检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:田鹏辉 周磊 饶志波 Tian Penghui;Zhou Lei;Rao Zhibo(Beijing Andisec Technology Co.,ltd.,Beijing,100125)
出 处:《工业信息安全》2022年第8期28-34,共7页Industry Information Security
摘 要:近年来,由于工业系统复杂多样、工业通讯协议本身设计缺陷以及安全意识不足,整个工业控制系统(ICS)极易遭受攻击与破坏,ICS系统网络安全事件频发。当前基于信息技术(IT)与操作技术(OT)融合的网络安全解决方案可覆盖ICS系统的1至4层。基于IP网络的监控方法至关重要,但不足以确保控制系统的安全并防止OT设备和机械的严重损坏。本文首先对比传统网络攻击与隐蔽信道攻击;其次阐述电信号在ICS/OT监测中的工作原理与建立监测模型的步骤;再次列举电信号监测在国外已投入使用的两个应用案例;最后对电信号监测在ICS/OT网络安全中的应用进行总结与展望。In recent years, due to the complexity and diversity of industrial systems, the design defects of industrial communication protocols and the lack of security awareness, the entire ICS system is vulnerable to attack and damage, and the cyber security incidents of industrial control systems(ICS) occur frequently. Current cyber security solutions based on the fusion of IT and OT can cover layers 1 to 4 of the ICS system. IP network-based monitoring methods are critical, but not sufficient to secure control systems and prevent serious damage to OT equipment and machinery. This paper firstly compares traditional cyber attacks with covert channel attacks;Secondly, it describes the working principle of electrical signals in ICS/OT monitoring and the steps for establishing monitoring models;Thirdly, it lists two application cases where electrical signal monitoring has been put into use abroad;Finally, the future research focus is prospected.
关 键 词:工业控制系统 网络安全 电信号监测 操作技术 信息技术
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.147