Font Size: a A A

Research On Information Security Protection Technology Of Wind Farm SCADA System

Posted on:2018-03-29Degree:MasterType:Thesis
Country:ChinaCandidate:L DengFull Text:PDF
GTID:2322330512488111Subject:Engineering
Abstract/Summary:PDF Full Text Request
With the advancement of the Internet,industrial control systems are becoming more and more open.To meet the needs of remote access,wind farm SCADA system needs to provide external data services,making the traditional Internet attack is also a serious threat to the safety of wind power.In order to ensure the safe and stable operation of the wind farm system,this paper makes an in-depth study on the information security of the SCADA system of the wind farm,and puts forward the defense strategy for the SCADA system of the wind farm and implements the various protection modules.The main work include:This paper analyzes the operating mechanism and system structure of SCADA system of wind farm,and analyzes the attack of wind farm SCADA system in combination with a wind farm system in China.It mainly analyzes the vulnerability of the system architecture and communication protocol loopholes.This paper puts forward the effective defense strategy for wind farm SCADA system.Including the establishment of a relatively secure system architecture,the establishment of wind farm SCADA system security boundary,proposed for the open security server security strategy for SCADA system for internal network security protection strategy,as well as for field equipment protection strategy.In this paper,each protection module is implemented.Use the dual firewall strategy to establish the system security boundary,the system is divided into DMZ area,SCADA system internal network and field equipment network.The internal network protection method is to use the DMZ area for internal and external network isolation,and use the associated MAC address and IP address white list protection module for SCADA server security protection.For the DMZ server,SYN flood attack intrusion detection method based on SVM is used to detect SYN flood attacks on open servers.For the field device network,the access control based on the white list-based communication protocol depth packet filtering is used,and the traffic flow detection module is monitored in real time using the abnormal flow data detection module based on SVM.After the experimental test,the modules can be more effective against the system from infringement,can make the wind farm SCADA system safe and stable operation.
Keywords/Search Tags:Wind farm SCADA system, defense in depth, access control, support vector machine, deep packet inspection, flow detection
PDF Full Text Request
Related items