• DocumentCode
    1566737
  • Title

    A Non-Intrusive Approach to Enhance Legacy Embedded Control Systems with Cyber Protection Features

  • Author

    Ren, Shangping ; Kwiat, Kevin

  • Author_Institution
    Dept. of Comput. Sci., Illinois Inst. of Technol., Chicago, IL
  • fYear
    2008
  • Firstpage
    1180
  • Lastpage
    1187
  • Abstract
    Unlike general purpose systems, distributed and embedded control systems, such as power grid control systems and water treatment systems, etc., generally have a 24x7 availability requirement. Hence, upgrading or adding new cyber protection features into these systems in order to sustain them when faults caused by cyber attacks occur, is often difficult to achieve and inhibits the evolution of these systems into a cyber environment. In this paper, we present a solution for extending the capabilities of existing systems while simultaneously maintaining the stability of the current systems. An externalized survivability management scheme based on the observe-reason-modify paradigm is applied, which decomposes the cyber attack protection process into three orthogonal subtasks: observation, evaluation and protection. This architecture provides greater flexibility and has an evolvability attribute - it can utilize emerging techniques; yet requires either minimal modifications or even no modifications whatsoever to the controlled infrastructures. The approach itself is general and can be applied to a broad class of observable systems.
  • Keywords
    control engineering computing; distributed control; embedded systems; reliability; security of data; software maintenance; cyber protection features; legacy embedded control systems; nonintrusive approach; observe-reason-modify paradigm; stability; survivability management; Availability; Cities and towns; Computer networks; Computer security; Control systems; Physical layer; Power grids; Power system protection; Power system reliability; Power system security; behavior observation; feedback loop; legacy control systems;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Availability, Reliability and Security, 2008. ARES 08. Third International Conference on
  • Conference_Location
    Barcelona
  • Print_ISBN
    978-0-7695-3102-1
  • Type

    conf

  • DOI
    10.1109/ARES.2008.24
  • Filename
    4529477