融合工业网络中IEEE 802.1时间敏感网络的安全考虑

Florian Fischer, D. Merli
{"title":"融合工业网络中IEEE 802.1时间敏感网络的安全考虑","authors":"Florian Fischer, D. Merli","doi":"10.1109/ICECCME55909.2022.9988000","DOIUrl":null,"url":null,"abstract":"Cyber security becomes more and more relevant for the domain of Industrial Control System (ICS). An aspect, which increases the attack surface of those devices is the trend of Industry 4.0 and the associated network interconnections. While those devices were air-gapped and communication was clearly segregated, new technologies arise, which break up with this concept, since horizontal and vertical interconnection is essential for future use cases in ICS. Time Sensitive Networking (TSN) represents such a new technology, which allows the transmission of hard real-time traffic, commonly present within the field level communication, converged with other communication streams, e.g. non-time critical best-effort traffic, on the same wire. On the one hand this approach brings many benefits for ICS environments, e.g. predictive maintenance to reduce unplanned downtime, logging and others. But on the other hand this technology enlarges the attack surface of ICS and must therefore be analyzed from a cyber security perspective. For instance the transmission of real-time traffic can be disturbed easily by various network-based attacks, which makes protective measures necessary. Theretore, within this work, security considerations for the use of TSN within ICS applications are presented, suitable protective measures as well as potential enhancements are depicted. The threats and mitigations presented within this work are intended to draw attention towards cyber security within TSN based converged networks and provide an overview for possible protection strategies.","PeriodicalId":202568,"journal":{"name":"2022 International Conference on Electrical, Computer, Communications and Mechatronics Engineering (ICECCME)","volume":"93 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-11-16","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":"{\"title\":\"Security Considerations for IEEE 802.1 Time-Sensitive Networking in Converged Industrial Networks\",\"authors\":\"Florian Fischer, D. Merli\",\"doi\":\"10.1109/ICECCME55909.2022.9988000\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Cyber security becomes more and more relevant for the domain of Industrial Control System (ICS). An aspect, which increases the attack surface of those devices is the trend of Industry 4.0 and the associated network interconnections. While those devices were air-gapped and communication was clearly segregated, new technologies arise, which break up with this concept, since horizontal and vertical interconnection is essential for future use cases in ICS. Time Sensitive Networking (TSN) represents such a new technology, which allows the transmission of hard real-time traffic, commonly present within the field level communication, converged with other communication streams, e.g. non-time critical best-effort traffic, on the same wire. On the one hand this approach brings many benefits for ICS environments, e.g. predictive maintenance to reduce unplanned downtime, logging and others. But on the other hand this technology enlarges the attack surface of ICS and must therefore be analyzed from a cyber security perspective. For instance the transmission of real-time traffic can be disturbed easily by various network-based attacks, which makes protective measures necessary. Theretore, within this work, security considerations for the use of TSN within ICS applications are presented, suitable protective measures as well as potential enhancements are depicted. The threats and mitigations presented within this work are intended to draw attention towards cyber security within TSN based converged networks and provide an overview for possible protection strategies.\",\"PeriodicalId\":202568,\"journal\":{\"name\":\"2022 International Conference on Electrical, Computer, Communications and Mechatronics Engineering (ICECCME)\",\"volume\":\"93 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2022-11-16\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"4\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2022 International Conference on Electrical, Computer, Communications and Mechatronics Engineering (ICECCME)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICECCME55909.2022.9988000\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 International Conference on Electrical, Computer, Communications and Mechatronics Engineering (ICECCME)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICECCME55909.2022.9988000","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4

摘要

网络安全与工业控制系统(ICS)领域的关系越来越密切。增加这些设备的攻击面的一个方面是工业4.0的趋势和相关的网络互连。虽然这些设备是气隙的,通信是明确隔离的,但新技术的出现打破了这一概念,因为水平和垂直互连对于ICS的未来用例至关重要。时间敏感网络(TSN)代表了这样一种新技术,它允许传输硬实时流量,通常存在于现场级通信中,与其他通信流融合,例如,在同一条线路上,非时间关键的最佳努力流量。一方面,这种方法为ICS环境带来了许多好处,例如预测性维护以减少计划外停机时间、日志记录等。但另一方面,该技术扩大了ICS的攻击面,因此必须从网络安全的角度进行分析。例如,实时流量的传输很容易受到各种网络攻击的干扰,这就需要采取保护措施。因此,在这项工作中,提出了在ICS应用中使用TSN的安全考虑因素,并描述了适当的保护措施以及潜在的增强功能。本工作中提出的威胁和缓解措施旨在引起人们对基于TSN的融合网络中的网络安全的关注,并概述可能的保护策略。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Security Considerations for IEEE 802.1 Time-Sensitive Networking in Converged Industrial Networks
Cyber security becomes more and more relevant for the domain of Industrial Control System (ICS). An aspect, which increases the attack surface of those devices is the trend of Industry 4.0 and the associated network interconnections. While those devices were air-gapped and communication was clearly segregated, new technologies arise, which break up with this concept, since horizontal and vertical interconnection is essential for future use cases in ICS. Time Sensitive Networking (TSN) represents such a new technology, which allows the transmission of hard real-time traffic, commonly present within the field level communication, converged with other communication streams, e.g. non-time critical best-effort traffic, on the same wire. On the one hand this approach brings many benefits for ICS environments, e.g. predictive maintenance to reduce unplanned downtime, logging and others. But on the other hand this technology enlarges the attack surface of ICS and must therefore be analyzed from a cyber security perspective. For instance the transmission of real-time traffic can be disturbed easily by various network-based attacks, which makes protective measures necessary. Theretore, within this work, security considerations for the use of TSN within ICS applications are presented, suitable protective measures as well as potential enhancements are depicted. The threats and mitigations presented within this work are intended to draw attention towards cyber security within TSN based converged networks and provide an overview for possible protection strategies.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信