The trustworthiness and security of cyber-physical systems (CPSs), such as the power grid, are of paramount importance to ensure their safe operation, performance, and economic efficiency. The aim of many cyber-physical security techniques, such as network intrusion detection systems (NIDSs) for CPSs, is to ensure continuous reliable operation even in exposed network environments. But the validation of such methods goes well beyond standard network analysis, since meaningful tests must also integrate realistic understanding of the physical systems behavior and response to the network activity. Our goal in this paper is to showcase an example of a testbed environment that can support such validation. In it, real network traffic, emulating and industrial control network, interacts with simulated physical models in real-time, extending and leveraging "hardware-in-the-loop" and "cyber-in-the-loop" capabilities. The testbed is a bridge between theory and practice and offers a number of features, including network communications, data management, as well as the virtualization of cyber-physical state analytics performed by the NIDS. The traffic is captured by real network taps and is forwarded to a real data management environment, receiving also the data reports from the simulated industrial control environment. To illustrate the capabilities of our testbed we show how the data are cross-checked by a "physics aware" NIDS, identifying network traffic that does not comply with its cyber-physical security rules.

A Real-time testbed environment for Cyber-Physical Security on the power grid / Koutsandria, Georgia; Gentz, Reinhard; Jamei, Mahdi; Scaglione, Anna; Peisert, Sean; Mcparland, Chuck. - ELETTRONICO. - (2015), pp. 67-78. (Intervento presentato al convegno First ACM Workshop on Cyber-Physical Systems-Security and/or PrivaCy tenutosi a Denver) [10.1145/2808705.2808707].

A Real-time testbed environment for Cyber-Physical Security on the power grid

KOUTSANDRIA, GEORGIA;
2015

Abstract

The trustworthiness and security of cyber-physical systems (CPSs), such as the power grid, are of paramount importance to ensure their safe operation, performance, and economic efficiency. The aim of many cyber-physical security techniques, such as network intrusion detection systems (NIDSs) for CPSs, is to ensure continuous reliable operation even in exposed network environments. But the validation of such methods goes well beyond standard network analysis, since meaningful tests must also integrate realistic understanding of the physical systems behavior and response to the network activity. Our goal in this paper is to showcase an example of a testbed environment that can support such validation. In it, real network traffic, emulating and industrial control network, interacts with simulated physical models in real-time, extending and leveraging "hardware-in-the-loop" and "cyber-in-the-loop" capabilities. The testbed is a bridge between theory and practice and offers a number of features, including network communications, data management, as well as the virtualization of cyber-physical state analytics performed by the NIDS. The traffic is captured by real network taps and is forwarded to a real data management environment, receiving also the data reports from the simulated industrial control environment. To illustrate the capabilities of our testbed we show how the data are cross-checked by a "physics aware" NIDS, identifying network traffic that does not comply with its cyber-physical security rules.
2015
First ACM Workshop on Cyber-Physical Systems-Security and/or PrivaCy
Cyber-physical systems; cyber security; smart grid; testbeds.
04 Pubblicazione in atti di convegno::04b Atto di convegno in volume
A Real-time testbed environment for Cyber-Physical Security on the power grid / Koutsandria, Georgia; Gentz, Reinhard; Jamei, Mahdi; Scaglione, Anna; Peisert, Sean; Mcparland, Chuck. - ELETTRONICO. - (2015), pp. 67-78. (Intervento presentato al convegno First ACM Workshop on Cyber-Physical Systems-Security and/or PrivaCy tenutosi a Denver) [10.1145/2808705.2808707].
File allegati a questo prodotto
File Dimensione Formato  
KoutsandriaReal-time_2015.pdf

accesso aperto

Tipologia: Versione editoriale (versione pubblicata con il layout dell'editore)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 6.7 MB
Formato Adobe PDF
6.7 MB Adobe PDF

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/855143
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 28
  • ???jsp.display-item.citation.isi??? ND
social impact