风电场跨域访问控制模型研究

Yan Zhang, B. Duan, Lingxiang Huang, Yuanyuan Lin
{"title":"风电场跨域访问控制模型研究","authors":"Yan Zhang, B. Duan, Lingxiang Huang, Yuanyuan Lin","doi":"10.1109/SUPERGEN.2009.5348115","DOIUrl":null,"url":null,"abstract":"In this paper, the requirements of Cross-domain Access Control, in allusion to problems of remote diagnosis and maintenance faced by wind turbine manufacturers, are analyzed firstly. Then access control mechanisms of (Z72 megawatt wind power unit-)Bachman M1 Controller and GH SCADA system are analyzed concretely. Furthermore, Multi domain-RBAC model is proposed based on two security domains of SCADA system and wind power units controller, building relations between access control elements of the two domains via role-mapping, and introducing validity constraints and border policy which was based on validation constrains to identify and defense the risks that were brought by across-domain access, in order to achieve full support for cross-domain security access control in wind power plant. Finally, implementation of this model is presented, and the benefits of utilizing this model are discussed.","PeriodicalId":250585,"journal":{"name":"2009 International Conference on Sustainable Power Generation and Supply","volume":"100 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-04-06","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"Research on the cross-domain access control model in wind power plant\",\"authors\":\"Yan Zhang, B. Duan, Lingxiang Huang, Yuanyuan Lin\",\"doi\":\"10.1109/SUPERGEN.2009.5348115\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In this paper, the requirements of Cross-domain Access Control, in allusion to problems of remote diagnosis and maintenance faced by wind turbine manufacturers, are analyzed firstly. Then access control mechanisms of (Z72 megawatt wind power unit-)Bachman M1 Controller and GH SCADA system are analyzed concretely. Furthermore, Multi domain-RBAC model is proposed based on two security domains of SCADA system and wind power units controller, building relations between access control elements of the two domains via role-mapping, and introducing validity constraints and border policy which was based on validation constrains to identify and defense the risks that were brought by across-domain access, in order to achieve full support for cross-domain security access control in wind power plant. Finally, implementation of this model is presented, and the benefits of utilizing this model are discussed.\",\"PeriodicalId\":250585,\"journal\":{\"name\":\"2009 International Conference on Sustainable Power Generation and Supply\",\"volume\":\"100 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2009-04-06\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2009 International Conference on Sustainable Power Generation and Supply\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/SUPERGEN.2009.5348115\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 International Conference on Sustainable Power Generation and Supply","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/SUPERGEN.2009.5348115","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

本文首先针对风力发电机组制造商面临的远程诊断和维护问题,分析了跨域访问控制的需求。然后具体分析了Z72兆瓦风力发电机组巴赫曼M1控制器和GH SCADA系统的访问控制机制。在此基础上,提出了基于SCADA系统和风电机组控制器两个安全域的多域rbac模型,通过角色映射建立两个安全域的访问控制元素之间的关系,并引入有效性约束和基于有效性约束的边界策略来识别和防御跨域访问带来的风险,以实现对风电场跨域安全访问控制的全面支持。最后,给出了该模型的实现,并讨论了使用该模型的好处。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Research on the cross-domain access control model in wind power plant
In this paper, the requirements of Cross-domain Access Control, in allusion to problems of remote diagnosis and maintenance faced by wind turbine manufacturers, are analyzed firstly. Then access control mechanisms of (Z72 megawatt wind power unit-)Bachman M1 Controller and GH SCADA system are analyzed concretely. Furthermore, Multi domain-RBAC model is proposed based on two security domains of SCADA system and wind power units controller, building relations between access control elements of the two domains via role-mapping, and introducing validity constraints and border policy which was based on validation constrains to identify and defense the risks that were brought by across-domain access, in order to achieve full support for cross-domain security access control in wind power plant. Finally, implementation of this model is presented, and the benefits of utilizing this model are discussed.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信