Method for filtering OPC security gateway data packets

A technology of security gateway and filtering method, applied in the field of network information security, can solve problems such as poor security protection, and achieve the effect of improving security protection capability

Inactive Publication Date: 2015-05-27
NORTHWESTERN POLYTECHNICAL UNIV
View PDF2 Cites 21 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0007] In order to overcome the deficiencies of poor security protection of existing industrial control systems, the present invention provides a method for filtering data packets of OPC security gateways

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for filtering OPC security gateway data packets
  • Method for filtering OPC security gateway data packets

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] refer to Figure 1-2 . The present invention is implemented by developing the OPC security gateway. The core of the OPC security gateway is the OPC data packet filtering system based on the present invention, which can be realized by software or hardware. When the OPC security gateway is deployed and running, it can be managed through a remote console. The remote console mainly provides the following functions:

[0025] 1. The serial communication mode is adopted between the remote console and the OPC security gateway, and a graphical user interface is provided to support remote management operations.

[0026] 2. The remote console provides the identity authentication function. The user must enter the correct user name and password, and only after passing the identity authentication is allowed to log in to the system, perform management operations, and allow legal users to modify the user name and password.

[0027] 3. The remote console provides system configuration ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for filtering OPC security gateway data packets. The method is used for solving the technical problem of poor security protection of the existing industrial control system. The invention adopts the technical scheme as follows: the method for filtering the OPC security gateway data packets comprises the steps of arranging an OPC security gateway on a network link between an enterprise information network and an industrial control network, checking OPC data packets which pass through the OPC security gateway and carrying out security certification on an OPC client terminal, checking whether communication between the OPC client terminal and an OPC server accords with the security policy by using an OPC communication rule, processing the communication between a primary OPC client terminal and the OPC server according to a security checking rule when the OPC security gateway forwards the data packets and prohibiting the OPC data packets which violate the security rule from entering the industrial control system. According to the method for filtering the OPC security gateway data packets, the security of the industrial control system is protected by arranging the OPC security gateway; the vicious OPC communication operations and the data packets are filtered; the security protection capability of the industrial control system is improved.

Description

technical field [0001] The invention belongs to the field of network information security, and in particular relates to an OPC security gateway data packet filtering method. Background technique [0002] In the field of industrial control, in order to realize the interoperability between the application software and hardware products of the industrial control system, it is necessary to solve the problems of system integration and data communication at the application level. To this end, an international organization called the OPC Foundation was established internationally to formulate the OPC standard. OPC is the abbreviation of Object Linking and Embedding for Process Control. Now, the OPC Foundation has more than 220 members, including all major automation control systems, instrumentation and process control system companies in the world, so the OPC standard has become a de facto international standard. [0003] The core of the OPC standard is Microsoft's Component Objec...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/0236H04L63/0263H04L63/1408
Inventor 蔡皖东王康魏鹏程吕品
Owner NORTHWESTERN POLYTECHNICAL UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products