Configuration of network security monitoring model for IPC control system of filtered cigarette maker.

Autor: NI Xiongjun, LI Jianjun, LI Yuliang, WEN Deming, JIANG Xuefeng, ZHANG Yinan, LI Wei, ZHANG Xiaodong
Zdroj: Tobacco Science & Technology; 2022, Vol. 55 Issue 1, p99-106, 8p
Abstrakt: In order to overcome the hidden security troubles in the IPC control system of filtered cigarette maker in the absence of internal protection measures, the security holes and attacked routes of the IPC control system were analyzed and three security monitoring modules were designed by means of developing a typical attack chain model for the control system. The first module was designed for the security monitoring of pseudo instruction of the system network. The second module was designed for the non-intrusive security monitoring of the IPC controller, and the third module was designed for monitoring the abnormal control behavior of the control network. Thereby, an A3MA (Acquisition-Monitoring-Monitoring-Monitoring-Alarm) security monitoring model, which covered the IPC core controller and core communication network of the cigarette maker was configured by integrating with disturbance-free data acquisition and security risk early-warning. The security monitoring model was tested on an IPC control system in a ZJ17E cigarette maker, the results showed that the A3MA security monitoring model could rapidly discern the behaviors of pseudo-control instructions in the system network, rapidly locate the unauthorized tampering behaviors targeting IPC controller and rapidly identify the abnormal control behaviors of EtherCAT control network. This model provides a technical support for the multi-layer security monitoring of IPC control system in filtered cigarette maker. [ABSTRACT FROM AUTHOR]
Databáze: Complementary Index