Clustering-Based Self-learning Approach for Security Rules in Industrial Communication Protocol
Shang WL(尚文利); Zeng P(曾鹏); Wan M(万明)
2017
会议名称International Conference on Mechatronics and Intelligent Robotics, ICMIR 2017
会议日期May 20-21, 2017
会议地点Kunming, China
关键词Modbus/TCP Self-learning K-means algorithm White-listingrule
页码257-263
通讯作者Wan M(万明)
中文摘要Modbus/TCP, which is a widely used industrial communication protocol, has serious security flaws because of its openness and simplicity, and developing security mechanisms based on Modbus/TCP is very hot topic. However, it is an onerous task to set rules manually for these security mechanisms. In this paper, we propose a clustering-based self-learning approach for security rules to facilitate the rule setting when carrying out the Modbus/TCP defense. Furthermore, our approach analyzes the address information from Modbus/TCP packets in depth, and automatically learns the address range setting in the white-listing rules by using the K-means algorithm. Our experimental results show that, the proposed approach is very available and effective to generate the white-listing rules for Modbus/TCP.
收录类别EI
产权排序1
会议录Advances in Intelligent Systems and Computing
会议录出版者Springer Verlag
会议录出版地Berlin
语种英语
ISSN号2194-5357
ISBN号978-3-319-65977-0
内容类型会议论文
源URL[http://ir.sia.cn/handle/173321/21240]  
专题沈阳自动化研究所_工业控制网络与系统研究室
作者单位Key Laboratory of Networked Control System Chinese Academy of Sciences, Shenyang Institute of Automation Chinese Academy of Sciences, Shenyang, China
推荐引用方式
GB/T 7714
Shang WL,Zeng P,Wan M. Clustering-Based Self-learning Approach for Security Rules in Industrial Communication Protocol[C]. 见:International Conference on Mechatronics and Intelligent Robotics, ICMIR 2017. Kunming, China. May 20-21, 2017.
个性服务
查看访问统计
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。


©版权所有 ©2017 CSpace - Powered by CSpace