DocumentCode :
3103670
Title :
Security Operation Modes for Enhancement of Utility Computer Network Cyber-Security
Author :
Wang, Lin ; Mander, Todd ; Cheung, Helen ; Nabhani, Farhad ; Cheung, Richard
Author_Institution :
Ryerson Univ., Toronto, ON
fYear :
2007
fDate :
24-28 June 2007
Firstpage :
1
Lastpage :
8
Abstract :
Concerns for utility computer networks´ security and reliability are growing rapidly due to increasing utility devices with connections to external networks. This aggravates vulnerability of utility networks to cyber-attacks through external connections. Though encryption can provide security for user data transmissions, encryption itself could not provide protections against traffic-analysis attacks. Techniques against traffic-analysis attacks through statistically controlling the transmission rate of padded and encrypted frames are unsuited for power system applications. This paper proposes three security operation modes for the newly developed security layer, located below DNP3 data-link layer, to strengthen encryption and authentication operations against the effectiveness of traffic-analysis and cryptanalysis attacks. The security modes use padding to disguise the amount of user data transmitted and disguise the user data-link layer frame amongst a group of manufactured frames similar to statistically controlling data transmission rate. The proposed security operations have been successfully applied to enhance power system security controls.
Keywords :
computer network management; computer network reliability; cryptography; power system security; telecommunication security; telecommunication traffic; DNP3 data-link layer; authentication operation; data transmission; encryption; network reliability; power system application; security operation mode; traffic-analysis attack; utility computer network cyber-security; Communication system traffic control; Computer network reliability; Computer networks; Computer security; Control systems; Cryptography; Data communication; Data security; Power system protection; Power system security; Computer network management; Computer network security; Computer networks; Power system communication; Power system security; Protocols; Security;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Power Engineering Society General Meeting, 2007. IEEE
Conference_Location :
Tampa, FL
ISSN :
1932-5517
Print_ISBN :
1-4244-1296-X
Electronic_ISBN :
1932-5517
Type :
conf
DOI :
10.1109/PES.2007.386185
Filename :
4275951
Link To Document :
بازگشت