检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]广东交通职业技术学院,广东广州510800 [2]华南理工大学机械与汽车工程学院,广东广州510640
出 处:《中国测试》2017年第6期114-117,共4页China Measurement & Test
基 金:2016年度省科技发展专项资金(2016B010113001)
摘 要:针对SCADA系统面临的数据窃取、篡改等信息安全问题,基于固件、可信根完整性度量,研究SCADA系统PLC固件完整的必要性;采用安全性高的SHA1算法,提出一种PLC固件完整性验证方法。在SCADA系统外的验证计算机上开发完整性验证软件,通过网络侦听、协议分析实现固件二进制数据提取、待下载固件SHA1值匹配验证、下载固件SHA1值匹配验证等功能,完成PLC固件传输过程中的完整性验证。试验结果表明:该方法可有效验证PLC固件完整性,提高PLC运行可信度。For data theft, data tampering and other information security issues of SCADA system and based on integrity measurement of the firmware and the trusted root, this paper aimed to research the necessity of integrity of PLC firmware for SCADA system, and proposed a PLC firmware integrity verification method by using SHA1 algorithm with high security. It developed an integrity authentication software on an authentication computer which was independent from SCADA system. Through the network listening and protocol analysis , the functions of the extraction of the firmware binary data, matched verification of SHA1 value of un-download firmware, and matched verification of SHA1 value of download firmware were realized, and completed the integrity test during PLC firmware transmission. The test results show that the method can effectively verify the integrity of PLC firmware, and improve the operation credibility of the PLC.
关 键 词:安全哈希算法 数据采集与监视控制系统 可编程逻辑控制器 固件 完整性
分 类 号:TP391.9[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.15