| SKMA: a key management architecture for SCADA systems |
| Full text |
Pdf
(251 KB)
|
| Source
|
ACM International Conference Proceeding Series; Vol. 167
archive
Proceedings of the 2006 Australasian workshops on Grid computing and e-research - Volume 54
table of contents
Hobart, Tasmania, Australia
Pages: 183 - 192
Year of Publication: 2006
ISBN ~ ISSN:1445-1336 , 1-920-68236-8
|
|
Authors
|
|
Robert Dawson
|
Information Security Institute, Queensland University of Technology, Brisbane, QLD, Australia
|
|
Colin Boyd
|
Information Security Institute, Queensland University of Technology, Brisbane, QLD, Australia
|
|
Ed Dawson
|
Information Security Institute, Queensland University of Technology, Brisbane, QLD, Australia
|
|
Juan Manuel González Nieto
|
Information Security Institute, Queensland University of Technology, Brisbane, QLD, Australia
|
|
| Publisher |
Australian Computer Society, Inc.
Darlinghurst, Australia, Australia
|
| Bibliometrics |
Downloads (6 Weeks): 25, Downloads (12 Months): 116, Citation Count: 0
|
|
|
ABSTRACT
Supervisory Control And Data Acquisition (SCADA) systems are widely used in the management of critical infrastructure such as electricity and water distribution systems. Currently there is little understanding of how to best protect SCADA systems from malicious attacks. We review the constraints and requirements for SCADA security and propose a suitable architecture (SKMA) for secure SCADA communications. The architecture includes a proposed key management protocol (SKMP). We compare the architecture with a previous proposal from Sandia Labs.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
AGA 12-1 Working Group (2005), Cryptographic protection of SCADA communications, Technical Report 12-1 Draft 5 Revision 3, American Gas Association. http://www.gtiservices. org/security/; accessed 14 May, 2005.
|
 |
2
|
|
| |
3
|
Beaver, C., Gallup, D., Neumann, W. & Torgerson, M. (2002), Key management for SCADA, Technical report, Sandia. http://www.sandia.gov/ scada/documents/013252.pdf; accessed 5 May, 2005.
|
 |
4
|
|
| |
5
|
Bishop, M. (2002), Computer Security: Art and Science , Addison-Wesley, Boston, USA.
|
| |
6
|
|
| |
7
|
Byres, E. & Lowe, J. (2004), The myths and facts behind cyber security risks for industrial control systems, in 'VDE Congress, VDE Association For Electrical, Electronic & Information Technologies', Berlin. http://brief.weburb. dk/archive/00000135/.
|
 |
8
|
|
| |
9
|
CERT/CC Statistics 1988-2005 (2005). http://www. cert.org/stats/cert_stats.html.
|
| |
10
|
Curtis, K. (2005), A DNP3 protocol primer, Technical report, DNP Users Group.
|
 |
11
|
|
| |
12
|
IConics (2005), 'Iconics MobileHMI'. http: //www.iconics-uk.com/products/pdf/ mobilehmi_ds.pdf; accessed 22 August, 2005.
|
| |
13
|
IEEE Standards Board (1994), Ieee standard definition, specification, and analysis of systems used for supervisory control, data acquisition, and automatic control, Technical report, IEEE. http://ieeexplore.ieee.org/iel1/ 3389/10055/00478424.pdf; accessed 5 May, 2005.
|
| |
14
|
ISO (1996), Information Technology - Security Techniques - Key Management - Part 2: Mechanisms Using Symmetric Techniques ISO/IEC 11770-2. International Standard.
|
 |
15
|
|
 |
16
|
|
| |
17
|
Neuman, B. C. & Ts'o, T. (1994), 'Kerberos: An authentication service for computer networks', IEEE Communications Magazine 32(9), 33-38.
|
| |
18
|
NIST (2003), 'Modes of operation for symmetric key block ciphers'. http://www.ecrypt.eu.org/ stream/; accessed 6 May, 2005.
|
| |
19
|
|
| |
20
|
Wang, Y. & Chu, B.-T. (2004), 'sSCADA: Securing SCADA infrastructure communications', Cryptology ePrint Archive, Report 2004/265. http: //eprint.iacr.org/2004/265.pdf.
|
|