Security policy dynamic acquisition method of process control system based on attack-defense game

A technology of process control system and security policy, which is applied in the field of dynamic acquisition of security policy of process control system, and can solve the problems of fixed response mode and excessive response.

Active Publication Date: 2017-02-22
HUAZHONG UNIV OF SCI & TECH
View PDF5 Cites 23 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] Aiming at the above defects or improvement needs of the prior art, the present invention provides a method for dynamically acquiring security policies of a process control system based on an attack-defense game, which solves the tight coupling between the information system and the physical system in the process of dynamic security policy decision-making through the risk assessment system , fixed response patterns, over-response issues

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Security policy dynamic acquisition method of process control system based on attack-defense game
  • Security policy dynamic acquisition method of process control system based on attack-defense game
  • Security policy dynamic acquisition method of process control system based on attack-defense game

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0067] In order to make the object, technical solution and advantages of the present invention clearer, the present invention will be further described in detail below in conjunction with the accompanying drawings and embodiments. It should be understood that the specific embodiments described here are only used to explain the present invention, not to limit the present invention. In addition, the technical features involved in the various embodiments of the present invention described below can be combined with each other as long as they do not constitute a conflict with each other.

[0068] The information security dynamic decision-making method of the process control system provided by the embodiment, its process is as follows figure 1 As shown, including offline process and online process, specifically include the following steps:

[0069] (1) Analyze the process control system and establish a Bayesian network;

[0070] (2) Establish a defense strategy model;

[0071] (...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a security policy dynamic acquisition method of a process control system based on an attack-defense game. The method comprises an offline process and an online process; the method comprises the following steps: firstly, analyzing the process control system and establishing a Bayesian network; secondly, building a defense strategy model; thirdly, screening a potential attack strategy set and a potential defense strategy set; fourthly, quantizing an attack-defense payoff matrix; and finally, according to the attack-defense payoff matrix, establishing an equation solution and acquiring an optimal security strategy. The method of the invention comprehensively considers various consequences caused by the attack-defense strategy, and performs uniform scale quantization; an idea of an attack-defense game theory is introduced to a solving process of the optimal security strategy, so that the problems that the traditional dynamic strategy decision is excessive responsive, and the response mode of a dynamic decision response method is fixed and easily exploited by attackers are solved; and besides, the Bayesian network and the attack-defense strategy model are used for screening the potential attack-defense strategy, so that the number of alternative attack-defense strategies can be greatly reduced, thereby reducing the computing time of cost-benefit quantification of the attack-defense strategies, and improving the real-time performance of a dynamic decision.

Description

technical field [0001] The invention belongs to the technical field of process control system information security protection, and more specifically relates to a method for dynamically acquiring security policies of a process control system based on an attack-defense game. Background technique [0002] The process control system has realized the management, monitoring and control of a wide area; the rapid development of computer technology, sensor technology, network communication technology and automatic control technology has broken the deadlock of traditional process control system information islands, but while enjoying the convenience brought by openness, it is also Faced with various information security problems. The consequences of intrusion attacks on process control systems are very serious, and its information security issues are imminent. Dynamic information security policy decision-making is the key to solving process control system information security issues. ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06G05B19/418
CPCG05B19/418G05B2219/2609H04L63/0227H04L63/14H04L63/1441
Inventor 周纯杰张琦秦元庆印炜田博
Owner HUAZHONG UNIV OF SCI & TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products