Design Of Industrial Control System Secure Communication Using Moving Target Defense With Legacy Infrastructure

SENSORS AND MATERIALS(2021)

引用 2|浏览0
暂无评分
摘要
In this paper, we propose a framework that protects the communication for programming logic controllers (PLCs) and sensors in a supervisory control and data acquisition (SCADA) network with an improved moving target defense (MTD) scheme that thwarts attackers in the reconnaissance stage. Our framework changes the Internet Protocol (IP) addresses of each host based on specified time intervals, and the scheme does not need to transmit the IP address to the communication parties for notification. The scheme uses the Domain Name System (DNS) and Dynamic Host Configuration Protocol (DHCP) to improve existing MTD schemes, which may have synchronization problems or a single point of failure. Moreover, adding DNS and DHCP into the MTD scheme significantly lowers the cost of deployment compared with deploying MTD devices before each PLC, making it feasible for an enterprise to implement. Experimental results are presented to demonstrate that our framework can effectively protect a network and that its performance is acceptable.
更多
查看译文
关键词
industrial control system, moving target defense, secure communication, DHCP, DNS, sensing network
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要