Domain Specific Stateful Filtering with Worst-Case Bandwidth

Abstract : Industrial systems are publicly the target of cyberattacks since Stuxnet. Nowadays they are increasingly communicating over insecure media such as In-ternet. Due to their interaction with the real world, it is crucial to ensure their security. In this paper, we propose a domain specific stateful filtering that keeps track of the value of predetermined variables. Such filter allows to express rules depending on the context of the system. Moreover, it must guarantee bounded memory and execution time to be resilient against malicious adversaries. Our approach is illustrated on an example.
Complete list of metadatas

Cited literature [12 references]  Display  Hide  Download

http://hal.univ-grenoble-alpes.fr/hal-01393829
Contributor : Maxime Puys <>
Submitted on : Tuesday, November 8, 2016 - 11:08:11 AM
Last modification on : Friday, July 6, 2018 - 10:08:02 AM
Long-term archiving on : Tuesday, March 14, 2017 - 7:04:58 PM

File

critis16.pdf
Files produced by the author(s)

Identifiers

  • HAL Id : hal-01393829, version 1

Collections

Citation

Maxime Puys, Jean-Louis Roch, Marie-Laure Potet. Domain Specific Stateful Filtering with Worst-Case Bandwidth. 11th International Conference on Critical Information Infrastructures Security (CRITIS 2016), UIC, Oct 2016, Paris, France. ⟨hal-01393829⟩

Share

Metrics

Record views

354

Files downloads

243