Title :
Authentication and authorization mechanisms for substation automation in smart grid network
Author :
Vaidya, Bhaskar ; Makrakis, Dimitrios ; Mouftah, Hussein T.
Author_Institution :
Univ. of Ottawa, Ottawa, ON, Canada
fDate :
January-February 2013
Abstract :
Supervisory control and data acquisition systems are used extensively to control and monitor critical infrastructure including power, gas, oil, and water. To integrate intelligent electronic devices in smart grid infrastructure, the utilities are deploying substation automation systems (SASs) and extensive communication networks, but there is growing concern about SCADA security including substation security. Although there are several solutions utilized to prevent security threats in SCADA networks, existing SCADA networks still have severe shortcomings. In this article, we propose a lightweight and efficient security solution for SASs that provides multilevel multi-factor authentication and attribute-based authorization by deploying public key certificates, and zero-knowledge protocol-based server-aided verification and access control mechanisms using attribute certificates. It can be seen that the proposed approach is efficient and robust.
Keywords :
SCADA systems; authorisation; cryptographic protocols; power system security; public key cryptography; smart power grids; substation automation; SAS; SCADA networks; SCADA security; access control mechanisms; attribute certificates; attribute-based authorization mechanism; communication networks; intelligent electronic devices; multilevel multifactor authentication mechanism; public key certificates; smart grid infrastructure; smart grid network; substation automation systems; substation security; supervisory control and data acquisition systems; zero-knowledge protocol-based server-aided verification; Authentication; Authorization; Computer security; IEC standards; Network security; Protocols; Substations;
Journal_Title :
Network, IEEE
DOI :
10.1109/MNET.2013.6423185