Next-Generation Access Control for Distributed Control Systems.

Jun Ho Huh,Rakesh B. Bobba, Tom Markham,David M. Nicol,Julie Hull, Alexander Chernoguzov,Himanshu Khurana, Kevin Staggs,Jingwei Huang

IEEE Internet Computing(2016)

引用 17|浏览83
暂无评分
摘要
With the rapid integration of wired and wireless internetworking technologies, distributed control systems (DCS) are increasingly susceptible to cyberattacks. A well-designed access control framework could potentially contain and mitigate the impact of cyberattacks. However, existing solutions often fail to cover and protect all connected devices, leaving holes that are sufficient to undermine the security and safety of a plant. Further, in current DCS environments, it's hard to adhere to the least-privilege principle because access control policies are distributed among many heterogeneous systems. In this article, the authors identify key challenges in moving toward a more complete and manageable access control framework for DCS, and present a model architecture that can be adapted by the industrial control system community to ensure that every access is checked against policies that adhere to the least-privilege principle. Their proposed architecture facilitates centralized (plant-wide) policy management and protection of every connected field device.
更多
查看译文
关键词
Web and internet services,Industrial control,Distributed processing,Access control,Next generation networks
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要