Cyber-Physical System (CPS) has made a tremendous progress in recent years and also disrupted many technical fields such as smart industries, smart health, smart transportation etc. to flourish the nations economy. However, CPS Security is still one of the concerns for wide adoption owing to high number of devices connecting to the internet and the traditional security solutions may not be suitable to protect the advanced, application specific attacks. This paper presents a programmable device network layer architecture to combat attacks and efficient network monitoring in heterogeneous environment CPS applications. We leverage Industrial control systems (ICS) to discuss the existing issues, highlighting the importance of advanced network layer for CPS. The programmable data plane language (P4) is introduced to detect well known HELLO Flood attack with minimal efforts in the network level and also used to featuring the potential solutions for security.
翻译:近年来,网络物理系统(CPS)取得了巨大进步,也扰乱了许多技术领域,如智能产业、智能健康、智能运输等,以繁荣国民经济;然而,CPS安全仍是广泛采用的问题之一,因为与互联网连接的装置很多,传统的安全解决办法可能不适合保护先进、具体应用的攻击;本文件介绍了一个可用于规划的设备网络层结构,以打击攻击和对多种环境的CPS应用进行有效网络监测;我们利用工业控制系统讨论现有问题,强调先进的网络层对CPS的重要性;采用可编程数据平面语言(P4),在网络一级以最低限度的努力探测众所周知的HELLO洪水袭击,并用来说明潜在的安全解决办法。