首页> 外文会议>International Conference on Systems >Intrusion Detection System for wide Automation Network Based on the Ethernet Compatible Communication Protocols
【24h】

Intrusion Detection System for wide Automation Network Based on the Ethernet Compatible Communication Protocols

机译:基于以太网兼容通信协议的宽自动化网络入侵检测系统

获取原文

摘要

This paper is focused on the description of importance, design, and implementation of the Intrusion Detection Systems for a new automation system based on the Ethernet communication protocol. Newly developed and designed automation networks for complex factory control are composed from several types of automation communication links with different communication protocols, but most of the factory middle layer and top layer communication networks are based on Ethernet communication protocol. Wide use of Ethernet communication protocol not only in IT, but also in automation field, brings not only advantages of easy implementation and interoperability between different automation communication networks, but also brings risks and vulnerabilities, well known form IT. Therefore security incidents are becoming more serious and more common not only in computer networks, but also in automation networks. Actual trends in automation networks are among others wide automation networks covering several manufacture divisions or remote controlling of automation networks through the Internet. Necessity of a remote connection to the automation networks covers all security vulnerabilities and risks, which originate from the Internet. Analogically with IT, an automation network can be secured by the conventional way through firewalls and VPN tunnels, but automation networks have several specific requirements on the QoS, against the IT networks. For this reason a new automation firewall device was defined, designed and tested. The new automation firewall includes messaging system for logging all events and alerts originates form automation network. IDMEF (Intrusion Detection Message Exchange Format) is used, as a basis for automation firewall messaging system
机译:本文的重点是重要的,设计和实施入侵检测系统的基于以太网通信协议的新的自动化系统的描述。对于复杂的工厂控制新开发和设计自动化网络是由多种类型的通信协议不同的自动化通信链路组成,但大部分工厂中层和上层通信网络的基于以太网的通信协议。广泛使用的以太网通信协议不仅在IT,而且在自动化领域,不仅带来了不同的自动化通信网络之间轻松实现和互操作性的优势,但同时也带来了风险和脆弱性,众所周知的形式吧。因此,安全事故也越来越严重,不仅在计算机网络,而且在自动化网络中更常见。自动化网络的实际趋势是宽自动化网络,涵盖通过互联网的多个制造分支或远程控制自动化网络。到自动化网络的远程连接的必要性涵盖了所有的安全漏洞和风险,来自Internet的。如此类推与IT,自动化网络可以通过常规的方式通过防火墙和VPN隧道安全,但自动化网络对QoS的一些具体要求,对IT网络。出于这个原因,新的自动化防火墙设备的定义,设计和测试。新的自动化的防火墙包括邮件系统中记录所有事件和警报起源形式自动化网络。 IDMEF(入侵检测消息交换格式)时,作为用于自动化防火墙消息传送系统的基础

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号