Sankalp Bagaria, Shashi Prabhakar, Zia U H. Saquib
{"title":"Flexi-DNP3: Flexible distributed network protocol version 3 (DNP3) for SCADA security","authors":"Sankalp Bagaria, Shashi Prabhakar, Zia U H. Saquib","doi":"10.1109/ReTIS.2011.6146884","DOIUrl":null,"url":null,"abstract":"Legacy SCADA systems are inherently insecure. They were built using specialized and proprietary protocols and used serial link, radio or leased line for communication. As these protocols were little known and specific to the industry they catered to, security was not important for them. But, recently because of increased terrorist attacks and migration of these protocols to TCP/IP, they have become susceptible to foreign attacks. We propose a mechanism to secure existing and future DNP3 networks. We built a BITW (bump - in - the - wire) prototype which exchanges keys and uses those keys to encrypt the data flowing on the network. We used DNPSec as our framework for BITW.","PeriodicalId":137916,"journal":{"name":"2011 International Conference on Recent Trends in Information Systems","volume":"57 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2011-12-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"21","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2011 International Conference on Recent Trends in Information Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ReTIS.2011.6146884","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 21
Abstract
Legacy SCADA systems are inherently insecure. They were built using specialized and proprietary protocols and used serial link, radio or leased line for communication. As these protocols were little known and specific to the industry they catered to, security was not important for them. But, recently because of increased terrorist attacks and migration of these protocols to TCP/IP, they have become susceptible to foreign attacks. We propose a mechanism to secure existing and future DNP3 networks. We built a BITW (bump - in - the - wire) prototype which exchanges keys and uses those keys to encrypt the data flowing on the network. We used DNPSec as our framework for BITW.
Flexible -DNP3:用于SCADA安全的Flexible distributed network protocol version 3 (DNP3)
传统SCADA系统本质上是不安全的。它们使用专用和专有协议构建,并使用串行链路,无线电或租用线路进行通信。由于这些协议很少为人所知,而且只针对它们所迎合的行业,因此安全性对它们来说并不重要。但是,最近由于恐怖袭击的增加和这些协议向TCP/IP的迁移,它们变得容易受到外来攻击。我们提出了一种保护现有和未来DNP3网络的机制。我们建立了一个BITW(碰撞- in - the - wire)原型,它交换密钥并使用这些密钥对网络上流动的数据进行加密。我们使用DNPSec作为BITW的框架。