工业互联网设备的网络安全管理与防护研究

马娟, 于广琛, 柯皓仁, 杨冬梅, 吾守尔·斯拉木

中国工程科学 ›› 2021, Vol. 23 ›› Issue (2) : 81-87.

PDF(581 KB)
PDF(581 KB)
中国工程科学 ›› 2021, Vol. 23 ›› Issue (2) : 81-87. DOI: 10.15302/J-SSCAE-2021.02.011
新一代工业互联网安全技术发展战略研究
Orginal Article

工业互联网设备的网络安全管理与防护研究

作者信息 +

Network Security Management and Protection of Industrial Internet Equipment

Author information +
History +

摘要

新一代信息通信技术与工业体系深度融合,工业互联网推动“人、机、物”的泛在深度互联和全面感知;工业互联网设备的网络化、数字化、智能化应用不断泛化,设备自身网络安全设计、应用过程管理与防护成为关注重点。本文从工业互联网设备的安全防护视角出发,明晰了工业互联网设备的内涵、防护范畴及需求,梳理了国内外工业互联网在安全监管和审查、安全检测认证等方面的发展现状;结合工业互联网设备的网络安全相关实践,剖析了我国工业互联网设备网络安全面临的问题。本文论证了我国工业互联网设备网络安全管理与防护的具体实施路径,并提出发展建议:从国家层面完善工业互联网设备的网络安全准入机制,建立设备网络安全检测认证体系,促进设备的网络安全架构研究和工程应用,强化设备的网络安全风险监测感知。

Abstract

The new generation of information and communications technology is deeply integrated with the industrial system. The industrial Internet promotes the ubiquitous and deep interconnection and comprehensive perception of human, machines, and things. The industrial Internet equipment becomes increasingly networked, digital, and intelligent; therefore, the network security design, application management, and protection of these equipment become increasingly important. In this study, we clarify the connotation, protection scope, and requirements of the industrial Internet equipment, and summarize the development status of industrial Internet in China and abroad from the aspects of security control and security certification. Moreover, the problems regarding the network security of industrial Internet equipment in China are analyzed, and the specific implementation paths regarding the network security management and protection for the industrial internet equipment in China are discussed. Furthermore, several development suggestions are proposed. Specifically, the network security access mechanism of the industrial Internet equipment should be improved at the national level, a network security testing and certification system for the equipment should be established, research on the network security architecture and engineering application of the equipment should be promoted, and the network security risk monitoring and perception of the equipment should be strengthened.

关键词

工业互联网设备 / 网络安全 / 管理 / 防护 / 认证

Keywords

industrial Internet equipment / network security / management / protection / certification

引用本文

导出引用
马娟, 于广琛, 柯皓仁. 工业互联网设备的网络安全管理与防护研究. 中国工程科学. 2021, 23(2): 81-87 https://doi.org/10.15302/J-SSCAE-2021.02.011

