pull down to refresh

Tons of industrial stuff runs on old operating systems, especially when built by Microsoft shops. I've had good gigs porting embedded systems (mostly CE5, some NT, some XP) to long-term Linux in the 2010s.

The main issue is boards though; many of them are only working with (or certified for) specific operating systems.

Crowdstrike?

reply

It doesn't negate operating systems EOL

reply

It’s true that in industry they still use these old operating systems, I’ve run into that myself in the cork industry. But in my case, those systems were only on a local network and not connected to the internet. With this ticket machine, I’m not 100% sure, but it looks like it is connected to the internet.

reply

Ticket machines generally aren't on the internet but use private networks. The payment terminal often is (nowadays) but these must be isolated due to PCI/DSS with only a limited serial / USB connection for control flow.

like so:

[ vending machine ] --lan-- [ station control ] --wan or VPN-- [ backoffice ] 
     |
     | (control only)
     |
[ terminal ] ---- [internet or local network payment gateway]
reply

I was thinking something along those lines, when you said private networks, do you mean VPNs? I also thought they might just be connected to a local server at the station itself, and that server is connected to the internet (on a private network).

reply

Yeah added ascii art for clarity

reply