Industrial control system control behavior detection and protection method and system

A technology of industrial control system and behavior, which is applied in general control system, control/regulation system, program control in sequence/logic controller, etc., and can solve the problems of deterioration of vulnerability and attack of industrial control system

Active Publication Date: 2022-03-18
物耀安全科技(杭州)有限公司
View PDF0 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] Since a typical modern industrial control system is based on a standard embedded system platform, various standard devices are applied, such as routers and demodulators, and often use or partially use off-the-shelf software, such as Ethernet, TCP / IP, HTTP and Windows, These standard hardware and software save costs, improve usability, and facilitate remote monitoring. However, the defects that come with it come from network-based attacks, which worsen the vulnerability of industrial control systems in terms of network security. Malicious programs Once infiltrated into the control network, it is possible to modify the control logic and configuration parameters of the PLC / PAC, eventually causing serious consequences

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial control system control behavior detection and protection method and system
  • Industrial control system control behavior detection and protection method and system
  • Industrial control system control behavior detection and protection method and system

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0093] The present invention provides many applicable inventive concepts that can be embodied in numerous specific contexts. The specific examples described in the following embodiments of the present invention are only used as illustrations of specific embodiments of the present invention, and are not intended to limit the scope of the present invention.

[0094] The present invention will be further described below in conjunction with the accompanying drawings and specific embodiments.

[0095] figure 1 It is a functional architecture diagram of a specific embodiment of the detection and protection system 100 of the present invention, including a network communication interface module 110, a preprocessing module 120, a user behavior database 125, an analysis module 130, a protection rule database 135, a protection module 140 and protection operations Database 145, and management module 150.

[0096] Wherein the network communication interface module 110 is responsible for ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a control behavior detection and protection method and system of an industrial control system. The detection and protection method includes receiving at least one data packet being transmitted on the communication network of the industrial control system; A control behavior associated with at least one data packet is detected by a plurality of characteristics; corresponding to at least one data packet being transmitted and the detected control behavior, at least one protection rule is determined; a protection operation is performed on the data packet, and the data packet is the corresponding One of several data packets of a protection rule, and the protection operation includes one or more of the following operations: allow data packet transmission, block data packet transmission, require user authentication, and record data packets. The invention can detect internal or external illegal operation attempts that violate the control behavior norms on the basis of the pre-established control behavior norms.

Description

technical field [0001] The present invention relates to the technical field of industrial control security, in particular to a control behavior detection and protection method and system for an industrial control system. Background technique [0002] Industrial control systems allow remote supervision by operators, engineers or analysts analyze based on the data obtained, and then decide to send commands or trigger alarms. Industrial control systems include programmable logic controllers (PLCs) and sometimes process automation controllers ( PAC), PLC / PAC is a computing device that executes a preset logic program. It controls the output of the execution device based on the data input by the sensor. The logic program controls the behavior of the PLC, which is called control logic. Users can change the control logic through the engineer workstation. [0003] In the industrial control system, the related PLC maintenance work can be done manually or automatically by the machine, ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): G05B19/05
CPCG05B19/056G05B2219/1138
Inventor 李冀
Owner 物耀安全科技(杭州)有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products