APPARATUS FOR PREVENTING ILLEGAL ACCESS OF INDUSTRIAL CONTROL SYSTEM AND METHOD THEREOF
    1.
    发明申请
    APPARATUS FOR PREVENTING ILLEGAL ACCESS OF INDUSTRIAL CONTROL SYSTEM AND METHOD THEREOF 审中-公开
    防止工业控制系统非法访问的装置及其方法

    公开(公告)号:US20140380458A1

    公开(公告)日:2014-12-25

    申请号:US14245310

    申请日:2014-04-04

    CPC classification number: H04L63/0227 H04L67/12

    Abstract: Disclosed is an apparatus for preventing illegal access of industrial control system and a method thereof in accordance with the present invention. The apparatus for preventing illegal access of industrial control system includes: a first interface communicating a packet by interoperating with a management network group that requests a control command; a second interface communicating a packet by interoperating with a control network group that receives a control command from the management network group and processes it; and a control device, which, when a packet flows therein from the management network group or the control network group, checks whether or not at least one filter rule is set and controls the packet flow between the management network group and the control network group using the filter where the rule is set.

    Abstract translation: 公开了一种用于防止工业控制系统的非法访问的装置及其根据本发明的方法。 用于防止工业控制系统的非法访问的装置包括:通过与请求控制命令的管理网络组互操作来传送分组的第一接口; 第二接口,通过与从所述管理网络组接收控制命令的控制网络组进行交互操作来传送分组,并对其进行处理; 以及控制装置,当分组在管理网络组或控制网络组中流动时,检查是否设置了至少一个过滤规则,并且使用以下来控制管理网络组和控制网络组之间的分组流 设置规则的过滤器。

    APPARATUS AND METHOD FOR BLOCKING ABNORMAL COMMUNICATION
    2.
    发明申请
    APPARATUS AND METHOD FOR BLOCKING ABNORMAL COMMUNICATION 审中-公开
    阻塞异常通信的装置和方法

    公开(公告)号:US20160094517A1

    公开(公告)日:2016-03-31

    申请号:US14797562

    申请日:2015-07-13

    CPC classification number: H04L63/0236 H04L63/105 H04L63/1425

    Abstract: An apparatus and method for blocking abnormal communication are disclosed herein. The apparatus for blocking abnormal communication includes a packet collection unit, a packet analysis unit, and an access control unit. The packet collection unit collects a packet via a network device. The packet analysis unit generates a system rule, a communication flow rule, and a packet characteristic rule based on the packet from the packet collection unit. The access control unit determines whether to block the packet by determining whether the packet from the packet collection unit satisfies the system rule, the communication flow rule and the packet characteristic rule.

    Abstract translation: 本文公开了一种用于阻止异常通信的装置和方法。 用于阻止异常通信的装置包括分组收集单元,分组分析单元和访问控制单元。 分组收集单元经由网络设备收集分组。 分组分析单元基于来自分组收集单元的分组生成系统规则,通信流规则和分组特征规则。 访问控制单元通过确定来自分组收集单元的分组是否满足系统规则,通信流规则和分组特征规则来确定是否阻止分组。

Patent Agency Ranking