Data Diode Secured Process Control Communications

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

The increasing integration of process control systems with external networks increases the risk of cyber intrusions and malicious attacks, which can compromise the security and integrity of industrial process plants, potentially leading to equipment damage, product loss, and even human safety risks.

Innovation Solution

A system utilizing a data diode to prevent two-way communications between a process plant network and another system, ensuring that data generated by process plant devices during industrial operations is encrypted and securely transported across the data diode, with multiple security mechanisms applied at different gateways to prevent ingress and secure egress of data.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If process control systems are integrated with external networks to enable remote monitoring and data access, then system connectivity and data accessibility are improved, but the risk of cyber intrusions and malicious attacks increases

Engineering Contradiction:
Improvesystem connectivityVSAvoidcyber intrusion risk
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The patent segments the network communication into multiple isolated layers: process control network, data diode interface, and external network. This segmentation prevents direct connectivity between the control system and external networks, allowing remote monitoring while blocking cyber intrusion paths through unidirectional data flow enforcement at each segment boundary.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

The patent introduces a data diode as an intermediary device between the process control network and external networks. This mediator enforces unidirectional data flow from the control system to external systems, enabling data accessibility while preventing malicious attacks from external networks from reaching the control system.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Ease of operation

If data is transmitted bidirectionally between process plants and external systems to enable remote control and monitoring, then operational flexibility and remote access are improved, but system security and data integrity are worsened

Engineering Contradiction:
Improveremote access capabilityVSAvoidsystem security
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent inverts the traditional bidirectional communication model by implementing unidirectional data flow from the process control system to external systems. This inversion allows remote monitoring and data access while inherently preventing external systems from sending malicious commands or data back to the control system, thus maintaining security while providing operational flexibility.

Inventive Principle:
Principle #13The other way round (Inversion)

Solution Approach 2:

The data diode acts as an intermediary that permits data flow in only one direction (from process control to external systems). This mediator enables remote access to monitoring data while blocking any reverse communication that could compromise system security or data integrity.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Reliability

If traditional firewalls and bidirectional communication protocols are used to secure process control networks, then network security is improved, but communication complexity and potential attack vectors are worsened

Engineering Contradiction:
Improvenetwork securityVSAvoidcommunication protocol complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent extracts the bidirectional communication capability from the process control network by implementing unidirectional data flow through data diodes. This removal of reverse communication paths eliminates the need for complex firewall rules and authentication protocols for incoming connections, simplifying the communication architecture while maintaining security.

Inventive Principle:
Principle #2Taking out (Extraction)

Solution Approach 2:

The data diode serves as a simple intermediary that provides security through its inherent unidirectional nature rather than through complex security protocols. This mediator simplifies the communication architecture by replacing multifaceted firewall and authentication systems with a straightforward physical or logical constraint on data flow direction.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS10257163B2Secured process control communications
Publication Date: 2019.04.09 FISHER ROSEMOUNT SYST INC
  • US10257163B2 patent drawing
  • US10257163B2 patent drawing
  • US10257163B2 patent drawing

AI summary

Securing communications from a process plant to a remote system includes a data diode disposed therebetween that allows data to egress from the plant but prevents ingress of data into the plant and its associated systems. Data is secured across the data diode by securely provisioning a sending device at the plant end of the diode to a receiving device at the remote system end. The sending and receiving devices share secret key material that is recurrently updated. To ensure fidelity of communications across the unidirectional data diode, the sending device recurrently provides context information that is descriptive of data sources of the plant. Additionally, data transmitted from plant data sources to the sending device of the data diode may be secured using a respective security mechanism/technique, and data transmitted from the receiving device of the data diode to the remote system may be secured using a respective security mechanism/technique.