Browse > Article
http://dx.doi.org/10.13089/JKIISC.2013.23.2.299

Reply-Type based Agent Generation of Legacy Service on One-way data transfer system  

Kim, Kyoung-Ho (The Attached Institute of ETRI)
Chang, Yeop (The Attached Institute of ETRI)
Kim, Hee-Min (The Attached Institute of ETRI)
Yun, Jeong-Han (The Attached Institute of ETRI)
Kim, Woo-Nyon (The Attached Institute of ETRI)
Abstract
Physical One-way Transfer, one of network Separating Network Technologies, shut off intrusion possibilities by removing data transfer line from external network to internal network. Physical One-way Transfer technology can not support legacy services based duplex transmission. Legacy services operating need agent for extra service with the support. But, Agent development have problems with adding cost and open internal protocols. In this papers, We analyzed legacy services between Control network and OA network in working SCADA systems, and based on the results obtained from the analysis, categorized the legacy services into three forms. We propose an agent generation method of the three service categories for Physical One-Way Transfer System. In addition, we design an automatic generation tool using the proposed method.
Keywords
Physical One-way Transfer System; Legacy Service;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Pascal Sitbon, Arnaud Tarrago and Pierre Nguyen, "Enabling Secure Information Exchange from a Less Secure Zone to a Control System Zone in a Critical Infrastructure," Proceed-ings of the SCADA Security Scientific Symposium, Digital Bond Press, pp.10, 2003.
2 Malcolm W.Stevens, "An Implemen-tation of an Optical Data Diode," Def-ence Science And Technology Organisation Caneberra (AUSTRALIA), 1999.
3 Diego Gonzalez Gomez, "Receive-only UTP cables and Network Taps," http://www.infosecwriters.com, 2004.
4 http://www.owlcti.com/process_control/
5 http://www.waterfall-security.com/cat egory/products/file-transfer-and-replic ation/