Invention Grant
- Patent Title: Method for controlling transmission security of industrial communications flow based on SDN architecture
-
Application No.: US15525667Application Date: 2015-12-25
-
Publication No.: US10447655B2Publication Date: 2019-10-15
- Inventor: Peng Zeng , Wenli Shang , Dong Li , Ming Wan , Jianming Zhao , Jindi Liu , Ming Yang
- Applicant: SHENYANG INSTITUTE OF AUTOMATION, CHINESE ACADEMY OF SCIENCES
- Applicant Address: CN Shenyang, Liaoning
- Assignee: SHENYANG INSTITUTE OF AUTOMATION, CHINESE ACADEMY OF SCIENCES
- Current Assignee: SHENYANG INSTITUTE OF AUTOMATION, CHINESE ACADEMY OF SCIENCES
- Current Assignee Address: CN Shenyang, Liaoning
- Agency: Smith, Gambrell & Russell, LLP
- Priority: CN201510459325 20150729
- International Application: PCT/CN2015/098820 WO 20151225
- International Announcement: WO2017/016162 WO 20170202
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G05B19/418 ; H04L12/741 ; H04L12/937 ; H04L12/851 ; H04L12/931 ; H04L29/08

Abstract:
The present invention discloses a method for controlling transmission security of an industrial communication flow based on an SDN architecture. The method comprises: designing a flow security control module in a management controller, performing in-depth parsing on industrial communication flow data, matching the parsing result with each preset industrial rule policy, and executing a control processing operation of the industrial rule policy, to implement transmission control of an industrial communication flow. The management controller comprises an industrial rule policy database used for storing all industrial rule policies set by a user. An SDN switch maintains a structure of a flow table, and an industrial communication flow is forwarded according to the flow table. The flow table comprises a security control identifier used for indicating whether security transmission of this communication flow needs to be controlled. The present invention can detect the legality of an industrial communication data flow, to control access of industrial communication that does not conform to an industrial rule policy, so that the security and reliability of industrial control systems based on an SDN architecture are guaranteed.
Public/Granted literature
- US20170339109A1 METHOD FOR CONTROLLING TRANSMISSION SECURITY OF INDUSTRIAL COMMUNICATIONS FLOW BASED ON SDN ARCHITECTURE Public/Granted day:2017-11-23
Information query