A Network Intrusion Detection System for Building Automation and Control Systems

被引:4
|
作者
Graveto, Vitor [1 ]
Cruz, Tiago [1 ]
Simoes, Paulo [1 ]
机构
[1] Univ Coimbra, Ctr Informat & Syst, Dept Informat Engn, P-3030290 Coimbra, Portugal
关键词
Home automation; Smart buildings; Security; Building automation; Monitoring; Control systems; Safety; building automation and control systems; BACS; NIDS; smart buildings; security; safety; KNX; ANOMALY DETECTION; CYBER SECURITY;
D O I
10.1109/ACCESS.2023.3238874
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Building Automation and Control Systems (BACS) are traditionally based on specialized communications protocols, such as KNX or BACnet, and dedicated sensing and actuating devices. Despite the increased awareness about the security risks associated with BACS, there is a lack of security tools for protecting this special breed of cyber-physical systems. This is further aggravated by the fact that general-purpose security tools are typically not able to cope with the specific requirements and technologies associated with BACS, making it necessary to devise domain-specific approaches - as shown, for instance, by the KNX Secure initiative led by the KNX Association. Nevertheless, despite the advances brought by KNX Secure and similar initiatives, there is still a considerable gap between the security needs of BACS and the solutions available. In this paper, we address this gap by proposing a Network Intrusion Detection System (NIDS) specifically designed for BACS. This NIDS is protocol-agnostic and can potentially support different BACS protocols and technologies, such as KNX, BACnet, Modbus or mixed ecosystems, without loss of generality. We also present a specific proof-of-concept implementation of this NIDS concept for KNX - one of the more widespread BACS protocols. To this purpose, a real-world KNX deployment was used to showcase and evaluate the proposed approach.
引用
收藏
页码:7968 / 7983
页数:16
相关论文
共 50 条
  • [21] Hybrid Control Network Intrusion Detection Systems for Automated Power Distribution Systems
    Parvania, Masood
    Koutsandria, Georgia
    Muthukumar, Vishak
    Peisert, Sean
    McParland, Chuck
    Scaglione, Anna
    2014 44TH ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN), 2014, : 774 - 779
  • [22] DEIDS: a novel intrusion detection system for industrial control systems
    Gu, Haoran
    Lai, Yingxu
    Wang, Yipeng
    Liu, Jing
    Sun, Motong
    Mao, Beifeng
    NEURAL COMPUTING & APPLICATIONS, 2022, 34 (12): : 9793 - 9811
  • [23] DEIDS: a novel intrusion detection system for industrial control systems
    Haoran Gu
    Yingxu Lai
    Yipeng Wang
    Jing Liu
    Motong Sun
    Beifeng Mao
    Neural Computing and Applications, 2022, 34 : 9793 - 9811
  • [24] A Distributed Intrusion Detection System for Industrial Automation Networks
    Schuster, Franka
    Paul, Andreas
    2012 IEEE 17TH CONFERENCE ON EMERGING TECHNOLOGIES & FACTORY AUTOMATION (ETFA), 2012,
  • [25] Distributed Architecture of an Intrusion Detection System in Industrial Control Systems
    Abid, Ahlem
    Jemili, Farah
    Korbaa, Ouajdi
    ADVANCES IN COMPUTATIONAL COLLECTIVE INTELLIGENCE, ICCCI 2022, 2022, 1653 : 472 - 484
  • [26] A Scheme for Building A Dataset for Intrusion Detection Systems
    Van Loi Cao
    Van Thuy Hoang
    Quang Uy Nguyen
    2013 THIRD WORLD CONGRESS ON INFORMATION AND COMMUNICATION TECHNOLOGIES (WICT), 2013, : 280 - 284
  • [27] Virtualization in Network Intrusion Detection Systems
    Akhlaq, Monis
    Alserhani, Faeiz
    Awan, Irfan U.
    Cullen, Andrea J.
    Mellor, John
    Mirchandani, Pravin
    ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS: OTM 2009 WORKSHOPS, 2009, 5872 : 6 - +
  • [28] Performance of the Network Intrusion Detection Systems
    Murthy, M. V. Ramana
    Kumar, P. Ram
    Rao, E. Devender
    Sharma, A. C.
    Rajender, S.
    Rambabu, S.
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2009, 9 (10): : 198 - 202
  • [29] Oblivious network intrusion detection systems
    Sayed, Mahmoud AbdelHafeez
    Taha, Mostafa
    SCIENTIFIC REPORTS, 2023, 13 (01)
  • [30] Oblivious network intrusion detection systems
    Mahmoud AbdelHafeez Sayed
    Mostafa Taha
    Scientific Reports, 13