A Linux-based firewall for the DNP3 protocol

被引:0
|
作者
Nivethan, Jeyasingam [1 ]
Papa, Mauricio [1 ]
机构
[1] Univ Tulsa, Tandy Sch Comp Sci, Tulsa, OK 74104 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Firewall solutions, specifically designed for smart power grids and other industrial control systems, are quite limited, with only a few commercial offerings. This paper presents a novel methodology that extends existing Linux-based firewalls for use in systems that use DNP3 protocol for industrial control. The proposed solution uses the u32 byte-matching feature of the iptables firewall, a firewall solution available in most Linux distributions. To demonstrate the approach, filtering rules for common attacks on the DNP3 protocol were developed. DNP3 is an industrial control protocol typically used in the electric power sector. The main goal of our work is to leverage an openly available and robust firewall solution for use in protecting the U.S. smart grid. The prototype was tested on a scaled-down electric power substation which runs the DNP3 protocol for communication between the field devices and the SCADA master.
引用
收藏
页数:5
相关论文
共 50 条
  • [1] A TAXONOMY OF ATTACKS ON THE DNP3 PROTOCOL
    East, Samuel
    Butts, Jonathan
    Papa, Mauricio
    Shenoi, Sujeet
    CRITICAL INFRASTRUCTURE PROTECTION III, 2009, 311 : 67 - 81
  • [2] Securing Networked Microgrids with DNP3 Protocol
    Soliman, Ahmed S.
    Saad, Ahmed A.
    Mohammed, Osama
    2021 21ST IEEE INTERNATIONAL CONFERENCE ON ENVIRONMENT AND ELECTRICAL ENGINEERING AND 2021 5TH IEEE INDUSTRIAL AND COMMERCIAL POWER SYSTEMS EUROPE (EEEIC/I&CPS EUROPE), 2021,
  • [3] Design and Performance of a Split Protocol Architecture on Distributed Network Protocol 3 (DNP3)
    Richard, Anand
    Appiah-Kubi, Patrick
    2017 IEEE INTERNATIONAL CONFERENCE ON ELECTRO INFORMATION TECHNOLOGY (EIT), 2017, : 249 - 253
  • [4] Securing Networked Microgrids Operation through DNP3 Protocol Implementation
    Soliman, Ahmed S.
    Saad, Ahmed A.
    Mohammed, Osama
    2021 IEEE INDUSTRY APPLICATIONS SOCIETY ANNUAL MEETING (IAS), 2021,
  • [5] A Network Protection Framework for DNP3 Over TCP/IP Protocol
    Bai, Jin
    Hariri, Salim
    Al-Nashif, Youssif
    2014 IEEE/ACS 11TH INTERNATIONAL CONFERENCE ON COMPUTER SYSTEMS AND APPLICATIONS (AICCSA), 2014, : 9 - 15
  • [6] Sensor Based Communication Network for WACS with DNP3
    Neeraja, T. P.
    Pa, Sivraj
    Sasi, K. K.
    SMART GRID TECHNOLOGIES (ICSGT- 2015), 2015, 21 : 76 - 81
  • [7] Secure Authentication for DNP3
    Gilchrist, Grant
    2008 IEEE POWER & ENERGY SOCIETY GENERAL MEETING, VOLS 1-11, 2008, : 855 - 857
  • [8] DNPSec: Distributed Network Protocol Version 3 (DNP3) security framework
    Majdalawieh, Munir
    Parisi-Presicce, Francesco
    Wijesekera, Duminda
    ADVANCES IN COMPUTER, INFORMATION, AND SYSTEMS SCIENCES AND ENGINEERING, 2006, : 227 - +
  • [9] New software enhances work of DNP3 SCADA operating protocol
    Smyth, R
    PIPELINE & GAS JOURNAL, 2003, 230 (02) : 51 - 51
  • [10] Risk Analysis of DNP3 Attacks
    Kelli, Vasiliki
    Radoglou-Grammatikis, Panagiotis
    Lagkas, Thomas
    Markakis, Evangelos K.
    Sarigiannidis, Panagiotis
    2022 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE (IEEE CSR), 2022, : 351 - 356