作者: Ming Wan , Wenli Shang , Linghe Kong , Peng Zeng
DOI: 10.1007/S11235-016-0223-X
关键词:
摘要: In smart cities, the networked control system plays a significant role in transportation systems, power stations or other critical infrastructures, and it is facing many security issues. From this point, paper proposes content-based deep communication approach to guarantee its security. Based on layer architecture, analyzes interactive content depth according different industrial protocols, implements access between two distinct enclaves. For OPC Classic, we acquire dynamic port provided by server, open new connection belonging port; for Modbus/TCP, not only analyze ordinary function codes addresses, but also check register coil values using multi-bit Trie-tree matching algorithm. Besides, white-listing strategy introduced satisfy special requirements of communication. Our experiment results show that, one hand proposed provides Modbus/TCP defenses depth; has less than 1 ms forwarding latency 0 packet loss rate when rule number reaches 200, all these meet availability system. particular, been successfully applied several real-world petrochemical systems.