PLC Security Unit Control for Intrusion Detection Tuning

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Control devices, such as programmable logic controllers (PLCs), lack protection against threats arising from networked or intelligent systems, as they primarily detect abnormalities in facilities and machines but not those related to networking or intelligence-based threats.

Innovation Solution

A controller system with a security unit that detects unauthorized intrusions and allows flexible control of its behavior, including recovery commands and adjustable detection levels, connected to a control unit that can execute user programs and receive settings from a support device for countermeasures, and provides visual or auditory security risk indicators.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If control devices are connected to networks and made intelligent, then processing capability and functionality are improved, but vulnerability to unauthorized intrusion and security threats increases

Engineering Contradiction:
Improveprocessing capabilityVSAvoidsecurity threats
Core Design Contradiction:
Adaptability or versatilityVSObject-affected harmful factors

Solution Approach 1:

The control device is segmented into distinct functional units: a security unit dedicated to detecting unauthorized intrusions and a control unit for executing control calculations. This separation allows the security function to operate independently while the control unit focuses on processing tasks, resolving the contradiction by isolating security concerns from processing capabilities.

Inventive Principle:
Principle #1Segmentation

Solution Approach 2:

A command transmission mechanism acts as an intermediary between the control unit and security unit. The control unit can transmit commands to change the behavior of the detection means in the security unit, allowing flexible control of security functions without direct exposure to external threats, thus protecting the intelligent processing capabilities while maintaining security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Measurement precision

If detection means continuously monitors for unauthorized intrusion, then security detection capability is improved, but system performance and processing speed deteriorate

Engineering Contradiction:
Improvedetection capabilityVSAvoidprocessing speed
Core Design Contradiction:
Measurement precisionVSProductivity

Solution Approach 1:

The detection means behavior is made dynamic and adjustable through commands transmitted from the control unit. The detection level and operational state of the security unit can be changed based on system conditions, allowing the system to optimize between detection precision and processing speed depending on the operational context.

Inventive Principle:
Principle #15Dynamics

Solution Approach 2:

The security unit's detection parameters can be modified by commands from the control unit, such as adjusting detection sensitivity or temporarily suspending detection during critical operations. This parameter flexibility allows the system to balance security monitoring with overall processing performance requirements.

Inventive Principle:
Principle #35Parameter changes

3Measurement precision

If security unit operates with high detection sensitivity, then unauthorized intrusion detection is improved, but false positives and system interruptions increase

Engineering Contradiction:
Improvedetection accuracyVSAvoidsystem stability
Core Design Contradiction:
Measurement precisionVSReliability

Solution Approach 1:

The control unit receives detection results from the security unit and can transmit commands back to adjust the detection means behavior. This feedback loop allows the system to learn from detection outcomes and adjust sensitivity levels to reduce false positives while maintaining detection accuracy for genuine threats.

Inventive Principle:
Principle #23Feedback

Solution Approach 2:

The system can preliminarily adjust the detection means behavior through commands from the control unit based on anticipated operational conditions. By proactively modifying detection parameters before potential false alarms occur, the system maintains high detection accuracy while preventing unnecessary system interruptions.

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentUS12130911B2Controller system
Publication Date: 2024.10.29 OMRON CORP
  • US12130911B2 patent drawing
  • US12130911B2 patent drawing
  • US12130911B2 patent drawing

AI summary

The present invention addresses the novel problem of protecting against threats that can arise as a result of the development of networked or intelligent control devices and control systems. This controller system includes: a control unit that executes a control operation for controlling a control target; and a security unit that is connected to the control unit and oversees and manages security functions for the controller system. The security unit includes a detection means that detects whether any unauthorized intrusion into the controller system has occurred. The control unit includes a command transmission means that transmits commands for changing the behavior of the detection means of the security unit.