PLC Security Unit Control for Intrusion Detection Tuning
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Control devices, such as programmable logic controllers (PLCs), lack protection against threats arising from networked or intelligent systems, as they primarily detect abnormalities in facilities and machines but not those related to networking or intelligence-based threats.
Innovation Solution
A controller system with a security unit that detects unauthorized intrusions and allows flexible control of its behavior, including recovery commands and adjustable detection levels, connected to a control unit that can execute user programs and receive settings from a support device for countermeasures, and provides visual or auditory security risk indicators.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If control devices are connected to networks and made intelligent, then processing capability and functionality are improved, but vulnerability to unauthorized intrusion and security threats increases
Solution Approach 1:
The control device is segmented into distinct functional units: a security unit dedicated to detecting unauthorized intrusions and a control unit for executing control calculations. This separation allows the security function to operate independently while the control unit focuses on processing tasks, resolving the contradiction by isolating security concerns from processing capabilities.
Solution Approach 2:
A command transmission mechanism acts as an intermediary between the control unit and security unit. The control unit can transmit commands to change the behavior of the detection means in the security unit, allowing flexible control of security functions without direct exposure to external threats, thus protecting the intelligent processing capabilities while maintaining security.
2Measurement precision
If detection means continuously monitors for unauthorized intrusion, then security detection capability is improved, but system performance and processing speed deteriorate
Solution Approach 1:
The detection means behavior is made dynamic and adjustable through commands transmitted from the control unit. The detection level and operational state of the security unit can be changed based on system conditions, allowing the system to optimize between detection precision and processing speed depending on the operational context.
Solution Approach 2:
The security unit's detection parameters can be modified by commands from the control unit, such as adjusting detection sensitivity or temporarily suspending detection during critical operations. This parameter flexibility allows the system to balance security monitoring with overall processing performance requirements.
3Measurement precision
If security unit operates with high detection sensitivity, then unauthorized intrusion detection is improved, but false positives and system interruptions increase
Solution Approach 1:
The control unit receives detection results from the security unit and can transmit commands back to adjust the detection means behavior. This feedback loop allows the system to learn from detection outcomes and adjust sensitivity levels to reduce false positives while maintaining detection accuracy for genuine threats.
Solution Approach 2:
The system can preliminarily adjust the detection means behavior through commands from the control unit based on anticipated operational conditions. By proactively modifying detection parameters before potential false alarms occur, the system maintains high detection accuracy while preventing unnecessary system interruptions.
Data Source
AI summary
The present invention addresses the novel problem of protecting against threats that can arise as a result of the development of networked or intelligent control devices and control systems. This controller system includes: a control unit that executes a control operation for controlling a control target; and a security unit that is connected to the control unit and oversees and manages security functions for the controller system. The security unit includes a detection means that detects whether any unauthorized intrusion into the controller system has occurred. The control unit includes a command transmission means that transmits commands for changing the behavior of the detection means of the security unit.


