Control Device Security Event Detection for Networked Access
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional control devices do not adequately address the increasing threats associated with networking and the incorporation of intelligence, as they primarily detect abnormalities within facilities or devices but not potential threats arising from these advancements.
Innovation Solution
A control device equipped with a program execution module, a detection module to identify security events, and a notification module to alert relevant parties upon detection of unauthorized access or anomalies, including network address mismatches, user authentication failures, and program modifications, which can indicate potential threats before they occur.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If networking and intelligence are incorporated into control devices, then functionality and processing capability are improved, but vulnerability to security threats increases
Solution Approach 1:
The patent implements preliminary security measures by incorporating a detection module that monitors for security events before they can compromise the control device. The system proactively identifies unauthorized access attempts, abnormal data access patterns, and other security threats before they can cause harm, allowing preventive action to be taken.
Solution Approach 2:
The patent introduces a security event detection module as an intermediary between the networked control device and potential external threats. This detection module acts as a mediator that monitors and analyzes access patterns, data flow, and system behavior to identify security events before they can affect the control device's functionality.
2Reliability
If security monitoring is added to detect threats, then security protection is improved, but device complexity increases
Solution Approach 1:
The patent designs the detection module to perform multiple security monitoring functions simultaneously, including detecting unauthorized access, monitoring data access patterns, identifying abnormal behaviors, and generating security notifications. This multi-functional approach consolidates various security tasks into a single integrated module, reducing overall system complexity while maintaining comprehensive security protection.
Solution Approach 2:
The detection module autonomously monitors system behavior, analyzes access patterns, and identifies security events without requiring constant external intervention. The module self-manages the security monitoring process by comparing actual system behavior against expected patterns and automatically generating notifications when security events are detected.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
A control device includes: a program execution module that executes a program created depending on a control target; a detection module that determines whether a security event occurs in access from outside to the control device; and a notification module that provides a notification, upon detection of occurrence of the security event, to a notification destination corresponding to the occurred security event. The security event includes an event that does not conform to a predetermined rule.