首页> 外文会议>2013 Third International Conference on Communications and Information Technology >Securing modbus transactions using hash-based message authentication codes and stream transmission control protocol
【24h】

Securing modbus transactions using hash-based message authentication codes and stream transmission control protocol

机译:使用基于哈希的消息身份验证代码和流传输控制协议来保护Modbus事务

获取原文
获取原文并翻译 | 示例

摘要

Traditionally supervisory control and data acquisition (SCADA) networks were physically isolated, providing some inherent level of security; yet, as these networks slowly converged with both corporate intranets and the Internet, their security continually eroded. The gradual evolution of SCADA systems has introduced many novel and previously unknown security risks. During the advent of SCADA technologies, a heavy focus was put on providing system robustness, safety, and reliability. Because of this, widely deployed SCADA protocols like Modbus and DNP3 provide no inherent security controls. In this paper, we will propose a novel Modbus alternative capable of providing secure, backward-compatible Modbus message transmission using stream control transmission protocol and hash-based message authentication code technologies. This proposed protocol improvement ensures the availability and integrity of Modbus messages while providing a robust and secure mutual authentication mechanism. Improvements upon the legacy Modbus protocol aim to mitigate common SCADA protocol attack vectors.
机译:传统上,监督控制和数据采集(SCADA)网络是物理隔离的,从而提供了一些固有的安全级别。但是,随着这些网络与企业内部网和Internet逐渐融合,其安全性不断受到侵蚀。 SCADA系统的逐步发展引入了许多新颖的,以前未知的安全风险。在SCADA技术问世期间,重点放在提供系统的鲁棒性,安全性和可靠性上。因此,像Modbus和DNP3这样广泛部署的SCADA协议没有提供固有的安全控制。在本文中,我们将提出一种新颖的Modbus替代方案,该替代方案能够使用流控制传输协议和基于哈希的消息认证代码技术提供安全的,向后兼容的Modbus消息传输。所建议的协议改进功能可确保Modbus消息的可用性和完整性,同时提供可靠且安全的相互身份验证机制。对传统Modbus协议的改进旨在减轻常见的SCADA协议攻击向量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号