Software defined response and network reconfiguration for industrial control systems - Critical Infrastructure Protection XI
Conference Papers Year : 2017

Software defined response and network reconfiguration for industrial control systems

Bela Genge
  • Function : Author
  • PersonId : 1033281

Abstract

The technological shift from isolated industrial control systems to sys- tem-of-systems architectures has introduced myriad security challenges. Following popular trends, modern industrial control systems are incorporating technologies such as Industry 4.0, Internet of Things and cloud computing. In these architectures, traditional information and communications hardware and software are glued together with physical components and modern technologies based on IP networks such as software defined networking. The ability of these systems to respond and reconfigure themselves to mitigate faults and attacks is immensely attractive. This chapter proposes a three-tier architecture that implements response and reconfiguration capabilities in an industrial control system. It adopts a software defined network tier for dynamic communications flow (re)configuration and whitelisting, an application tier for the optimal placement of anomaly detection systems and a supervision tier for gluing the three tiers together. The effectiveness and performance of the protection mechanism are demonstrated via use case based qualitative and quantitative assessments.
Fichier principal
Vignette du fichier
460140_1_En_9_Chapter.pdf (641.33 Ko) Télécharger le fichier
Origin Files produced by the author(s)
Loading...

Dates and versions

hal-01819135 , version 1 (20-06-2018)

Licence

Identifiers

Cite

Hunor Sandor, Bela Genge, Piroska Haller, Flavius Graur. Software defined response and network reconfiguration for industrial control systems. 11th International Conference on Critical Infrastructure Protection (ICCIP), Mar 2017, Arlington, VA, United States. pp.157-173, ⟨10.1007/978-3-319-70395-4_9⟩. ⟨hal-01819135⟩
126 View
128 Download

Altmetric

Share

More