Industrial firewall without industrial protocol (IP) distributed type depth check arithmetic based on industrial protocol object linking and embedding for process control (OPC) classic

An industrial firewall and in-depth inspection technology, applied in the network field, can solve the problems that traditional IT firewalls have no in-depth security inspection and protection, it is difficult to accurately control the time delay, and cannot effectively protect industrial equipment, etc., to achieve precise and strict protection and less processing traffic , the effect of small network delay

Inactive Publication Date: 2013-04-10
青岛海天炜业过程控制技术股份有限公司
View PDF1 Cites 19 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0002] With the development of IP-based industrial equipment, the importance of network security has become increasingly prominent in industrial networks. The current industrial network is mainly protected by traditional IT firewalls. Such IT firewalls are generally deployed at network entrances, such as between switches. It is used to centrally filter all network traffic, and it is difficult to precisely control the delay caused by it
At the same time, in industrial networks, communication protocols such as OPC and Modbus have been widely used. These protocols are in the application layer of the ISO network architecture. In order to meet the requirements of industrial security, it is necessary to perform operations such as connection tracking and format checking on network packets. However, Traditional IT firewalls do not carry out in-depth security detection and protection against the characteristics of industrial communication protocols, and cannot effectively protect industrial equipment. Moreover, it is necessary to consider the existing network topology and configure IP, routing and other information during installation, which greatly increases deployment configuration management. The complexity of traditional IT firewalls cannot meet the needs of industrial network security, and cannot realize in-depth inspection of industrial protocols

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial firewall without industrial protocol (IP) distributed type depth check arithmetic based on industrial protocol object linking and embedding for process control (OPC) classic
  • Industrial firewall without industrial protocol (IP) distributed type depth check arithmetic based on industrial protocol object linking and embedding for process control (OPC) classic
  • Industrial firewall without industrial protocol (IP) distributed type depth check arithmetic based on industrial protocol object linking and embedding for process control (OPC) classic

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0031] see Figure 1 to Figure 6 As shown, the algorithm of the present invention utilizes an industrial firewall and a management server to work. The industrial firewall is set between the industrial network and the network segment of the protected equipment. The management server sends a special network packet to the protected equipment, and the network packet is Intercepted by the industrial firewall, the deep inspection algorithm embedded in the firewall device processes the network packet and sends a response back to the management server to realize the centralized management and configuration of the industrial firewall. algorithm, configuration-based deep inspection algorithm. see figure 1 As shown, the firewall device is deployed at the edge of the industrial network to protect multiple industrial devices in a targeted manner. The firewall management server centrally discovers and manages firewall devices and configures them.

[0032] The invention relates to the de...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to an industrial firewall without industrial protocol (IP) distributed type depth check arithmetic based on industrial protocol object linking and embedding for process control (OPC) classic. An industrial firewall is arranged on an advanced position of a protected device, and network information is not needed to be configurated in advance. Installation, management and configuration of the firewall are simplified. At the same time, the industrial firewall without IP is designed to be arranged on an edge of industry network, handled flow is less, network delay is short, and instantaneity is good.

Description

technical field [0001] The invention belongs to the field of network technology, and in particular relates to an IP-free distributed industrial firewall depth inspection algorithm based on the industrial protocol OPC Classic. Background technique [0002] With the development of IP-based industrial equipment, the importance of network security has become increasingly prominent in industrial networks. The current industrial network is mainly protected by traditional IT firewalls. Such IT firewalls are generally deployed at network entrances, such as between switches. It is used to centrally filter all network traffic, and it is difficult to precisely control the delay caused by it. At the same time, in industrial networks, communication protocols such as OPC and Modbus have been widely used. These protocols are in the application layer of the ISO network architecture. In order to meet the requirements of industrial security, it is necessary to perform operations such as conne...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
Inventor 仇亚仁刘安正樊庆欣温克强彭亮武晓芳刘文娟刘成梅张娟娟宁春龙李涛
Owner 青岛海天炜业过程控制技术股份有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products