Industrial control system safety protection method and device

An industrial control system and security protection technology, applied in the field of network security, can solve the problems of inability to meet non-basic security requirements and low security factor, and achieve the effect of effective management, improving security level, and ensuring safe operation.

Active Publication Date: 2021-04-09
中能融合智慧科技有限公司
View PDF6 Cites 17 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The embodiment of the present invention provides a safety protection method and device for an industrial control system, to at least solve the problem of low safety factors in the prior art, which cannot meet non-basic safety requirements, etc. question

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial control system safety protection method and device
  • Industrial control system safety protection method and device
  • Industrial control system safety protection method and device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment approach

[0048] As a specific implementation mode, the establishment process of the industrial control security baseline is described in detail below (such as figure 1 shown):

[0049] S11, self-learning, generation, and self-updating of black, white and gray lists

[0050] (1) Define the blacklist according to the abnormal behavior knowledge base at the terminal layer and the abnormal communication / flow knowledge base at the network layer;

[0051] (2) Define the whitelist according to the legal behavior knowledge base at the terminal layer and the legal communication / traffic knowledge base at the network layer;

[0052] (3) Unidentified terminals, traffic, and operations are defined as gray lists;

[0053] (4) Open terminal layer and network layer modeling learning self-update regularly or irregularly;

[0054] Wherein, the method of modeling learning self-updating can adopt the existing technology, and no special limitation is made here, and only a simple example is used for illu...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an industrial control system safety protection method and device, and the method comprises the steps: monitoring and obtaining the network information of an industrial control system in real time, and recognizing a safety risk according to an industrial control safety baseline, wherein the industrial control security baseline is established on the basis of a terminal layer security baseline and a network layer security baseline in combination with a vulnerability database and a threat intelligence database. According to the method, the industrial control security baseline is established, and security risk identification, prediction, disposal, transfer and the like are carried out on the industrial control system according to the industrial control security baseline, so that security protection of the industrial control system is realized, and the security level of the industrial control system is greatly improved.

Description

technical field [0001] The present invention relates to the field of network security, in particular to an industrial control system security protection method and device. Background technique [0002] As the nervous system of modern industrial infrastructure, the security of industrial control system (referred to as "industrial control system") is widely valued by people. However, the current industrial control system only implements the terminal installation agent or active collection of communication messages and full-flow data packet analysis technology, and does not construct a security baseline based on smart energy network traffic. [0003] However, when certain technologies cannot help solve the security problems of industrial control network traffic, the security of industrial control network traffic systems often requires a balance between the cost of security and the security risks that can be tolerated, and there is no such thing as industrial control network tra...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06
CPCH04L63/1433H04L63/1425H04L63/20
Inventor 张金山徐浩然曹洋
Owner 中能融合智慧科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products