Industrial control network security protection processing system based on encryption software defined network
The invention relates to an industrial control network security protection processing system, method and device based on an encrypted software defined network, in the system, a software defined network switch mirrors a working network segment data packet of each industrial device to a first intrusio...
Gespeichert in:
Hauptverfasser: | , , |
---|---|
Format: | Patent |
Sprache: | chi ; eng |
Schlagworte: | |
Online-Zugang: | Volltext bestellen |
Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Zusammenfassung: | The invention relates to an industrial control network security protection processing system, method and device based on an encrypted software defined network, in the system, a software defined network switch mirrors a working network segment data packet of each industrial device to a first intrusion detection component, and the first intrusion detection component performs security protection processing according to a current security protection processing logic. Performing network attack behavior analysis on the received working network segment mirroring data packet to obtain a first analysis result, if it is determined that a data interception condition is met according to the first analysis result, performing address source analysis on the data packet to obtain a first target network address, generating an access control list issuing instruction, and sending the access control list issuing instruction to a software defined network controller, the software-defined network controller issues the access contro |
---|