首页> 外文OA文献 >Security defense model of Modbus TCP communication based on Zone/Border rules
【2h】

Security defense model of Modbus TCP communication based on Zone/Border rules

机译:基于区域/边界规则的Modbus TCP通信的安全防御模型

摘要

To detect the intrusion of advanced industrial virus of industrial control system, design flaws of Modbus TCP Protocol is firstly analyzed in this paper, and a method is proposed, through which the Modbus TCP packet is deeply inspected to deal with the threat from application layer. Furthermore, a general description form of the security rules is proposed, and defense model for Modbus TCP communication in industrial control system or SCADA system is designed, which is based on intrusion detection rules and “white-list” rules. With definition of the minimum set of normal communication between different zones, the system has eliminated exposure greatly. At last, simulation experiments validate that the proposed method is effective and practical. 
机译:为了检测工业控制系统中的先进工业病毒的入侵,本文首先分析了Modbus TCP协议的设计缺陷,提出了一种对Modbus TCP数据包进行深入检查以应对来自应用层的威胁的方法。此外,提出了安全规则的一般形式,并基于入侵检测规则和“白名单”规则,设计了工业控制系统或SCADA系统中Modbus TCP通信的防御模型。通过定义不同区域之间的最小正常通信集,该系统极大地消除了暴露。最后通过仿真实验验证了该方法的有效性和实用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号