{"title":"Power System Peer-to-Peer Networking Data Object Based Security","authors":"T. Mander, R. Cheung, F. Nabhani","doi":"10.1109/LESCPE.2006.280367","DOIUrl":null,"url":null,"abstract":"There has been increasing peer-to-peer networking among intelligent electronic devices (IEDs) with communication capabilities for efficient power system protection, control and monitoring with connections to external networks. This facilitates cyber-attackers' capability to assume control over power system operations that could cause serious blackouts. This paper proposes a new data-object-rule-based (DORB) cyber-security implemented as a pseudo-layer below the DNP3 application layer, a commonly used protocol for power systems communications, to strengthen the power system computer network security. The DORB cyber-security limits effectiveness of cyber-attacks by implementing rule-based cyber-security for the usage of DNP3 function codes, object types, and data sets. Any data transmission that does not conform to the allowed data object usage is blocked from being transmitted or received by the DNP3 devices. The DORB security also incorporates authentication between peers for particular function codes, object types, and data sets, to improve the power system communication security.","PeriodicalId":225654,"journal":{"name":"2006 Large Engineering Systems Conference on Power Engineering","volume":"19 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-07-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"2","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2006 Large Engineering Systems Conference on Power Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/LESCPE.2006.280367","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 2
Abstract
There has been increasing peer-to-peer networking among intelligent electronic devices (IEDs) with communication capabilities for efficient power system protection, control and monitoring with connections to external networks. This facilitates cyber-attackers' capability to assume control over power system operations that could cause serious blackouts. This paper proposes a new data-object-rule-based (DORB) cyber-security implemented as a pseudo-layer below the DNP3 application layer, a commonly used protocol for power systems communications, to strengthen the power system computer network security. The DORB cyber-security limits effectiveness of cyber-attacks by implementing rule-based cyber-security for the usage of DNP3 function codes, object types, and data sets. Any data transmission that does not conform to the allowed data object usage is blocked from being transmitted or received by the DNP3 devices. The DORB security also incorporates authentication between peers for particular function codes, object types, and data sets, to improve the power system communication security.