Communication data security audit method and device for industrial control system

A technology for industrial control systems and communication data, applied in data processing applications, calculations, instruments, etc., can solve the problems of industrial control system losses, low efficiency in troubleshooting or threat removal, and save time, reduce determination time, and improve efficiency.

Active Publication Date: 2017-05-10
INSECTECH BEIJING CO LTD
View PDF10 Cites 7 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

When a problem occurs in the industrial control system, all the communication data recorded in the audit can only be judged one by one to determine the communication data that caused the problem, and the troubleshooting efficiency of faults or threats is low.
This will lead to huge losses for industrial control systems with extremely high real-time requirements

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Communication data security audit method and device for industrial control system
  • Communication data security audit method and device for industrial control system
  • Communication data security audit method and device for industrial control system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0027] In order to make the purpose, technical solutions and advantages of the embodiments of the present invention clearer, the technical solutions in the embodiments of the present invention will be clearly and completely described below in conjunction with the drawings in the embodiments of the present invention. Obviously, the described embodiments It is a part of embodiments of the present invention, but not all embodiments. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without creative efforts fall within the protection scope of the present invention.

[0028] It should be noted that, in the case of no conflict, the embodiments in the present application and the features in the embodiments can be combined with each other.

[0029] The invention may be described in the general context of computer-executable instructions, such as program modules, being executed by a computer. Generally, program mo...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a communication data security audit method and device for an industrial control system. The method comprises the steps of: parsing acquired communication data to determine service behavior data which the communication data comprises; according to the service behavior data, determining a service rule set which needs to be met by the industrial control system when a service behavior is executed; and judging whether a current state of the industrial control system meets the service rule set, and carrying out corresponding recording. The communication data security audit method and device disclosed by the embodiment of the invention have the beneficial effect that when the communication data is audited, not only a communication behavior of the communication data but also the service behavior which the communication behavior represents need to be determined so as to judge whether the service behavior accords with the corresponding service rules and carry out recording. Therefore, when the industrial control system has a problem, communication data causing the problem can be determined from the recorded communication data which do not accord with the service rules. Fault or threat checking efficiency is promoted, and time is saved for recovering the industrial control system as soon as possible.

Description

technical field [0001] The invention relates to the field of industrial control security, in particular to a communication data security audit method and device for an industrial control system. Background technique [0002] In the industrial control system, various intelligent electronic devices (Intelligent Electronic Device abbreviated as IED) communicate through communication protocols. In order to realize the traceability of the behavior of the industrial control system, identify dangerous operations, and ensure the security of the industrial control system, it is necessary to perform a security audit on the communication data in the industrial control system. [0003] The traditional security audit analyzes the communication data according to the communication protocol, records the field information in it, and forms an audit record of the communication behavior. The traditional security audit method does not consider the business functions of the industrial control sy...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06Q10/06
CPCG06Q10/0635
Inventor 陈亚宁陈惠欣
Owner INSECTECH BEIJING CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products