{"title":"虚拟自动化网络中自动化设备入侵检测系统的实现","authors":"R. Kuchta, J. Kadlec, R. Vrba","doi":"10.1109/ICONS.2009.34","DOIUrl":null,"url":null,"abstract":"Security incidents are becoming more serious and more common not only in computer networks, but also in automation networks. Automation devices are still more and more based on computers and they have the same weak points like standard computers. Actual trends in automation networks are among others wide automation networks covering several manufacture divisions or remote controlling of automation networks through the Internet. Necessity of the remote connection to the automation networks covers all security vulnerabilities and risks which originate from the Internet. Analogically the automation network can be secured by the conventional way through firewalls and VPN tunnels. For this reason new automation firewall device was designed. The VAN firewall includes messaging system for logging all events and alerts. As a basis for VAN (Virtual Automation Network) firewall messaging system IDMEF (Intrusion Detection Message Exchange Format) is used. This paper describes the intrusion detection system and its implementation within the VAN.","PeriodicalId":270103,"journal":{"name":"2009 Fourth International Conference on Systems","volume":"146 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2009-03-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"5","resultStr":"{\"title\":\"Implementation of Intrusion Detection System for Automation Devices within Virtual Automation Network\",\"authors\":\"R. Kuchta, J. Kadlec, R. Vrba\",\"doi\":\"10.1109/ICONS.2009.34\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Security incidents are becoming more serious and more common not only in computer networks, but also in automation networks. Automation devices are still more and more based on computers and they have the same weak points like standard computers. Actual trends in automation networks are among others wide automation networks covering several manufacture divisions or remote controlling of automation networks through the Internet. Necessity of the remote connection to the automation networks covers all security vulnerabilities and risks which originate from the Internet. Analogically the automation network can be secured by the conventional way through firewalls and VPN tunnels. For this reason new automation firewall device was designed. The VAN firewall includes messaging system for logging all events and alerts. As a basis for VAN (Virtual Automation Network) firewall messaging system IDMEF (Intrusion Detection Message Exchange Format) is used. This paper describes the intrusion detection system and its implementation within the VAN.\",\"PeriodicalId\":270103,\"journal\":{\"name\":\"2009 Fourth International Conference on Systems\",\"volume\":\"146 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2009-03-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"5\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2009 Fourth International Conference on Systems\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICONS.2009.34\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2009 Fourth International Conference on Systems","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICONS.2009.34","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
Implementation of Intrusion Detection System for Automation Devices within Virtual Automation Network
Security incidents are becoming more serious and more common not only in computer networks, but also in automation networks. Automation devices are still more and more based on computers and they have the same weak points like standard computers. Actual trends in automation networks are among others wide automation networks covering several manufacture divisions or remote controlling of automation networks through the Internet. Necessity of the remote connection to the automation networks covers all security vulnerabilities and risks which originate from the Internet. Analogically the automation network can be secured by the conventional way through firewalls and VPN tunnels. For this reason new automation firewall device was designed. The VAN firewall includes messaging system for logging all events and alerts. As a basis for VAN (Virtual Automation Network) firewall messaging system IDMEF (Intrusion Detection Message Exchange Format) is used. This paper describes the intrusion detection system and its implementation within the VAN.