首页> 外文会议>12th International Conference on System Safety and Cyber-Security 2017 >A security protection approach based on software defined network for inter-area communication in industrial control systems
【24h】

A security protection approach based on software defined network for inter-area communication in industrial control systems

机译:基于软件定义网络的工业控制系统区域间通信安全保护方法

获取原文
获取原文并翻译 | 示例

摘要

Currently, security protection in Industrial Control Systems has become a hot topic, and a great number of defense techniques have sprung up. As one of the most effective approaches, area isolation has the exceptional advantages and is widely used to prevent attacks or hazards propagating. However, most existing methods for inter-area communication protection present some limitations, i.e., excessively depending on the analyzing rules, affecting original communication. Additionally, the network architecture and data flow direction can hardly be adjusted after being deployed. To address these problems, a dynamical and customized communication protection technology is proposed in this paper. In detail, a security inter-area communication architecture based on Software Defined Network is designed firstly, where devices or subsystems can be dynamically added into or removed from the communication link. And then, a security inspection method based on information entropy is presented for deep network behaviors analysis. According to the security analysis results, the communications in the network can be adjusted in time. Finally, simulations are constructed, and the results indicate that the proposed approach is sensitive and effective for cyber-attacks detection.
机译:当前,工业控制系统中的安全保护已成为热门话题,并且大量的防御技术应运而生。作为最有效的方法之一,区域隔离具有非凡的优势,被广泛用于防止攻击或危害的传播。但是,大多数现有的用于区域间通信保护的方法存在一些限制,即,过分地依赖于分析规则,从而影响原始通信。此外,部署后几乎无法调整网络体系结构和数据流向。为了解决这些问题,本文提出了一种动态的定制通信保护技术。详细地,首先设计基于软件定义网络的安全区域间通信体系结构,其中可以将设备或子系统动态地添加到通信链路中或从通信链路中移除。然后,提出了一种基于信息熵的安全检查方法,用于深入的网络行为分析。根据安全分析结果,可以及时调整网络中的通信。最后,进行了仿真,结果表明所提出的方法对于网络攻击检测是灵敏有效的。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号