Abstract
This paper demonstrates the utility of an industrial control system testbed that incorporates a universal, realistic, measurable, controllable and reusable experimental platform for cyber security research and testing. The testbed has a layered architecture that leverages physical devices and emulation and simulation technologies. The testbed enables researchers to create experiments of varying levels of fidelity for vulnerability discovery, product evaluation and system certification. The utility of the testbed is demonstrated via a case study involving an industrial boiler control system.
Chapter PDF
Similar content being viewed by others
References
M. Brandle and M. Naedele, Security for process control systems: An overview, IEEE Security and Privacy, vol. 6(6), pp. 24–29, 2008.
Flux Research Group, Emulab, Total Network Testbed, School of Computing, University of Utah, Salt Lake City, Utah ( www.emulab.net ), 2014.
M. Flynn and M. 0’Malley, A drum boiler model for long term power system dynamic simulation, IEEE Transactions on Power Systems, vol. 14(1), pp. 209–217, 1999.
H. Gan, J. Zhang and H. Zeng, Development of main boiler simulation system for LNG ship, International Journal of Advancements in Computing Technology, vol. 4(17), pp. 466–475, 2012.
International Society of Automation, Security for Industrial Automation and Control Systems, Part 1: Terminology, Concepts and Models, ANSI/ISA-62443-1-1 (99.01.01)-2007, Research Triangle Park, North Carolina, 2007.
N. Kube, K. Yoo and D. Hoffman, Automated testing of industrial control devices: The Delphi database, Proceedings of the Sixth International Workshop on Automation of Software Testing, pp. 71–76, 2011.
A. Neves Bessani, P. Sousa, M. Correia, N. Ferreira Neves and P. Verissimo, The CRUTIAL way of critical infrastructure protection, IEEE Security and Privacy, vol. 6(6), pp. 44–51, 2008.
Office of Electricity Delivery and Energy Reliability, National SCADA Test Bed, Department of Energy, Washington, DC ( http://energy.gov/oe/technology-development/energy-delivery-systems-cybersecurity/national-scada-test-bed ), 2014.
C. Queiroz, A. Mahmood, J. Hu, Z. Tari and X. Yu, Building a SCADA security testbed, Proceedings of the Third International Conference on Network and System Security, pp. 357–364, 2009.
H. Rusinowski, M. Szega and A. Milejski, Mathematical model of the CFB boiler co-fired with coal and biomass, Proceedings of the Thirteenth International Carpathian Control Conference, pp. 604–607, 2012.
M. Schwartz, J. Mulder, J. Trent and W. Atkins, Control System Devices: Architectures and Supply Channels Overview, Sandia Report SAND2010-5183, Sandia National Laboratories, Albuquerque, New Mexico, 2010.
K. Stouffer, J. Falco and K. Scarfone, Guide to Industrial Control Systems (ICS) Security, NIST Special Publication 800-82, Revision 1, National Institute of Standards and Technology, Gaithersburg, Maryland, 2013.
W. Zhao, Y. Peng, Y. Gao, X. Han, H. Gao and W. Wang, Security testing methods and techniques of industrial control devices, Proceedings of the Ninth International Conference on Intelligent Information Hiding and Multimedia Signal Processing, pp. 433–436, 2013
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2014 IFIP International Federation for Information Processing
About this paper
Cite this paper
Gao, H., Peng, Y., Dai, Z., Wang, T., Han, X., Li, H. (2014). An Industrial Control System Testbed Based on Emulation, Physical Devices and Simulation. In: Butts, J., Shenoi, S. (eds) Critical Infrastructure Protection VIII. ICCIP 2014. IFIP Advances in Information and Communication Technology, vol 441. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-662-45355-1_6
Download citation
DOI: https://doi.org/10.1007/978-3-662-45355-1_6
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-662-45354-4
Online ISBN: 978-3-662-45355-1
eBook Packages: Computer ScienceComputer Science (R0)