Repository logo
 
Publication

Designing actively ecure, highly available industrial automation applications

dc.contributor.authorTanveer, Awais
dc.contributor.authorSinha, Roopak
dc.contributor.authorMacDonell, Stephen G.
dc.contributor.authorLeitão, Paulo
dc.contributor.authorVyatkin, Valeriy
dc.date.accessioned2020-03-31T09:43:10Z
dc.date.available2020-03-31T09:43:10Z
dc.date.issued2019
dc.description.abstractProgrammable Logic Controllers (PLCs) execute critical control software that drives Industrial Automation and ControlSystems(IACS).PLCs can become easy targets for cyber adversaries as they are resource-constrained and are usually built using legacy, less-capable security measures. Security attacks can significantly affect system availability, which is an essential requirement for IACS. We propose a method to make PLC applications more security-aware. Based on the well-known IEC 61499 function blocks standard for developing IACS software, our method allows designers to annotate critical parts of an application during design time. On deployment, these parts of the application are automatically secured using appropriate security mechanisms to detect and prevent attacks. We present a summary of availability attacks on distributed IACS applications that can be mitigated by our proposed method. Security mechanisms are achieved using IEC 61499 Service-Interface Function Blocks (SIFBs) embedding Intrusion Detection and Prevention System (IDPS), added to the application at compile time. This method is more amenable to providing active security protection from attacks on previously unknown (zero-day) vulnerabilities. We test our solution on an IEC 61499 application executing on Wago PFC200 PLCs. Experiments show that we can successfully log and prevent attacks at the application level as well as help the application to gracefully degrade into safe mode, subsequently improving availability.pt_PT
dc.description.versioninfo:eu-repo/semantics/publishedVersionpt_PT
dc.identifier.citationTanveer, Awais; Sinha, Roopak; MacDonell, Stephen G.; Leitão, Paulo; Vyatkin, Valeriy (2019). Designing actively ecure, highly available industrial automation applications. In 17th International Conference on Industrial Informatics (INDIN’19). Helsinki-Espoo; Finland.pt_PT
dc.identifier.doi10.1109/INDIN41052.2019.8972262pt_PT
dc.identifier.urihttp://hdl.handle.net/10198/21253
dc.language.isoengpt_PT
dc.peerreviewedyespt_PT
dc.rights.urihttp://creativecommons.org/licenses/by/4.0/pt_PT
dc.subjectIndustrial automationpt_PT
dc.subjectProgrammable logic controllerspt_PT
dc.subjectSecuritypt_PT
dc.subjectIntrusion detection and preventionpt_PT
dc.titleDesigning actively ecure, highly available industrial automation applicationspt_PT
dc.typeconference paper
dspace.entity.typePublication
oaire.citation.conferencePlaceHelsinki-Espoo; Finlandpt_PT
oaire.citation.endPage379pt_PT
oaire.citation.startPage374pt_PT
oaire.citation.title17th International Conference on Industrial Informatics (INDIN’19)pt_PT
person.familyNameLeitão
person.givenNamePaulo
person.identifierA-8390-2011
person.identifier.ciencia-id8316-8F13-DA71
person.identifier.orcid0000-0002-2151-7944
person.identifier.scopus-author-id35584388900
rcaap.rightsrestrictedAccesspt_PT
rcaap.typeconferenceObjectpt_PT
relation.isAuthorOfPublication68d9eb25-ad4f-439b-aeb2-35e8708644cc
relation.isAuthorOfPublication.latestForDiscovery68d9eb25-ad4f-439b-aeb2-35e8708644cc

Files

Original bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
2019-INDIN-security.pdf
Size:
1.13 MB
Format:
Adobe Portable Document Format
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
1.75 KB
Format:
Item-specific license agreed upon to submission
Description: