首页> 外文期刊>International Journal on Critical Infrastructure Protection >An integrated framework for control system simulation and regulatory compliance monitoring
【24h】

An integrated framework for control system simulation and regulatory compliance monitoring

机译:用于控制系统仿真和法规遵从性监控的集成框架

获取原文
获取原文并翻译 | 示例
获取外文期刊封面目录资料

摘要

This paper presents SCADASiM, an integrated framework for control system simulation and near-real-time regulatory compliance monitoring with respect to cybersecurity. With numerous legacy control system installations already in place, current approaches for highly detailed simulations demand a significant modeling effort to be useful. Furthermore, the complexity and lack of technical uniformity in legacy SCADA systems often obscures their core operational semantics, making regulatory compliance monitoring only available to personnel with intimate knowledge about the system. To address these issues, the SCADASiM framework includes two parts. First, it allows rapid recreation of message-based interactions between cyber and physical entities. The resulting simulation is geared towards facilitating the development of strategic and near-real-time security related regulatory compliance monitoring capabilities for critical infrastructure owners. Second, it includes new language utilities for collecting and monitoring the system events necessary to demonstrate regulatory compliance in real-time. In an integrated framework, the simulation facilitates policy authoring using the new language utilities, which in turn allow the observance of policy violation with its operational impact using "what-if" scenarios about coordinated attacks on the infrastructure. The two parts of the framework are synchronized by a SCADA taxonomy described using semantic web representation standards. The abstract layers of our taxonomy map to regulatory requirements that mandate security controls in the critical infrastructure, while the lower layers map to actual system components and their events that characterize actual system behavior. Here we describe the design decisions and structure of the SCADASiM framework as well as its initial feasibility using an in-1ab control system simulation that replicates a water supply system.
机译:本文介绍了SCADASiM,这是用于控制系统仿真和网络安全方面近乎实时的法规遵从性监控的集成框架。在已经安装了许多旧式控制系统的情况下,用于高度详细的模拟的当前方法要求进行大量的建模工作才有用。此外,遗留SCADA系统中的复杂性和缺乏技术统一性通常会掩盖其核心操作语义,从而使法规遵从性监视仅适用于对系统有深入了解的人员。为了解决这些问题,SCADASiM框架包括两个部分。首先,它允许快速恢复网络和物理实体之间基于消息的交互。最终的模拟旨在促进关键基础设施所有者开发与战略和近实时安全相关的法规遵从性监视功能。其次,它包括新的语言实用程序,用于收集和监视实时演示合规性所需的系统事件。在一个集成的框架中,该模拟使用新的语言实用程序促进了策略编写,从而使用关于基础结构的协同攻击的“假设”场景,可以观察到策略违规及其对运营的影响。框架的两个部分通过使用语义Web表示标准描述的SCADA分类法进行同步。分类法的抽象层映射到要求关键基础设施中进行安全控制的法规要求,而较低层则映射到代表实际系统行为的实际系统组件及其事件。在这里,我们使用复制供水系统的in-1ab控制系统仿真来描述SCADASiM框架的设计决策和结构以及其初始可行性。

著录项

  • 来源
  • 作者单位

    Nebraska University Center for Information Assurance, College of Information Science and Technology, University of Nebraska at Omaha,6001 Dodge Street, Omaha, Nebraska 68182-0500, United States;

    Nebraska University Center for Information Assurance, College of Information Science and Technology, University of Nebraska at Omaha,6001 Dodge Street, Omaha, Nebraska 68182-0500, United States;

  • 收录信息
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    scada simulation regulations compliance;

    机译:scada模拟法规遵从性;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号