計測自動制御学会論文集
Online ISSN : 1883-8189
Print ISSN : 0453-4654
ISSN-L : 0453-4654
論文
産業制御システムのネットワークセキュリティを強化するフラッド型DoS攻撃の軽減技術
岩澤 寛遠藤 浩通丸山 龍也松本 典剛山田 勉
著者情報
ジャーナル フリー

2022 年 58 巻 7 号 p. 336-344

詳細
抄録

Flat network topology for digital transformation (DX) in industrial control systems (ICS) brings many merits, but also draws threats of cyberattack. Considering cybersecurity, countermeasures against DoS (Denial of Service) attack is mandatory for ICS, especially to maintain its availability. To solve this issue, we propose a flood type DoS mitigation method “SFAT”(Synchronized Filtering based on Arrival Time), which focuses on the periodicity of control communications at the edge of ICS. This SFAT passes network frames only at the timing synchronized to periodic and legitimate communication frames, and then mitigates the amount of DoS frames. This timing is detected by a synchronous detection process that is implemented on hardware. We prototyped this SFAT on a firewall on an FPGA, and then confirmed that it can mitigate the amount of DoS frames to 1/10.

著者関連情報
© 2022 公益社団法人 計測自動制御学会
前の記事 次の記事
feedback
Top