Industrial control network security protection processing system based on encryption software defined network

The invention relates to an industrial control network security protection processing system, method and device based on an encrypted software defined network, in the system, a software defined network switch mirrors a working network segment data packet of each industrial device to a first intrusio...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: YUN LEI, SHEN PENGFEI, CHENG JIELIN
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention relates to an industrial control network security protection processing system, method and device based on an encrypted software defined network, in the system, a software defined network switch mirrors a working network segment data packet of each industrial device to a first intrusion detection component, and the first intrusion detection component performs security protection processing according to a current security protection processing logic. Performing network attack behavior analysis on the received working network segment mirroring data packet to obtain a first analysis result, if it is determined that a data interception condition is met according to the first analysis result, performing address source analysis on the data packet to obtain a first target network address, generating an access control list issuing instruction, and sending the access control list issuing instruction to a software defined network controller, the software-defined network controller issues the access contro