IT Security for Safety-Critical Automation Systems

نویسنده

  • Martin Naedele
چکیده

The protection of safety-critical and infrastructure systems (such as automation systems for utilities, but also for manufacturing plants) against electronic and communication network based attacks becomes more and more important. This paper investigates how such safety-critical plants and automation systems can be secured against information system and network based attacks. The two common approaches, hard perimeter, and defense-in-depth are discussed. Based on the defense-in-depth approach, a conceptional, generic security zone model for use in analysis and synthesis of a plant security architecture is proposed, and for each of its zones a survey of the available and appropriate security mechanisms is given. Using an example from the substation automation domain, it is shown how threats and counter-measures can be systematically derived and how the specific system and usage characteristics of automation systems (or at least their restricted safety critical sub-functions) can be exploited in a positive way to deploy security mechanisms that would in this form not be available and applicable to home or office information systems.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

IT Security for Automation Systems - Motivations and Mechanisms

The protection of safety-critical and infrastructure systems (such as automation systems for utilities, but also for manufacturing plants) against electronic and communication network based attacks becomes more and more important. This paper examines how such safety-critical plants and automation systems can be secured against information system and network based attacks. Based on the defense-i...

متن کامل

Towards an IT Security Risk Assessment Framework for Railway Automation

Some recent incidents have shown that possibly the vulnerability of IT systems in railway automation has been underestimated. Fortunately, so far, almost only denial-of-service attacks were successful, but due to several trends, such as the use of commercial IT and communication systems or privatization, the threat potential could increase in the near future. However, up to now, no harmonized I...

متن کامل

Security and Safety Features of Industrial Communications System

The paper deals with problems of safety and security principles within industrial communication systems witch is used in safety critical applications. The summarisation of attacks to industrial automation systems and security issues and recommendations applicable to the industrial networks based on cryptographic techniques is mentioned. The mainly part is oriented to identification of risks and...

متن کامل

Security for Industrial Automation and Control Systems

The security of industrial automation and control systems becomes increasingly critical as different networks are connected and systems are integrated in a collaborative manufacturing environment. For industrial automation and control systems the potential impact of an attack may be more serious than for computer systems in general. Users of industrial automation and control systems need to pay...

متن کامل

Toulouse , France Policies for Safety - Critical Systems : the Challenge of Formalisation

Policies are used to define the goals, responsibility and authority of stakeholders in some area of interest: in our case, complex safety-critical systems. Previous work, e.g. [Moffett 1993], has pointed out the advantages of making policies explicit and formalising2 them, so that human managers can recognise and reason with them, perhaps with some automated support. The benefits of this for ma...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2002