基于协议解析的工控网络安全仿真平台设计  被引量:7

Design of Information Security Simulation Platform of Industrial Control Network Based on Protocol Analysis

在线阅读下载全文

作  者:方捷睿 曹卫民[2] 白建涛 熊智华[1] 杨帆[1] FANG Jierui;CAO Weimin;BAI Jiantao;XIONG Zhihua;YANG Fan(Department of Automation,Tsinghua University,Beijing 100084,China;Sinopec Anqing Branch,Anqing 246002,China)

机构地区:[1]清华大学自动化系,北京100084 [2]中国石化安庆分公司,安徽安庆246002

出  处:《自动化仪表》2021年第2期102-106,共5页Process Automation Instrumentation

摘  要:工业控制网络的安全防护通常采用防火墙技术和多种复杂的应用层协议协同完成,但是未涉及应用层协议的深入分析。为了更好地保障工控网络数据访问的安全,结合工控网络报文定制性的特点,详细分析了基于应用层协议解析的安全防护策略。该方案在工业防火墙的基础上,通过对工控网络通信协议的报文深入解析,直接在报文层面解析过滤,从而拦截与功能实现无关的报文,并发现隐藏较深的威胁。以OPC协议为例,搭建了基于应用层协议深度解析的工控网络安全仿真测试平台,并利用石化企业现场设备的通信数据对该平台进行了验证。所提出的安防策略为工控网络安全设备的设计和制造提供了一种基于应用层协议解析的方案,具备较高级别的安全性能。In order to ensure the safety of industrial control network,many kinds of firewall technology are usually implemented.Although many complex application layer protocols are accomplished collaboratively,but,analysis in-depth of application layer protocols is not involved.To guarantee the security of data access in industrial control network,the security protection strategy based on application layer protocol parsing in detail is analyzed in this paper,which is based on the customization characteristics of transmission message of industrial control network.On the basis of traditional network firewall technology,this scheme can deeply analyze the transmission messages of industrial communication protocol and filter them directly at message level.Thus,it can intercept transmission messages that are not related with function realization,and discover hidden threats.Taking the OPC protocol as an example,a simulation platform is developed based on analyzing application layer protocol for the industrial control network security,and the platform is validated by using the real communication data of equipment in a petrochemical enterprise.The proposed security strategy provides a solution based on analyzing application layer protocol for manufacturing security equipment of industrial control network,which has a high level of security performance.

关 键 词:工控网络 信息安全 OPC协议 协议解析 网络报文 仿真平台 安全生产 工业控制系统 

分 类 号:TH17[机械工程—机械制造及自动化]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象