一种DNP3 SAv5的安全架构在配网终端的设计与应用
CSTR:
作者:
作者单位:

(长园深瑞继保自动化有限公司,广东 深圳 518057)

作者简介:

李 露(1988—),男,硕士,工程师,从事配网终端嵌入式设计;E-mail: lilu502@163.com 谢映宏(1986—),男,工程师,从事配网终端设计; 许永军(1977—),男,高级工程师,从事配网终端设计。

通讯作者:

中图分类号:

基金项目:

国家重点研发计划项目资助(2018YFB0904900,2018YFB0904903)


Design and implementation of a DNP3 SAv5 secure architecture in a distribution network terminal
Author:
Affiliation:

(CYG SUNRI Co., Ltd., Shenzhen 518057, China)

Fund Project:

  • 摘要
  • |
  • 图/表
  • |
  • 访问统计
  • |
  • 参考文献
  • |
  • 相似文献
  • |
  • 引证文献
  • |
  • 资源附件
  • |
  • 文章评论
    摘要:

    为了解决配网终端日益突出的通信安全问题,针对配网终端通信系统的安全技术需求展开研究,设计出配网馈线远程自动化终端(FRTU)安全架构。该安全架构实现了分布式网络协议(DNP3)三层架构,突出应用层对象、变体、组别、安全数据应用分类。重点对FRTU的安全数据进行分类和建模,给出了FRTU数据到DNP3安全功能的映射。设计出一种符合安全认证一致性的协议模型,有效解决了FRTU协议安全的脆弱性问题。最后通过国际权威机构认证和安全测试,证明其安全认证(SAv5)符合认证和加密等一致性标准,为配网终端的安全接入提供参考依据。

    Abstract:

    There are increasingly prominent communication security problems in distribution network terminals. Thus the security technology requirements of a feeder remote terminal communication system are studied, and the security architecture of a new feeder remote terminal unit (FRTU) is designed. It implements three-layer architecture of a distributed network protocol (DNP3), highlighting application layer objects, variants, groups and security data application classification. This paper focuses on the classification and modeling of FRTU security data, and gives the mapping from FRTU data to the DNP3 security function. A protocol model that conforms to security authentication consistency is designed to effectively solve the security vulnerability of the FRTU. Finally, through the authentication of an international authority and security test, it is proved that security authentication (SAv5) meets the consistency standards such as authentication and encryption. This provides a reference for the secure access of distribution network terminals. This work is supported by the National Key Research and Development Program of China (No. 2018YFB0904900 and No. 2018YFB0904903).

    参考文献
    相似文献
    引证文献
引用本文

李 露,谢映宏,许永军,等.一种DNP3 SAv5的安全架构在配网终端的设计与应用[J].电力系统保护与控制,2022,50(17):154-166.[LI Lu, XIE Yinghong, XU Yongjun, et al. Design and implementation of a DNP3 SAv5 secure architecture in a distribution network terminal[J]. Power System Protection and Control,2022,V50(17):154-166]

复制
分享
相关视频

文章指标
  • 点击次数:
  • 下载次数:
  • HTML阅读次数:
  • 引用次数:
历史
  • 收稿日期:2021-11-03
  • 最后修改日期:2022-01-17
  • 录用日期:
  • 在线发布日期: 2022-09-05
  • 出版日期:
文章二维码
关闭
关闭