


InsecureremoteconnectionsAccesslinkssuchasdial-upmodemsandwirelesscommunicationsareusedforremotediagnostics,maintenance,andexaminationofsystemstatus.Ifencryptionorauthenticationmechanismsarenotutilized,theintegrityofthetransmittedġ Myriam Dunn, Critical Infrastructures: Vulnerabilities, Threats, Responses, CSS Analyses in Security Policy, Vol.

ThenetworkingofcontrolsystemsĮnterpriseshaveincreasedconnectivitythroughtheintegrationoftheircontrolsystemsandenterprisenetworks.Breachesinenterprisesecuritycanariseifappropriatesecuritycontrolsarenotputinplaceforbothnetworks.Ģ. Significantly.Utilitycompaniesrecognizethelowercosts,easieraccessibility,andimprovedefficiencygainedthroughconnectingtheirTCP/IPnetworkstotheirSCADAsystems.Thesenextgenerationsystems,integratedwithcorporatenetworksandtheInternet,facemanychallengesintheirquesttobecomingsecure.Severalfactorshavecontributedtothegrowingvulnerabilityofcontrolsystems,including:1.

,batteryvoltage,batterychargeanddischargecurrent,remotebatterytemperature,andACvoltage.DigitaloutputsincludeACvoltagepresent,batterychargerstatus,DCoutputsinrange,andwhethertheunitisACpoweredorbatterypowered.ForfurtherinformationcontactSageDesigns.Ĭontrolsystemswerelimitedtophysicalattacks.SCADAsystemoperatorsrationalizedthatifthemanagementconsoleswereadequatelyisolatedandonlyauthorizedpersonnelhadaccesstothenetwork,withinformationtechnologymanagersconvincedthatthesesystemswouldneverbeaccessedthroughcorporatenetworksorfromremoteaccesspoints.ThemodernSCADAsystemhasevolved Powermetrics Introduces a UPS / Power Supply for SCADA-RTU Applications Toresetthesystemifcommunicationsislostforaprogrammedperiodoftime.ThePLCcanalsosendaModbusinstructiontotheUPStodisabletheinternalAC/DCpowersupplywhichforcestheUPStobatterybackupmodefortestingpurposes.AlthoughthepowersectionofPM-UPSwilloperateasastand-aloneUPS,itisintendedtooperatealongwithamicroprocessorsubsystemwhichprovidesavarietyofcontrolandmonitoringfunctions.Forapplicationsnotrequiringremotemonitoringandcontrol. PowermetricsInc(Cleveland,Ohio)introducesthePM-UPS-12-24-15.ThisUPS/Powersupplyoperatesfrom85-264VACora12voltbattery,andprovidesaregulated24VDCoutputandaregulatedadjustable12VDC-15VDCoutput.Inaddition,/RTUinterfaceallowsaremotehosttoenableanddisabletheindividualoutputvoltages andtoadjustthe12V-15VDCoutputtooptimizeradiooperation.Inaddition,anumberofotherparametersmaybemonitoredandadjustedremotely.Awatchdogtimercanbeprogrammed,eitherthroughtheserviceportorovertheMODBUSinterface,whichcanbeused Volume 22, Issue 1 Spring/Summer 2012 A Publication of Sage Designs, Inc.ġ50 Shoreline Hwy., Suite #8A Mill Valley, CA 94941-3634 1-888-ASK-SAGE (1-88) 1-888-FAX-SAGE S C A DA, S e C u r i t y & Au to m At i o n n e w S l e t t e r The Growing Vulnerability of Control SystemsHistorically,securityconcernsover Potentialtoacquireconfidentialdataanddisruptoperations.SCADAsystemscontrolsomeofthemostvitalinfrastructureinindustrialandenergysectors,fromoilandgaspipelinestonuclearfacilitiestowatertreatmentplants.CriticalinfrastructureisdefinedasthephysicalandITassets,networksandservicesthatifdisruptedordestroyedwouldhaveaseriousimpactonthehealth,security,oreconomicwellbeingofcitizensandtheefficientfunctioningofacountrysgovernment.1Onedoesnothavetolookfarforexamplesofdisruptionsthathavecostorganizationstime,resources. Protecting Critical Infrastructure Includes Secure SCADASupervisor圜ontrolandDataAcquisition(SCADA)systemsaretypicallyusedformonitoringandcontrollinggeographicallyremoteoperations.Inrelativeobscurity,theseextensivecontrolsystemsperformbehind-the-scenes,collectingsensormeasurementsandoperationaldatafromthefield,processinganddisplayingthisinformation,andrelayingcontrolcommandstolocalorremoteequipment.AlthoughSCADAsystemsareemployedaroundtheworldinnumerousindustries,theaveragecitizenisunawareoftheircriticalimportance.However,thisisquicklychanging,asmoreinformationaboutthecybervulnerabilitiesofutilitySCADAsystemsispubliclyavailable.ThereisgoodreasonwhySCADAsystemsaregettingtheattentionofhostilegovernmentsandcompetitors,terroristgroups,disgruntledemployees,andothermaliciousintruderstheyofferthehuge Challenges&Solutions SCADABasics(Part2) SCADASystematSSWD FiretideWirelessBridges WirelessProductoftheYear TrainingClasses
