科技报告详细信息
Comparison of Routable Control System Security Approaches
Edgar, Thomas W. ; Hadley, Mark D. ; Carroll, Thomas E. ; Manz, David O. ; Winn, Jennifer D.
Pacific Northwest National Laboratory (U.S.)
关键词: Security;    Testing;    Internet;    99 General And Miscellaneous//Mathematics, Computing, And Information Science;    Process Control;   
DOI  :  10.2172/1027697
RP-ID  :  PNNL-20531
RP-ID  :  AC05-76RL01830
RP-ID  :  1027697
美国|英语
来源: UNT Digital Library
PDF
【 摘 要 】
This document is an supplement to the 'Secure and Efficient Routable Control Systems.' It addressed security in routable control system communication. The control system environment that monitors and manages the power grid historically has utilized serial communication mechanisms. Leased-line serial communication environments operating at 1200 to 9600 baud rates are common. However, recent trends show that communication media such as fiber, optical carrier 3 (OC-3) speeds, mesh-based high-speed wireless, and the Internet are becoming the media of choice. In addition, a dichotomy has developed between the electrical transmission and distribution environments, with more modern communication infrastructures deployed by transmission utilities. The preceding diagram represents a typical control system. The Communication Links cloud supports all of the communication mechanisms a utility might deploy between the control center and devices in the field. Current methodologies used for security implementations are primarily led by single vendors or standards bodies. However, these entities tend to focus on individual protocols. The result is an environment that contains a mixture of security solutions that may only address some communication protocols at an increasing operational burden for the utility. A single approach is needed that meets operational requirements, is simple to operate, and provides the necessary level of security for all control system communication. The solution should be application independent (e.g., Distributed Network Protocol/Internet Protocol [DNP/IP], International Electrotechnical Commission [IEC] C37.118, Object Linking and Embedding for Process Control [OPC], etc.) and focus on the transport layer. In an ideal setting, a well-designed suite of standards for control system communication will be used for vendor implementation and compliance testing. An expected outcome of this effort is an international standard.
【 预 览 】
附件列表
Files Size Format View
1027697.pdf 499KB PDF download
  文献评价指标  
  下载次数:9次 浏览次数:35次