首页 | 本学科首页   官方微博 | 高级检索  
     

工业控制系统协议安全综述
引用本文:方栋梁, 刘圃卓, 秦川, 宋站威, 孙玉砚, 石志强, 孙利民. 工业控制系统协议安全综述[J]. 计算机研究与发展, 2022, 59(5): 978-993. DOI: 10.7544/issn1000-1239.20211132
作者姓名:方栋梁  刘圃卓  秦川  宋站威  孙玉砚  石志强  孙利民
作者单位:物联网信息安全技术北京市重点实验室(中国科学院信息工程研究所) 北京 100093;中国科学院大学网络空间安全学院 北京 100049
基金项目:国家重点研发计划项目(2020YFB2010902)~~;
摘    要:工业控制系统是国家基础设施的重要组成部分,广泛应用于能源、制造、交通、军工等行业,是关乎国计民生的重要资源.工控协议是控制系统实现实时数据交换、数据采集、参数配置、状态监控、异常诊断、命令发布和执行等众多功能有机联动的重要纽带,其安全问题与工控系统的可靠稳定运行密切相关.深度剖析工控协议安全是理解工控系统安全威胁的一个重要角度,能够对工控系统的安全防护和保障提供指导.通过整理学术界与工业界对工控协议安全的研究工作,例如研究论文、标准指南、攻击事件等,系统化地分析和总结了工控协议所面临的安全问题.首先对工控网络架构、工控协议作用、协议的分类以及和传统协议的比较等进行详细阐述,然后从协议设计、实现和应用的角度深入分析了工控协议面临的攻击威胁和协议防护方案,最后讨论了未来工控协议安全的研究趋势.

关 键 词:工控协议安全  工业控制系统  协议设计和实现安全  协议攻击威胁  协议安全方案

Survey of Protocol Security of Industrial Control System
Fang Dongliang, Liu Puzhuo, Qin Chuan, Song Zhanwei, Sun Yuyan, Shi Zhiqiang, Sun Limin. Survey of Protocol Security of Industrial Control System[J]. Journal of Computer Research and Development, 2022, 59(5): 978-993. DOI: 10.7544/issn1000-1239.20211132
Authors:Fang Dongliang  Liu Puzhuo  Qin Chuan  Song Zhanwei  Sun Yuyan  Shi Zhiqiang  Sun Limin
Affiliation:1.(Beijing Key Laboratory of IoT Information Security Technology (Institute of Information Engineering, Chinese Academy of Sciences), Beijing 100093) (School of Cyber Security, University of Chinese Academy of Sciences, Beijing 100049)
Abstract:Industrial control system (ICS) is an important part of national infrastructure, widely used in energy, manufacturing, transportation, military and other industries, and is an important resource related to the national economy and people’s livelihood. Industrial control protocol is a crucial link for the ICS to achieve the organic linkage of many functions such as real-time data exchange, data acquisition, parameter configuration, status monitoring, abnormal behavior diagnosis, command issuance and execution, etc. Its security issues are closely related to the reliable and stable operations of ICS. In-depth security analysis of industrial control protocols is an important angle for understanding the security threats of ICS, and can provide guidance for the security protection of ICS. We investigate the security work of industrial control protocols from the academia and the industry, including research papers, standards and guidelines, attack incidents, etc. It systematically analyzes and summarizes the security problems faced by industrial control protocols. Firstly, we elaborate on the industrial control network architecture, the role and classification of industrial control protocols, and the comparison with traditional protocols. From the perspective of protocol design, implementation, and application, we conduct an in-depth analysis of industrial control protocol attack threats and security defense solutions. Finally, we discuss about the research trends on the security of industrial control protocols.
Keywords:industrial control protocol security  industrial control system (ICS)  protocol design and implementation security  protocol attack threats  protocol defense solutions
本文献已被 万方数据 等数据库收录!
点击此处可从《计算机研究与发展》浏览原始摘要信息
点击此处可从《计算机研究与发展》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号