首页|基于E2000D的工业物联数采安全终端研究与设计

基于E2000D的工业物联数采安全终端研究与设计

扫码查看
工业物联网的出现使工业数据安全备受关注,数据采集的安全直接关系到了工业互联网的数据安全;数据采集系统中,数据采集(南向)和云端通信(北向)协议及数据采集系统运行环境是数采终端最主要的安全攻击目标;在对工业物联数采安全终端主流北向MQTT协议和南向OPC UA协议的安全性及数采系统可信运行环境进行分析后,在国产处理器E2000D安全可信运行环境上基于OpenSSL库设计并实现了支持北向MQTT和南向OPC UA协议的工业数采安全终端;通过试验测试表明,该工业物联数采安全终端在安全认证、访问控制、数据完整性和数据机密性方面都有较高的安全性能。
Research and Design of Industrial IoT Data Acquisition Security Terminal Based on E2000D
The emergence of Industrial Internet of Things(IoT)has paid attention to industrial data security.The security of da-ta collection is directly related to the data security of the industrial Internet.In the data acquisition system,the data acquisition(southbound)and cloud communication(northbound)protocols and the operating environment of the data acquisition system are the most important security attack targets of data acquisition terminals.This paper analyzes the security of the mainstream northbound message queuing telemetry transport(MQTT)protocol and southbound object linking and embedding(OLE)for process control uni-fied architecture(OPC UA)protocol of the industrial IoT data mining security terminal and the trusted operating environment of the data acquisition system,designs and implements a data mining security terminal supporting northbound MQTT and southbound OPC UA protocol based on OpenSSL library in the secure operating environment of domestic processor E2000D.Experimental results show that the industrial IoT data acquisition security terminal has a high security performance in security authentication,access control,da-ta integrity and data confidentiality.

Industrial IoTE2000DOPC UAOpenSSLdata acquisition security terminal

靖琦东、蒋增文、田炜、万里云、周秩辉

展开 >

中电工业互联网有限公司,长沙 410000

工业物联网 E2000D OPCUA OpenSSL 数采安全终端

湖南省创新型省份建设专项高新技术产业科技创新引领计划

2021GK4012

2024

计算机测量与控制
中国计算机自动测量与控制技术协会

计算机测量与控制

CSTPCD
影响因子:0.546
ISSN:1671-4598
年,卷(期):2024.32(10)