...
首页> 外文期刊>IEEE internet computing >Next-Generation Access Control for Distributed Control Systems
【24h】

Next-Generation Access Control for Distributed Control Systems

机译:分布式控制系统的下一代访问控制

获取原文
获取原文并翻译 | 示例
           

摘要

With the rapid integration of wired and wireless internetworking technologies, distributed control systems (DCS) are increasingly susceptible to cyberattacks. A well-designed access control framework could potentially contain and mitigate the impact of cyberattacks. However, existing solutions often fail to cover and protect all connected devices, leaving holes that are sufficient to undermine the security and safety of a plant. Further, in current DCS environments, it's hard to adhere to the least-privilege principle because access control policies are distributed among many heterogeneous systems. In this article, the authors identify key challenges in moving toward a more complete and manageable access control framework for DCS, and present a model architecture that can be adapted by the industrial control system community to ensure that every access is checked against policies that adhere to the least-privilege principle. Their proposed architecture facilitates centralized (plant-wide) policy management and protection of every connected field device.
机译:随着有线和无线网络技术的快速集成,分布式控制系统(DCS)越来越容易受到网络攻击。精心设计的访问控制框架可能会包含和减轻网络攻击的影响。但是,现有的解决方案通常无法覆盖和保护所有连接的设备,从而留下足以破坏工厂安全性的漏洞。此外,在当前的DCS环境中,由于访问控制策略分布在许多异构系统之间,因此很难遵守最小特权原则。在本文中,作者确定了朝着更完整和可管理的DCS访问控制框架迈进的主要挑战,并提出了一种模型架构,工业控制系统社区可以对其进行调整,以确保针对遵循的策略检查每个访问。最小特权原则。他们提出的体系结构有助于集中(全厂)策略管理和对每个连接的现场设备的保护。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号