Check patentability & draft patents in minutes with Patsnap Eureka AI!

Modbus TCP security protection method and device

A security protection, MAC address technology, applied in the field of ModbusTCP security protection, can solve the problems of slave station crash, flood attack security protection, ModbusTCP communication affecting the master station and slave station, etc.

Inactive Publication Date: 2018-09-25
ZHEJIANG SUPCON TECH
View PDF2 Cites 6 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] In the prior art, in the process of protecting the Modbus TCP protocol, the access flood attack is not protected, that is, when the data access rate of the master station to the slave station is too high, the data of the slave station may be affected. Processing performance, even cause the slave station to crash, thus affecting the ModbusTCP communication between the master station and the slave station

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Modbus TCP security protection method and device
  • Modbus TCP security protection method and device
  • Modbus TCP security protection method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0052] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0053] refer to figure 1 , which shows a schematic flow diagram of a security protection method for Modbus TCP communication provided by an embodiment of the present invention. In this embodiment, the method includes:

[0054] S101: During the ModbusTCP communication session, when a Modbus TCP data packet is received, check the legality of the preset multiple tuple information of the data packet transmission layer;

[0055]In this embodiment, the transport la...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

PUM

No PUM Login to View More

Abstract

The invention discloses a security protection method and device for Modbus TCP communication. The method comprises the following steps: when receiving a Modbus TCP data packet, checking the legality of multiple pieces of preset tuple information of a data packet transmission layer; detecting the legality of the data format of the data packet application layer; detecting the legality of a functioncode in the data packet; detecting the legality of a current communication session transaction access rate; and detecting the legality of a register or a coil of the data packet. It can thus be seen that the access rate of the Modbus TCP communication session is limited, so as to block the data packet in the current communication process when the access rate exceeds a preset access rate threshold,so that the flood attack of the access is securely protected, and the security of the communication session is ensured; also, fake information and illegal transaction access function codes are blocked, and illegal register values or coil values are prevented from being written.

Description

technical field [0001] The invention relates to the field of data security, in particular to a Modbus TCP security protection method and device. Background technique [0002] With the rapid development of deep integration of informatization and industrialization, more and more standard and open communication protocols are used in industrial control systems, and the security risks of communication protocols are becoming increasingly prominent. Among them, the Modbus TCP protocol, as an industrial standard, provides an open and unified standard interface between field devices, automatic control applications, and enterprise management application software, and the Modbus TCP protocol has been widely used in the control field. However, as the Modbus TCP protocol is widely used, the security issues of the Modbus TCP protocol are also more and more widely concerned. [0003] In the prior art, in the process of protecting the Modbus TCP protocol, the access flood attack is not pro...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More

Application Information

Patent Timeline
no application Login to View More
IPC IPC(8): H04L29/06H04L12/40
CPCH04L12/40H04L63/1425H04L63/1458H04L69/16H04L2012/40228
Inventor 马纳罗冰陈银桃王有为
Owner ZHEJIANG SUPCON TECH
Features
  • R&D
  • Intellectual Property
  • Life Sciences
  • Materials
  • Tech Scout
Why Patsnap Eureka
  • Unparalleled Data Quality
  • Higher Quality Content
  • 60% Fewer Hallucinations
Social media
Patsnap Eureka Blog
Learn More