Content-based deep communication control for networked control system
Ming Wan (),
Wenli Shang (),
Linghe Kong () and
Peng Zeng ()
Additional contact information
Ming Wan: Shenyang Institute of Automation Chinese Academy of Sciences
Wenli Shang: Shenyang Institute of Automation Chinese Academy of Sciences
Linghe Kong: Shenyang Institute of Automation Chinese Academy of Sciences
Peng Zeng: Shenyang Institute of Automation Chinese Academy of Sciences
Telecommunication Systems: Modelling, Analysis, Design and Management, 2017, vol. 65, issue 1, No 12, 155-168
Abstract:
Abstract In smart cities, the networked control system plays a significant role in transportation systems, power stations or other critical infrastructures, and it is facing many security issues. From this point, this paper proposes a content-based deep communication control approach to guarantee its security. Based on the layer architecture, this approach analyzes the interactive content in depth according to different industrial communication protocols, and implements the access control between two distinct enclaves. For OPC Classic, we acquire the dynamic port provided by OPC server, and open a new connection belonging to this port; for Modbus/TCP, we not only analyze the ordinary function codes and addresses, but also check the register or coil values by using the multi-bit Trie-tree matching algorithm. Besides, the white-listing strategy is introduced to satisfy the special requirements of industrial communication. Our experiment results show that, on the one hand the proposed approach provides OPC and Modbus/TCP defenses in depth; on the other hand it has less than 1 ms forwarding latency and 0 packet loss rate when the rule number reaches 200, and all these meet the availability requirements in the networked control system. In particular, this approach has been successfully applied in several real-world petrochemical control systems.
Keywords: Content-based deep communication control; OPC Classic; Modbus/TCP; White-listing (search for similar items in EconPapers)
Date: 2017
References: View complete reference list from CitEc
Citations:
Downloads: (external link)
http://link.springer.com/10.1007/s11235-016-0223-x Abstract (text/html)
Access to the full text of the articles in this series is restricted.
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:spr:telsys:v:65:y:2017:i:1:d:10.1007_s11235-016-0223-x
Ordering information: This journal article can be ordered from
http://www.springer.com/journal/11235
DOI: 10.1007/s11235-016-0223-x
Access Statistics for this article
Telecommunication Systems: Modelling, Analysis, Design and Management is currently edited by Muhammad Khan
More articles in Telecommunication Systems: Modelling, Analysis, Design and Management from Springer
Bibliographic data for series maintained by Sonal Shukla () and Springer Nature Abstracting and Indexing ().