IT Security for Safety-Critical Automation Systems
نویسنده
چکیده
The protection of safety-critical and infrastructure systems (such as automation systems for utilities, but also for manufacturing plants) against electronic and communication network based attacks becomes more and more important. This paper investigates how such safety-critical plants and automation systems can be secured against information system and network based attacks. The two common approaches, hard perimeter, and defense-in-depth are discussed. Based on the defense-in-depth approach, a conceptional, generic security zone model for use in analysis and synthesis of a plant security architecture is proposed, and for each of its zones a survey of the available and appropriate security mechanisms is given. Using an example from the substation automation domain, it is shown how threats and counter-measures can be systematically derived and how the specific system and usage characteristics of automation systems (or at least their restricted safety critical sub-functions) can be exploited in a positive way to deploy security mechanisms that would in this form not be available and applicable to home or office information systems.
منابع مشابه
IT Security for Automation Systems - Motivations and Mechanisms
The protection of safety-critical and infrastructure systems (such as automation systems for utilities, but also for manufacturing plants) against electronic and communication network based attacks becomes more and more important. This paper examines how such safety-critical plants and automation systems can be secured against information system and network based attacks. Based on the defense-i...
متن کاملTowards an IT Security Risk Assessment Framework for Railway Automation
Some recent incidents have shown that possibly the vulnerability of IT systems in railway automation has been underestimated. Fortunately, so far, almost only denial-of-service attacks were successful, but due to several trends, such as the use of commercial IT and communication systems or privatization, the threat potential could increase in the near future. However, up to now, no harmonized I...
متن کاملSecurity and Safety Features of Industrial Communications System
The paper deals with problems of safety and security principles within industrial communication systems witch is used in safety critical applications. The summarisation of attacks to industrial automation systems and security issues and recommendations applicable to the industrial networks based on cryptographic techniques is mentioned. The mainly part is oriented to identification of risks and...
متن کاملSecurity for Industrial Automation and Control Systems
The security of industrial automation and control systems becomes increasingly critical as different networks are connected and systems are integrated in a collaborative manufacturing environment. For industrial automation and control systems the potential impact of an attack may be more serious than for computer systems in general. Users of industrial automation and control systems need to pay...
متن کاملToulouse , France Policies for Safety - Critical Systems : the Challenge of Formalisation
Policies are used to define the goals, responsibility and authority of stakeholders in some area of interest: in our case, complex safety-critical systems. Previous work, e.g. [Moffett 1993], has pointed out the advantages of making policies explicit and formalising2 them, so that human managers can recognise and reason with them, perhaps with some automated support. The benefits of this for ma...
متن کامل