Industrial control system access control method based on attribute certificate

An industrial control system and access control technology, applied in transmission systems, digital transmission systems, security communication devices, etc.

Pending Publication Date: 2022-06-24
SHENYANG INST OF AUTOMATION - CHINESE ACAD OF SCI
View PDF8 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003]The purpose of the present invention is to provide a method and system for identity authentication and authorization of industrial users or industrial control equipment, in order to solve the problem of secure access and transmission of industrial control system data at the present stage security issues

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Industrial control system access control method based on attribute certificate
  • Industrial control system access control method based on attribute certificate
  • Industrial control system access control method based on attribute certificate

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0034] The present invention will be further described in detail below with reference to the accompanying drawings and embodiments.

[0035] The basic principle of the present invention is that the user and the industrial control device can be used as the subject of the access control model, the massive data of the industrial control system is stored in the security management and control platform, and belongs to the object of the access control model. Attributes can be used as elements of user encrypted data. When a visitor satisfies the attributes specified in user encryption, the ciphertext can be decrypted. All users should be authenticated before they can access resources, so as to determine whether the user has access to a certain resource. The access and use rights of the industrial control system can be implemented reliably and effectively, preventing attackers from impersonating legitimate users to obtain access rights to resources, ensuring the security of systems and...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses an industrial control system access control method based on an attribute certificate, and is applied to the technical field of industrial information security. According to the attribute-based access control model, in a certain environment attribute, whether the subject has the authority to access the resource or not is determined by verifying whether the operation attribute of the subject attribute to the resource attribute meets an access strategy or not. And if so, authorizing the subject to access the resource, otherwise, refusing the authorization. A user and industrial control equipment are added in an industrial control system, whether the attribute of the industrial control equipment operated by the user meets an access control strategy or not is judged, if yes, the corresponding authority is authorized, meanwhile, user trust value accumulation is added in the system, and the trust level of the industrial control equipment operated by the user is changed according to the trust value. And authority supervision and protection of single equipment and the whole industrial control system are realized.

Description

technical field [0001] The invention relates to the field of industrial control systems, in particular to a method for an access control model of an industrial control system based on attribute sets, and belongs to the field of industrial control network information security. Background technique [0002] With the integration of industrial Internet of Things, cloud computing and other information technologies and industrial control systems, the security of industrial data is facing great risks. In order to protect the confidentiality and integrity of data in such a complex distributed environment, this will generate a large amount of data as more and more devices are connected to industrial control systems. At this time, there will be some security problems. For example, there will be intruders who pretend to be legitimate users. Once they successfully invade, they will cause damage to industrial control systems, such as industrial Ethernet, data acquisition and monitoring, ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L9/40
CPCH04L63/105H04L63/083H04L63/0823H04L63/0876H04L63/205Y02P90/02
Inventor 刘贤达蒋一恒赵剑明陈春雨张博文王天宇
Owner SHENYANG INST OF AUTOMATION - CHINESE ACAD OF SCI
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products