable and secure operations across diverse industrial setups. Without loss of generality, we demonstrate the use of the platform in managing Programmable Logic Controllers (PLCs). We then perform extensive evaluations in a realistic deployment environment, validating KOTO's effectiveness in enhancing operational resilience and responsiveness.

Giulianelli, N., Sabbioni, A., Montebugnoli, S., Bujari, A., Corradi, A. (2025). KOTO: A Kubernetes-Based Platform for Secure and Scalable OT Orchestration in Industry 5.0. Association for Computing Machinery, Inc [10.1145/3773274.3774700].

KOTO: A Kubernetes-Based Platform for Secure and Scalable OT Orchestration in Industry 5.0

Giulianelli N.;Sabbioni A.;Montebugnoli S.;Bujari A.;Corradi A.
2025

Abstract

The progressive digitization of Operation Technology (OT), thanks also to the integration of Industrial Internet of Things (IIoT) devices, is reshaping the landscape of modern industrial systems. This introduces additional complexity and amplifies the heterogeneity across hardware and software ecosystems, thus exacerbating the challenges of orchestration and lifecycle management, which become particularly intricate and demanding. To meet these challenges, modern DevOps practices, such as Continuous Integration and Continuous Deployment (CI/CD), runtime observability, and fine-grained access control, are essential to shorten time-to-market, ensure service quality, manage operational complexity, while providing security guarantees. Moving a step toward seamless integration of OT into cloud-native ecosystems, we propose Kubernetes-based OT Orchestrator (KOTO), an orchestration platform that extends Kubernetes to enable comprehensive lifecycle management of OT devices in industrial environments. KOTO bridges the gap between IT and OT by seamlessly integrating with existing CI/CD pipelines and implementing Role-Based Access Control (RBAC) mechanisms tailored to device-level permissions. It abstracts the management of heterogeneous, multi-vendor hardware through a unified abstraction, enabling scalable and secure operations across diverse industrial setups. Without loss of generality, we demonstrate the use of the platform in managing Programmable Logic Controllers (PLCs). We then perform extensive evaluations in a realistic deployment environment, validating KOTO's effectiveness in enhancing operational resilience and responsiveness.
2025
UCC '25: Proceedings of the 18th IEEE/ACM International Conference on Utility and Cloud Computing
1
6
Giulianelli, N., Sabbioni, A., Montebugnoli, S., Bujari, A., Corradi, A. (2025). KOTO: A Kubernetes-Based Platform for Secure and Scalable OT Orchestration in Industry 5.0. Association for Computing Machinery, Inc [10.1145/3773274.3774700].
Giulianelli, N.; Sabbioni, A.; Montebugnoli, S.; Bujari, A.; Corradi, A.
File in questo prodotto:
File Dimensione Formato  
KOTO_ACM_format (1).pdf

accesso aperto

Tipo: Versione (PDF) editoriale / Version Of Record
Licenza: Licenza per Accesso Aperto. Creative Commons Attribuzione (CCBY)
Dimensione 761.85 kB
Formato Adobe PDF
761.85 kB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11585/1050208
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? 0
social impact