Security Information Sharing in Smart Grids: Persisting Security Audits to the Blockchain

Autor: Daniel Diaz-Sanchez, Sergio Chica-Manjarrez, Andrés Marín-López, Florina Almenares-Mendoza, David Arroyo
Přispěvatelé: Comunidad de Madrid, Ministerio de Ciencia e Innovación (España)
Rok vydání: 2020
Předmět:
Zdroj: Electronics
Volume 9
Issue 11
e-Archivo. Repositorio Institucional de la Universidad Carlos III de Madrid
instname
Electronics, Vol 9, Iss 1865, p 1865 (2020)
ISSN: 2079-9292
DOI: 10.3390/electronics9111865
Popis: This article belongs to the Special Issue Advanced Cybersecurity Services Design With the transformation in smart grids, power grid companies are becoming increasingly dependent on data networks. Data networks are used to transport information and commands for optimizing power grid operations: Planning, generation, transportation, and distribution. Performing periodic security audits is one of the required tasks for securing networks, and we proposed in a previous work autoauditor, a system to achieve automatic auditing. It was designed according to the specific requirements of power grid companies, such as scaling with the huge number of heterogeneous equipment in power grid companies. Though pentesting and security audits are required for continuous monitoring, collaboration is of utmost importance to fight cyber threats. In this paper we work on the accountability of audit results and explore how the list of audit result records can be included in a blockchain, since blockchains are by design resistant to data modification. Moreover, blockchains endowed with smart contracts functionality boost the automation of both digital evidence gathering, audit, and controlled information exchange. To our knowledge, no such system exists. We perform throughput evaluation to assess the feasibility of the system and show that the system is viable for adaptation to the inventory systems of electrical companies. This work has been supported by National R&D Projects TEC2017-84197-C4-1-R, TIN2017-84844-C2-1-R, by the Comunidad de Madrid project CYNAMON P2018/TCS-4566 and co-financed by European Structural Funds (ESF and FEDER), and by the Consejo Superior de Investigaciones Científicas (CSIC) under the project LINKA20216 ("Advancing in cybersecurity technologies", i-LINK+ program).
Databáze: OpenAIRE