A Linux-based firewall for the DNP3 protocol

被引:0
|
作者
Nivethan, Jeyasingam [1 ]
Papa, Mauricio [1 ]
机构
[1] Univ Tulsa, Tandy Sch Comp Sci, Tulsa, OK 74104 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Firewall solutions, specifically designed for smart power grids and other industrial control systems, are quite limited, with only a few commercial offerings. This paper presents a novel methodology that extends existing Linux-based firewalls for use in systems that use DNP3 protocol for industrial control. The proposed solution uses the u32 byte-matching feature of the iptables firewall, a firewall solution available in most Linux distributions. To demonstrate the approach, filtering rules for common attacks on the DNP3 protocol were developed. DNP3 is an industrial control protocol typically used in the electric power sector. The main goal of our work is to leverage an openly available and robust firewall solution for use in protecting the U.S. smart grid. The prototype was tested on a scaled-down electric power substation which runs the DNP3 protocol for communication between the field devices and the SCADA master.
引用
收藏
页数:5
相关论文
共 50 条
  • [21] Anomaly Detection for SCADA System Security Based on Unsupervised Learning and Function Codes Analysis in the DNP3 Protocol
    Altaha, Mustafa
    Hong, Sugwon
    ELECTRONICS, 2022, 11 (14)
  • [22] Security considerations in DNP3 SCADA systems
    Patel, SC
    Graham, JH
    COMPUTER APPLICATIONS IN INDUSTRY AND ENGINEERING, 2004, : 73 - 78
  • [23] A Bandwidth-Efficient Secure Authentication Module for Smart Grid DNP3 Protocol
    Cebe, Mumin
    Akkaya, Kemal
    2020 RESILIENCE WEEK (RWS), 2020, : 160 - 166
  • [24] Modelling the IEC 61850 and DNP3 Protocol Using OPNET in an Electrical Substation Communication Network
    Njova, Dion
    Ogudo, Kingsley
    Umenne, Patrice
    5TH INTERNATIONAL CONFERENCE ON ARTIFICIAL INTELLIGENCE, BIG DATA, COMPUTING AND DATA COMMUNICATION SYSTEMS (ICABCD2022), 2022,
  • [25] Security Assessment Framework for Cyber Physical Systems: A Case-study of DNP3 Protocol
    Siddavatam, Irfan A.
    Kazi, Faruk
    2015 IEEE BOMBAY SECTION SYMPOSIUM (IBSS), 2015,
  • [26] Formal modelling and analysis of DNP3 secure authentication
    Amoah, Raphael
    Camtepe, Seyit
    Foo, Ernest
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 59 : 345 - 360
  • [27] A Linux-based IDPS using Snort
    Ahmed, Ghilman
    Khan, Muhammad Naeem Ahmed
    Bashir, Muhammad Shamraiz
    Computer Fraud and Security, 2015, 2015 (08): : 13 - 18
  • [28] Reassembling Linux-based Hybrid RAID
    Choi, Jong-Hyun
    Park, Jungheum
    Lee, Sangjin
    JOURNAL OF FORENSIC SCIENCES, 2020, 65 (03) : 966 - 973
  • [29] Vulnerability assessment and experimentation of smart grid DNP3
    Darwish I.
    Igbe O.
    Saadawi T.
    Darwish, Ihab (idarwish@ccny.cuny.edu), 1600, River Publishers (05): : 23 - 54
  • [30] Attacking and Defending DNP3 ICS/SCADA Systems
    Kelli, Vasiliki
    Radoglou-Grammatikis, Panagiotis
    Sesis, Achilleas
    Lagkas, Thomas
    Fountoukidis, Eleftherios
    Kafetzakis, Emmanouil
    Giannoulakis, Ioannis
    Sarigiannidis, Panagiotis
    18TH ANNUAL INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING IN SENSOR SYSTEMS (DCOSS 2022), 2022, : 183 - 190