{"title":"Implementation of Intrusion Detection System for Automation Devices within Virtual Automation Network","authors":"R. Kuchta, J. Kadlec, R. Vrba","doi":"10.1109/ICONS.2009.34","DOIUrl":null,"url":null,"abstract":"Security incidents are becoming more serious and more common not only in computer networks, but also in automation networks. Automation devices are still more and more based on computers and they have the same weak points like standard computers. Actual trends in automation networks are among others wide automation networks covering several manufacture divisions or remote controlling of automation networks through the Internet. Necessity of the remote connection to the automation networks covers all security vulnerabilities and risks which originate from the Internet. Analogically the automation network can be secured by the conventional way through firewalls and VPN tunnels. For this reason new automation firewall device was designed. The VAN firewall includes messaging system for logging all events and alerts. As a basis for VAN (Virtual Automation Network) firewall messaging system IDMEF (Intrusion Detection Message Exchange Format) is used. This paper describes the intrusion detection system and its implementation within the VAN.","PeriodicalId":270103,"journal":{"name":"2009 Fourth International Conference on Systems","volume":"146 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-03-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 Fourth International Conference on Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICONS.2009.34","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 5
Abstract
Security incidents are becoming more serious and more common not only in computer networks, but also in automation networks. Automation devices are still more and more based on computers and they have the same weak points like standard computers. Actual trends in automation networks are among others wide automation networks covering several manufacture divisions or remote controlling of automation networks through the Internet. Necessity of the remote connection to the automation networks covers all security vulnerabilities and risks which originate from the Internet. Analogically the automation network can be secured by the conventional way through firewalls and VPN tunnels. For this reason new automation firewall device was designed. The VAN firewall includes messaging system for logging all events and alerts. As a basis for VAN (Virtual Automation Network) firewall messaging system IDMEF (Intrusion Detection Message Exchange Format) is used. This paper describes the intrusion detection system and its implementation within the VAN.