参考文献

[1]
张跃. 工业设备安装中的高精度测量方法探讨 [J]. 科技经济导 刊, 2019, 27(24): 72. Zhang Y. Discussion on high-precision measurement methods in the installation of industrial equipment [J]. Technology and Economic Guide, 2019, 27(24): 72.
[2]
张斌, 滕俊杰, 满毅. 改进的并行fp-growth算法在工业设备故障 诊断中的应用研究 [J]. 计算机科学, 2018, 45(S1): 508–512. Zhang B, Teng J J, Man Y. Application research of improved parallel fp-growth algorithm in fault diagnosis of industrial equipment [J]. Computer Science, 2018, 45(S1): 508–512.
[3]
Samigulina G, Samigulina Z. Diagnostics of industrial equipment and faults prediction based on modified algorithms of artificial immune systems [J]. Journal of Intelligent Manufacturing, 2021 (1): 1–18.
[4]
Compare M, Baraldi P, Bani I, et al. Industrial equipment reliability estimation: A bayesian weibull regression model with covariate selection [J]. Reliability Engineering & System Safety, 2020, 200: 1–10.
[5]
余骋远. 基于工业大数据的设备健康与故障分析方法研究与应 用 [D]. 沈阳: 中国科学院大学(硕士学位论文), 2017. Yu P Y. Research and application of equipment health and failure analysis based on industrial big data [D]. Shenyang: University of Chinese Academy of Sciences(Master’s thesis), 2017.
[6]
金洪吉. 基于物联网的工业设备远程监控系统研究 [J]. 产业与 科技论坛, 2020, 19(14): 35–36. Jin H J. Research on remote monitoring system of industrial equipment based on Internet of things [J]. Industrial & Science Tribune, 2020, 19(14): 35–36.
[7]
戴认之. 人工智能技术在工业设备和系统智能运营维护的应用 [J]. 中国信息化, 2020 (7): 52–53. Dai R Z. The application of artificial intelligence technology in the intelligent operation and maintenance of industrial equipment and systems [J]. China Information, 2020 (7): 52–53.
[8]
Mourtzis D, Angelopoulos J, Panopoulos N. Intelligent predictive maintenance and remote monitoring framework for industrial equipment based on mixed reality [J]. Frontiers in Mechanical Engineering, 2020, 6(12): 1–12.
[9]
关键基础设施安全应急响应中心. 工控系统行业漏洞 [EB/OL]. (2020-12-01)[2021-01-05]. https://ics.cnvd.org.cn/. Critical Infrastructure Security Response Center. Industrial control system vulnerabilities [EB/OL]. (2020-12-01)[2021-01-05]. https://ics.cnvd.org.cn/.
[10]
Committee on National Security Systems. Frequently asked questions (FAQ) [EB/OL]. (2001-10-16)[2021-01-05]. https:// www.niap-ccevs.org/Ref/FAQ.cfm#cat32.
[11]
Department of Homeland Security. National strategy for global supply chain security [EB/OL]. (2017-07-13) [2021-01-05]. https://www.dhs.gov/national-strategy-global-supply-chainsecurity.
[12]
Warner S, Mark R. S.734 - Internet of Things cybersecurity improvement act of 2019 [EB/OL]. (2019-06-19)[2021-01-05]. https://www.congress.gov/bill/116th-congress/senate-bill/734.
[13]
中华人民共和国国家互联网信息办公室. 各国网络安全审查制 度及案例分析 [EB/OL]. (2015-04-17)[2021-01-05]. http://www. cac.gov.cn/2015-04/17/c_1114990146.htm. Cyberspace Administration of China. Cyberspace security review system and case analysis for several countries. [EB/OL]. (2015-04- 17)[2021-01-05]. http://www.cac.gov.cn/2015-04/17/c_1114990146. htm.
[14]
ISA Secure. IEC 62443 conformance certification certifying industrial control system equipment and systems [EB/OL]. (2021-01-05)[2021-01-05]. https://www.isasecure.org/en-US/ Certification.
[15]
中华人民共和国国家互联网信息办公室. 关于发布《网络关 键设备和网络安全专用产品目录(第一批)》的公告 [EB/OL]. (2017-06-09)[2021-01-05]. http://www.cac.gov.cn/2017-06/09/ c_1121113591.htm. Cyberspace Administration of China. Announcement on the issuance of the Critical network equipment and special network security products catalog (first batch) [EB/OL]. (2017-06-09) [2021-01-05]. http://www.cac.gov.cn/2017-06/09/c_1121113591. htm.
[16]
中华人民共和国工业和信息化部. 加强工业互联网安全工作的 指导意见[EB/OL]. (2019-08-28)[2021-01-05]. https://www.miit. gov.cn/zwgk/zcwj/wjfb/txy/art/2020/art_c41cb8a2f6e74e239bae96068a2dc024.html. Ministry of Industry and Information Technology of the People’s Republic of China. Guiding opinions on strengthening industrial Internet security work [EB/OL]. (2019-08-28)[2021-01-05]. https://www.miit.gov.cn/zwgk/zcwj/wjfb/txy/art/2020/art_ c41cb8a2f6e74e239bae96068a2dc024.html.
基金
中国工程院咨询项目“新一代工业互联网安全技术发展战略研究” (2020-XZ-02)
PDF(581 KB)

Accesses

Citation

Detail

段落导航
相关文章

/