Securing the cloud-assisted smart grid

被引:10
|
作者
Demir, Kubilay [1 ]
Ismail, Hatem [1 ]
Vateua-Guroua, Tsuetoslaua [1 ]
Suri, Neeraj [1 ]
机构
[1] Tech Univ Darmstadt, Dept CS, Darmstadt, Germany
基金
欧盟地平线“2020”;
关键词
Availability; Security; Cloud; DDoS attack; Smart Grid;
D O I
10.1016/j.ijcip.2018.08.004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Rapid elasticity, ubiquitous network access, and highly-reliable services are some of the desirable features of cloud computing that are attractive for building cloud-assisted data-intensive Smart Grid (SG) applications. However, the Distributed Denial-of-Service (DDoS) attacks represent a serious threat to the cloud-assisted SG applications. To mitigate the risk related to the DDoS threat, we propose an SG-relevant Hierarchical Hybrid Cloud-Extension Concept (HHCEC) along with a DDoS attack defense mechanism, termed as Port Hopping Spread Spectrum (PHSS). HHCEC is a cloud-assisted architecture designed to meet scalability and security requirements of the SG applications in the cloud. To prevent transport or application-layer DDoS attacks on HHCEC, PHSS switches the open port of server as afunction of time and a secret shared between authorized clients and server, and thus efficiently dropping packets with closed port number. In addition, PHSS spreads the data packets over all the servers versus a single server to provide a robust protection against volume-based DDoS attacks that would affect some of the servers. This packet spreading approach enables PHSS to instantiate replica servers to take over the attacked servers without blocking the whole traffic by utilizing the rapid-elasticity characteristic of the cloud. Moreover, PHSS leverages a shuffling-based containment mechanism in order to quarantine malicious clients in a notably short time. Accordingly, the effect of a DDoS attack based on the compromised secret of the malicious clients is minimized. We evaluate our approach by building a proof-of-concept prototype using Amazon's EC2 and the PlanetLab test-bed. In a DDoS attack scenario, the proposed approach obtains a significant availability enhancement of > 38% that highlight its efficiency in comparison to existing approaches. The results also indicate negligible overhead for the proposed approach compared to the plain system i.e., no additional latency and less than 0.01% throughput degradation. (C) 2018 Published by Elsevier B.V.
引用
收藏
页码:100 / 111
页数:12
相关论文
共 50 条
  • [1] Artificial Intelligence for Cloud-Assisted Smart Factory
    Wan, Jiafu
    Yang, Jun
    Wang, Zhongren
    Hua, Qingsong
    IEEE ACCESS, 2018, 6 : 55419 - 55430
  • [2] Guest Editorial: Security and Privacy for Cloud-Assisted Internet of Things (IoT) and Smart Grid
    Mishra, Preeti
    Vidyarthi, Ankit
    Siano, Pierluigi
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (07) : 4966 - 4968
  • [3] An Edge Cloud-Assisted CPSS Framework for Smart Cities
    Wang, Puming
    Yang, Laurence T.
    Li, Jintao
    IEEE CLOUD COMPUTING, 2018, 5 (05): : 37 - 46
  • [4] Cloud-Assisted Context-Aware Vehicular Cyber-Physical System for PHEVs in Smart Grid
    Kumar, Neeraj
    Singh, Mukesh
    Zeadally, Sherali
    Rodrigues, Joel J. P. C.
    Rho, Seungmin
    IEEE SYSTEMS JOURNAL, 2017, 11 (01): : 140 - 151
  • [5] Cloud-assisted interaction and negotiation of industrial robots for the smart factory
    Wang, Shiyong
    Zhang, Chunhua
    Liu, Chengliang
    Li, Di
    Tang, Hao
    COMPUTERS & ELECTRICAL ENGINEERING, 2017, 63 : 66 - 78
  • [6] Stable Matching with Ties for Cloud-assisted Smart TV Services
    Kim, Gyuyeong
    Lee, Wonjun
    2014 IEEE INTERNATIONAL CONFERENCE ON CONSUMER ELECTRONICS (ICCE), 2014, : 560 - 561
  • [7] Securing the Smart Grid
    Hastings, John
    Laverty, David M.
    Morrow, D. John
    2014 49TH INTERNATIONAL UNIVERSITIES POWER ENGINEERING CONFERENCE (UPEC), 2014,
  • [8] A Cloud-Assisted Region Monitoring Strategy of Mobile Robot in Smart Greenhouse
    Li, Xiaomin
    Ma, Zhiyu
    Chu, Xuan
    Liu, Yongxin
    MOBILE INFORMATION SYSTEMS, 2019, 2019
  • [9] Cloud-assisted secure and conjunctive publish/subscribe service in smart grids
    Li, Jinguo
    Wen, Mi
    Zhang, Kai
    IET INFORMATION SECURITY, 2020, 14 (04) : 470 - 481
  • [10] Cloud-assisted secure video transmission and sharing framework for smart cities
    Hossain, M. Shamim
    Muhammad, Ghulam
    Abdul, Wadood
    Song, Biao
    Gupta, B. B.
    FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 83 : 596 - 606