• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Wang Yusheng (Wang Yusheng.) | Fan Kefeng (Fan Kefeng.) | Lai Yingxu (Lai Yingxu.) (Scholars:赖英旭) | Liu Zenghui (Liu Zenghui.) | Zhou Ruikang (Zhou Ruikang.) | Yao Xiangzhen (Yao Xiangzhen.) | Li Lin (Li Lin.)

Indexed by:

CPCI-S EI Scopus

Abstract:

Modbus over TCP/IP is one of the most popular industrial network protocol that are widely used in critical infrastructures. However, vulnerability of Modbus TCP protocol has attracted widely concern in the public. The traditional intrusion detection methods can identify some intrusion behaviors, but there are still some problems. In this paper, we present an innovative approach, SD-IDS (Stereo Depth IDS), which is designed for perform real-time deep inspection for Modbus TCP traffic. SD-IDS algorithm is composed of two parts: rule extraction and deep inspection. The rule extraction module not only analyzes the characteristics of industrial traffic, but also explores the semantic relationship among the key field in the Modbus TCP protocol. The deep inspection module is based on rule-based anomaly intrusion detection. Furthermore, we use the online test to evaluate the performance of our SD-IDS system. Our approach get a low rate of false positive and false negative.

Keyword:

industrial control systems protocol parsing deep inspection semantic analysis period

Author Community:

  • [ 1 ] [Wang Yusheng]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China
  • [ 2 ] [Lai Yingxu]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China
  • [ 3 ] [Fan Kefeng]China Elect Standardizat Inst, Beijing 100007, Peoples R China
  • [ 4 ] [Zhou Ruikang]China Elect Standardizat Inst, Beijing 100007, Peoples R China
  • [ 5 ] [Yao Xiangzhen]China Elect Standardizat Inst, Beijing 100007, Peoples R China
  • [ 6 ] [Li Lin]China Elect Standardizat Inst, Beijing 100007, Peoples R China
  • [ 7 ] [Liu Zenghui]Beijing Polytech, Automat Engn Sch, Beijing 100176, Peoples R China

Reprint Author's Address:

  • 赖英旭

    [Lai Yingxu]Beijing Univ Technol, Coll Comp Sci, Beijing 100124, Peoples R China

Show more details

Related Keywords:

Related Article:

Source :

2017 IEEE 13TH INTERNATIONAL SYMPOSIUM ON AUTONOMOUS DECENTRALIZED SYSTEMS (ISADS 2017)

Year: 2017

Page: 156-162

Language: English

Cited Count:

WoS CC Cited Count: 32

SCOPUS Cited Count: 41

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 1

Online/Total:416/10804640
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.