Design and Implementation of NSM based Security Management System in Smart Grid

스마트그리드 전력망의 NSM 기반 보안관리시스템 설계 및 구현

  • 장범환 (호원대학교 사이버수사경찰학부)
  • Published : 2013.09.30

Abstract

In this paper, we designed the security management system based on IEC 62351-7 in the Smart Grid environment. The scope of IEC 62351-7 focuses on network and system management (NSM) of the information infrastructure as well as end-to-end security through abstract NSM data objects for the power system operational environment. However, it does not exist that security management system based on IEC 62351-7 manages the security of the power system in the Smart Grid environment, because power equipment or SNMP agents providing NSM data do not exist yet. Therefore, we implemented the security management system to manage the information infrastructure as reliably as the power system infrastructure is managed. We expect that this system can perform the security management of IEC 61850 based digital substation and can be a prototype of the security system for the Smart Grid in the future.

Keywords

References

  1. F. Cleveland, "IEC 62351-7: Communications and Information Management Technologies - Network and System Management in Power System Operations," Transmission and Distribution Conference and Exposition, IEEE/PES, Apr. 2008.
  2. C. Kim, M. Choi, S. Ju, Y. Lim, and J. Baek, "Security Data Extraction from IEC 61850 ACSI Models for Network and System Management," Lecture Notes In Computer Science, LNCS 7115, Springer-Verlag, 2012, pp. 142-150.
  3. K. Choi, X. Chen, S. Li, M. Kim, K. Chae, and J. Na, "Intrusion Detection of NSM Based DoS Attacks Using Data Mining in Smart Grid," MDPI's Energies, Vol. 5, No. 10, 2012, pp. 4091-4109. https://doi.org/10.3390/en5104091
  4. S. Fries, H. Hof, and M. Seewald, "Enhancing IEC 62351 to Improve Security for Energy Automation in Smart Grid Environments," 5th International Conference on Internet and Web Applications and Services (ICIW), May 2010, pp. 135-142.
  5. G. Rasche, Network Security Management for Transmission Systems, ELECTRIC POWER RESEARCH INSTITUTE (EPRI), Dec. 2012.
  6. IEC, Power Systems Management and associated Information Exchange - Data and communications security - Part 5: Security for any profiles including IEC 60870-5, IEC/TS 62351-5, May 2007.
  7. IEC, Power Systems Management and associated information exchange - Data and communications security - Part 7: Network and system management (NSM) data object models, IEC/TS 62351-7 Edition 1.0, Oct. 2010.
  8. NISTIR 7628, Guidelines for Smart Grid Cyber Security. Smart Grid Cyber Security Strategy, Architecture, and High-Level Requirement, vol. 1, Aug. 2010.
  9. NISTIR 7628, Guidelines for Smart Grid Cyber Security. Supportive Analyses and References, vol. 3, Aug. 2010.
  10. 지능형전력망협회, 스마트그리드 보안 기술동향보고서, 지능형전력망협회, Sep. 2012.
  11. 전용희, 장종수, "스마트 그리드 통신망의 보안 특성, 고려사항, 구조, 설계 원칙과 연구동향에 관한 고찰," 한국정보보호학회, 정보보호학회지, 제22권, 제5호, 2012, pp. 40-53.
  12. 나중찬, 조현숙, "보안측면에서의 산업제어시스템 비정상 행위 분류," 한국정보보호학회, 정보보호학회논문지, 제23권, 제2호, 2013, pp. 329-337.
  13. 주승환, 서희석, 김상연, "한국형 네트워크 보안 시스템 성능 평가 방법론 설계," 디지털산업정보학회, 디지털산업정보학회논문지, 제7권, 제3호, 2011.
  14. 조성규, 전문석, "보안이벤트 사이의 상관분석 기법을 이용한 조기위험경보시스템의 설계," 디지털산업정보학회, 디지털산업정보학회논문지, 제8권, 제1호, 2012.