首页> 外文会议>Applied cryptography and network security >Legacy-Compliant Data Authentication for Industrial Control System Traffic
【24h】

Legacy-Compliant Data Authentication for Industrial Control System Traffic

机译:适用于工业控制系统流量的兼容旧版数据认证

获取原文
获取原文并翻译 | 示例

摘要

Industrial Control Systems (ICS) commonly rely on unencrypted and unauthenticated communication between devices such as Programmable Logic Controllers, Human-Machine-Interfaces, sensors, and actuators. In this work, we discuss solutions to extend such environments with established cryptographic authentication schemes. In particular, we consider schemes that are legacy compliant in the sense that authentication data is embedded as additional payload for domain specific protocols, for example the industrial EtherNet/IP protocol. To that end, we propose a selective protocol (that signs every critical packet sent) and a protocol that aggregates groups of packets based on real-time requirements and the available throughput, for various realistic hardware configurations. We evaluate our analysis by implementing an authenticated channel in a realistic Water Treatment testbed.
机译:工业控制系统(ICS)通常依赖于设备之间的未经加密和未经身份验证的通信,例如可编程逻辑控制器,人机界面,传感器和执行器。在这项工作中,我们讨论使用已建立的密码认证方案扩展此类环境的解决方案。尤其是,在身份验证数据被嵌入为特定领域协议(例如工业EtherNet / IP协议)的附加有效载荷的意义上,我们考虑了符合传统的方案。为此,我们针对各种实际的硬件配置,提出了一种选择性协议(对发送的每个关键数据包进行签名)和一种协议,该协议根据实时要求和可用吞吐量汇总数据包组。我们通过在真实的水处理测试平台中实施经过身份验证的渠道来评估我们的分析。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号