A Linux-based firewall for the DNP3 protocol

被引:0
|
作者
Nivethan, Jeyasingam [1 ]
Papa, Mauricio [1 ]
机构
[1] Univ Tulsa, Tandy Sch Comp Sci, Tulsa, OK 74104 USA
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Firewall solutions, specifically designed for smart power grids and other industrial control systems, are quite limited, with only a few commercial offerings. This paper presents a novel methodology that extends existing Linux-based firewalls for use in systems that use DNP3 protocol for industrial control. The proposed solution uses the u32 byte-matching feature of the iptables firewall, a firewall solution available in most Linux distributions. To demonstrate the approach, filtering rules for common attacks on the DNP3 protocol were developed. DNP3 is an industrial control protocol typically used in the electric power sector. The main goal of our work is to leverage an openly available and robust firewall solution for use in protecting the U.S. smart grid. The prototype was tested on a scaled-down electric power substation which runs the DNP3 protocol for communication between the field devices and the SCADA master.
引用
收藏
页数:5
相关论文
共 50 条
  • [41] Security Analysis of the Non-Aggressive Challenge Response of the DNP3 Protocol using a CPN Model
    Amoah, Raphael
    Suriadi, Suriadi
    Camtepe, Seyit
    Foo, Ernest
    2014 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS (ICC), 2014, : 827 - 833
  • [42] Experimental and Theoretical Modeling of DNP3 Attacks in Smart Grids
    Darwish, Ihab
    Igbe, Obinna
    Saadawi, Tarek
    2015 36TH IEEE SARNOFF SYMPOSIUM, 2015, : 155 - 160
  • [43] DNP3 Implementation in a High DER Penetration Distribution System
    Moldovan, Dan
    Ayyanar, Raja
    2024 IEEE KANSAS POWER AND ENERGY CONFERENCE, KPEC 2024, 2024,
  • [44] Packet Analysis of DNP3 protocol over TCP/IP at an Electrical Substation Grid modelled in OPNET.
    Njova, Dion
    Ogudo, Kingsley
    Umenne, Patrice
    2020 IEEE PES & IAS POWERAFRICA CONFERENCE, 2020,
  • [45] Performance Analysis of Smart Grid Communication Protocol DNP3 over TCP/IP in a Heterogeneous Traffic Environment
    Ortega, Alcides
    Schweitzer, Christiane Marie
    Shinoda, Ailton Akira
    2013 IEEE COLOMBIAN CONFERENCE ON COMMUNICATIONS AND COMPUTING (COLCOM), 2013,
  • [46] Reducing Obsolescence of Linux-Based ATEs with Virtualization
    Weltzin, Casey
    Schlonsky, Sarah
    2010 IEEE AUTOTESTCON, 2010, : 290 - 292
  • [47] Reducing Obsolescence of Linux-Based ATEs with Virtualization
    Weltzin, Casey
    Schlonsky, Sarah
    IEEE INSTRUMENTATION & MEASUREMENT MAGAZINE, 2011, 14 (04) : 8 - 10
  • [48] Linux-based experimental boundary scan environment
    Kac, U
    Sedevcic, R
    Novak, F
    Biasizzo, A
    MICROPROCESSORS AND MICROSYSTEMS, 2002, 26 (05) : 199 - 206
  • [49] A Secure Machine-to-Machine Wireless Communication Using DNP3 Protocol for Feeder Automation in Smart Grid
    Lekbich, Anass
    Belfqih, Abdelaziz
    Nazha, Cherkaoui
    Elmariami, Faissal
    Boukherouaa, Jamal
    Sabri, Omar
    Dazahra, Mohamed Nouh
    UBIQUITOUS NETWORKING, UNET 2017, 2017, 10542 : 275 - 286
  • [50] Hydra - A DNP3 multiplexing platform for SCADA system switchover
    Cordova Zecena, Juan Carlos
    Orozco Molina, Vivian Lucia
    PROCEEDINGS OF THE 2017 IEEE XXIV INTERNATIONAL CONFERENCE ON ELECTRONICS, ELECTRICAL ENGINEERING AND COMPUTING (INTERCON), 2017,