首页> 外文会议>IFAC Conference on Manufacturing Modelling, Management, and Control >A Preliminary Report on Static Analysis of C Code for Nuclear Reactor Protection System
【24h】

A Preliminary Report on Static Analysis of C Code for Nuclear Reactor Protection System

机译:核反应堆保护系统C码静态分析初报

获取原文

摘要

Cybersecurity regulations require new I&C (Instrumentation & Control) systems in nuclear power plants to develop software in accordance with secure software development methodology to prevent the digital systems from cyber attacks. One of the common aspects of various secure software development methodologies is that widely-accepted practices should be followed throughout programming. As PLC (Programmable Logic Controller) is used to implement digital I&Cs, C programs are often translated automatically from design specifications such as FBD programs. This paper tries to analyze a part of preliminary version of C codes of a Korean I&C system with a static source code analysis tool of Microsoft. It shows that the automatic translator from FBD to C had a few critical defects, not concerned with security directly. It also recommends to select appropriate analysis tools and rule sets to check best practices in secure programming, even if the C code is produced mechanically.
机译:网络安全法规需要核电站的新I&C(仪表和控制)系统根据安全的软件开发方法制定软件,以防止网络攻击中的数字系统。各种安全软件开发方法的一个共同方面是,在整个编程过程中应遵循广泛接受的实践。由于PLC(可编程逻辑控制器)用于实现数字I&CS,C程序通常从FBD程序等设计规范自动翻译。本文试图通过Microsoft的静态源代码分析工具分析韩国I&C系统的一部分C代码C代码。它表明,来自FBD到C的自动翻译有一些关键缺陷,并不直接涉及安全性。它还建议选择适当的分析工具和规则集,以检查安全编程中的最佳实践,即使C代码机械地生产。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号