کد مقاله کد نشریه سال انتشار مقاله انگلیسی نسخه تمام متن
275039 1429488 2016 11 صفحه PDF دانلود رایگان
عنوان انگلیسی مقاله ISI
Exploiting traffic periodicity in industrial control networks
ترجمه فارسی عنوان
بکارگیری تناوب ترافیک در شبکه های کنترل صنعتی
کلمات کلیدی
شبکه های کنترل صنعتی، تناوب ترافیک، مدل های ترافیک، تشخیص تجاوز، اریابی عملکرد دستگاه.
موضوعات مرتبط
مهندسی و علوم پایه مهندسی کامپیوتر شبکه های کامپیوتری و ارتباطات
چکیده انگلیسی

Industrial control systems play a major role in the operation of critical infrastructure assets. Due to the polling mechanisms typically used to retrieve data from field devices, industrial control network traffic exhibits strong periodic patterns. This paper presents a novel approach that uses message repetition and timing information to automatically learn traffic models that capture the periodic patterns. The feasibility of the approach is demonstrated using three traffic traces collected from real-world industrial networks. Two practical applications for the learned models are presented. The first is their use in intrusion detection systems; the learned models represent whitelists of valid commands and the frequencies at which they are sent; thus, the models may be used to detect data injection and denial-of-service attacks. The second application is to generate synthetic traffic traces, which can be used to test intrusion detection systems and evaluate the performance of industrial control devices.

ناشر
Database: Elsevier - ScienceDirect (ساینس دایرکت)
Journal: International Journal of Critical Infrastructure Protection - Volume 13, June 2016, Pages 52–62
نویسندگان
, , ,