Invention Grant
- Patent Title: Automated discovery of security policy from design data
-
Application No.: US16156305Application Date: 2018-10-10
-
Publication No.: US11212322B2Publication Date: 2021-12-28
- Inventor: Alex L. Nicoll , Kyle Crum , Taryl J. Jasper , Michael A. Bush , Jack M. Visoky
- Applicant: Rockwell Automation Technologies, Inc.
- Applicant Address: US OH Mayfield Heights
- Assignee: Rockwell Automation Technologies, Inc.
- Current Assignee: Rockwell Automation Technologies, Inc.
- Current Assignee Address: US OH Mayfield Heights
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
An industrial security policy configuration system generates and implements security policies for industrial automation systems based on design data for the industrial systems generated by device manufacturers, system integrators, original equipment manufacturers, or the owners of the industrial assets during the design of the industrial systems. the collected design data to a security rule set defining device-level communication privileges. The system translates the collected design data to a security rule set defining device-level communication privileges, which are then translated to a comprehensive set of security policies customized to the requirements of the industrial systems represented by the design data. By leveraging the rich set of available design data to identify or infer security requirements and generate suitable security configurations, the system can mitigate the need to manually configure security policies based on human judgments regarding normal and abnormal network traffic.
Information query