Journal of Information Security Research ›› 2019, Vol. 5 ›› Issue (8): 679-684.

Previous Articles     Next Articles

Research on Maintenance and Security of Industrial Control Networks in Electric Power Industry

  

  • Received:2019-08-09 Online:2019-08-15 Published:2019-08-09

电力行业工业控制网络的运维和安全研究

尹骞   

  1. 国家能源集团神华信息技术有限公司运营维护部
  • 通讯作者: 尹骞
  • 作者简介: 尹骞, 20037275@chneneryg.com.cn 1985年,本科,主机运维工程师,主要研究领域为企业级监控软件架构研究和工控网数据监控及安全防护

Abstract: As an important part of national key infrastructure, the importance of operation and maintenance security of electric power industry control network is selfevident. Especially with the increasing security incidents of industrial control networks in the world in recent years, effective measures must be taken to protect the safe operation of industrial control networks, which also puts forward higher requirements for the operation, maintenance and safety protection of industrial control networks and industrial systems. Through indepth analysis of the characteristics of industrial control network in electric power industry, especially the key characteristics of the data type and network topology structure of the electric power network, effective operation and maintenance methods and security risk prevention methods are put forward. In operation and maintenance, the backup of system data and the state monitoring of the system itself are strengthened. Security measures, such as physical isolation, industrial control flow monitoring, fault recovery management and so on should be taken, and effective policies and behavioral norms should be provided. Finally, form safety protection measures suitable for electric power industry control network, to achieve the purpose of safe operation of the electric power industry control network.

Key words: industrial control system, industrial control network, network security, network operation and maintenance, electricity, monitoring and auditing

摘要: 电力工业控制网络作为国家关键基础设施的重要组成部分,其运维安全的重要性不言而喻.尤其随着近年国际上工业控制网络的安全事件逐年上升,必须采取有效措施保护工业控制网络的安全运行,这也对工业控制网络和工业系统的运维和安全防护提出了更高的要求.通过深入分析电力行业工控网络的特点,尤其是对电力网络的数据类型、网络拓扑结构等关键特征进行分析,从而提出有效的运维方法和安全风险防范手段:运维上加强系统数据的备份和系统自身的状态监控,安全措施上加强物理隔离、工控流量监控、故障恢复管理等,并提供行之有效的政策和行为规范;最后形成适用于电力工业控制网络的安全防护措施,达到电力工业控制网络安全运行的目的.

关键词: 工业控制系统, 工业控制网络, 网络安全, 网络运维, 电力, 监测审计