电力系统自动化2019,Vol.43Issue(2):162-167,6.DOI:10.7500/AEPS20180316005
基于深度报文检测和安全增强的正向隔离装置设计及实现
Design and Implementation of Forward Isolation Device Based on Deep Packet Inspection and Security Enhancement
曹翔 1张阳 1宋林川 1胡绍谦 1汤震宇 1张春合1
作者信息
- 1. 南京南瑞继保电气有限公司, 江苏省南京市 211102
- 折叠
摘要
Abstract
In order to improve the security of power system communication network in the emerging network security environment and distribution network accessing environment, a forward isolation device based on deep packet inspection and security enhancement is proposed.Based on the principle and vulnerability analysis of the traditional forward isolation device, the field programmable gate array (FPGA) is adopted as isolation island to improve the transmission speed and reduce the error bit rate, the reverse penetrating threat is solved by the deep packet inspection technology, the security of human machine interface (HMI) management is improved by two factor authentication technology, the security of local management is improved by the encryption and authentication technology based on the state secret algorithm.Compared with the traditional forward isolation device, the performance and the security level of proposed device are both improved.Finally, the feasibility of the theory and the practicability of the technology are verified by project application.关键词
深度报文检测/双因子/加密/认证/网络安全Key words
deep packet inspection (DPI)/two factors/encryption/authentication/network security引用本文复制引用
曹翔,张阳,宋林川,胡绍谦,汤震宇,张春合..基于深度报文检测和安全增强的正向隔离装置设计及实现[J].电力系统自动化,2019,43(2):162-167,6.