{"title":"Adapting the Pretty Good Privacy Security Style to Power System Distributed Network Protocol","authors":"T. Mander, Lin Wang, R. Cheung, F. Nabhani","doi":"10.1109/LESCPE.2006.280365","DOIUrl":null,"url":null,"abstract":"Power system modernization with increasing operation automation and integration results in growing computer network access. This facilitates cyber-attackers' capabilities to assume control over power system operations that could cause serious blackouts. Security therefore becomes a critical issue for DNP3, a commonly used protocol for power system communications. This paper proposes cyber-security based on Pretty Good Privacy (PGP) for DNP3 to strengthen computer network security. This PGP-based cyber-security provides authentication capabilities using public key cryptography, with enhanced performance using symmetric keys for most of the encryption. This paper provides a symmetric cipher key exchange mechanism using PGP-based cyber-security to further enhance the power system security. The proposed PGP-based cyber-security is implemented as a pseudo-layer below the DNP3 data-link layer to minimize any impact on the DNP3 specifications and the operations of original DNP3 devices. This PGP-based cyber-security provides confidentiality, identity authentication, transmission content authentication, and nonrepudiation","PeriodicalId":225654,"journal":{"name":"2006 Large Engineering Systems Conference on Power Engineering","volume":"28 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2006-07-26","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2006 Large Engineering Systems Conference on Power Engineering","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/LESCPE.2006.280365","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3
Abstract
Power system modernization with increasing operation automation and integration results in growing computer network access. This facilitates cyber-attackers' capabilities to assume control over power system operations that could cause serious blackouts. Security therefore becomes a critical issue for DNP3, a commonly used protocol for power system communications. This paper proposes cyber-security based on Pretty Good Privacy (PGP) for DNP3 to strengthen computer network security. This PGP-based cyber-security provides authentication capabilities using public key cryptography, with enhanced performance using symmetric keys for most of the encryption. This paper provides a symmetric cipher key exchange mechanism using PGP-based cyber-security to further enhance the power system security. The proposed PGP-based cyber-security is implemented as a pseudo-layer below the DNP3 data-link layer to minimize any impact on the DNP3 specifications and the operations of original DNP3 devices. This PGP-based cyber-security provides confidentiality, identity authentication, transmission content authentication, and nonrepudiation
电力系统现代化,随着运行自动化和集成化程度的提高,计算机网络接入日益增多。这使得网络攻击者有能力控制可能导致严重停电的电力系统运行。因此,作为电力系统通信的常用协议,安全性成为DNP3的关键问题。为了加强计算机网络的安全性,本文提出了基于PGP (Pretty Good Privacy)的DNP3网络安全方案。这种基于pki的网络安全提供了使用公钥加密的身份验证功能,并在大多数加密中使用对称密钥增强了性能。为了进一步提高电力系统的安全性,本文提出了一种基于pki的对称密码密钥交换机制。提议的基于pp的网络安全是作为DNP3数据链路层下面的伪层实现的,以尽量减少对DNP3规范和原始DNP3设备操作的影响。这种基于pki的网络安全提供了保密性、身份认证、传输内容认证和不可否认性