Leveraging Software-Defined Networking for Incident Response in Industrial Control Systems
Autor: | Andres F. Murillo Piedrahita, Vikram Gaur, Alvaro A. Cardenas, Jairo Giraldo, Sandra Rueda |
---|---|
Rok vydání: | 2018 |
Předmět: |
business.industry
Network security Computer science 020208 electrical & electronic engineering Cyber-physical system Software development 020206 networking & telecommunications Cloud computing 02 engineering and technology Intrusion detection system Industrial control system Virtualization computer.software_genre Computer security Software Safeguard Software security assurance 0202 electrical engineering electronic engineering information engineering business Software-defined networking computer Risk management |
Zdroj: | IEEE Software. 35:44-50 |
ISSN: | 1937-4194 0740-7459 |
DOI: | 10.1109/ms.2017.4541054 |
Popis: | In the past decade, the security of industrial control systems has emerged as a research priority in order to safeguard our critical infrastructures. A large number of research efforts have focused on intrusion detection in industrial networks; however, few of them discuss what to do after an intrusion has been detected. Because the safety of most of these control systems is time sensitive, we need new research on automatic incident response. This article shows how software-defined networks and network function virtualization can facilitate automatic incident response to a variety of attacks against industrial networks. It also presents a prototype of an incident-response solution that detects and responds automatically to sensor attacks and controller attacks. This work shows the promise that cloud-enabled software-defined networks and virtual infrastructures hold as a way to provide novel defense-in-depth solutions for industrial systems. This article is part of a special issue on Software Safety and Security Risk Mitigation in Cyber-physical Systems. |
Databáze: | OpenAIRE |
Externí odkaz: |