• DocumentCode
    32828
  • Title

    Authentication and authorization mechanisms for substation automation in smart grid network

  • Author

    Vaidya, Bhaskar ; Makrakis, Dimitrios ; Mouftah, Hussein T.

  • Author_Institution
    Univ. of Ottawa, Ottawa, ON, Canada
  • Volume
    27
  • Issue
    1
  • fYear
    2013
  • fDate
    January-February 2013
  • Firstpage
    5
  • Lastpage
    11
  • Abstract
    Supervisory control and data acquisition systems are used extensively to control and monitor critical infrastructure including power, gas, oil, and water. To integrate intelligent electronic devices in smart grid infrastructure, the utilities are deploying substation automation systems (SASs) and extensive communication networks, but there is growing concern about SCADA security including substation security. Although there are several solutions utilized to prevent security threats in SCADA networks, existing SCADA networks still have severe shortcomings. In this article, we propose a lightweight and efficient security solution for SASs that provides multilevel multi-factor authentication and attribute-based authorization by deploying public key certificates, and zero-knowledge protocol-based server-aided verification and access control mechanisms using attribute certificates. It can be seen that the proposed approach is efficient and robust.
  • Keywords
    SCADA systems; authorisation; cryptographic protocols; power system security; public key cryptography; smart power grids; substation automation; SAS; SCADA networks; SCADA security; access control mechanisms; attribute certificates; attribute-based authorization mechanism; communication networks; intelligent electronic devices; multilevel multifactor authentication mechanism; public key certificates; smart grid infrastructure; smart grid network; substation automation systems; substation security; supervisory control and data acquisition systems; zero-knowledge protocol-based server-aided verification; Authentication; Authorization; Computer security; IEC standards; Network security; Protocols; Substations;
  • fLanguage
    English
  • Journal_Title
    Network, IEEE
  • Publisher
    ieee
  • ISSN
    0890-8044
  • Type

    jour

  • DOI
    10.1109/MNET.2013.6423185
  • Filename
    6423185