首页> 外文OA文献 >Modbus/TCP Communication Anomaly Detection Based on PSO-SVM
【2h】

Modbus/TCP Communication Anomaly Detection Based on PSO-SVM

机译:基于PSO-SVM的Modbus / TCP通信异常检测

摘要

Industrial firewall and intrusion detection system based on Modbus TCP protocol analysis and "whitelist" policy cannot effectively identify attacks on Modbus controller which exactly take advantage of the configured rules. An Industrial control systems simulation environment is established and a data preprocessing method for Modbus TCP traffic captured is designed to meet the need of anomaly detection module. Furthermore a Modbus function code sequence anomaly detection model based on SVM optimized by PSO method is designed. And the model can effectively identify abnormal Modbus TCP traffic, according to frequency of different short mode sequences in a Modbus code sequence.
机译:基于Modbus TCP协议分析和“白名单”策略的工业防火墙和入侵检测系统无法有效地识别对Modbus控制器的攻击,这些攻击正是利用了已配置的规则。建立了工业控制系统仿真环境,设计了捕获的Modbus TCP流量的数据预处理方法,以满足异常检测模块的需求。设计了基于粒子群优化算法的基于支持向量机的Modbus功能码序列异常检测模型。该模型可以根据Modbus代码序列中不同短模式序列的频率有效地识别Modbus TCP异常流量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号