计算机测量与控制2024,Vol.32Issue(10) :208-214,221.DOI:10.16526/j.cnki.11-4762/tp.2024.10.030

基于E2000D的工业物联数采安全终端研究与设计

Research and Design of Industrial IoT Data Acquisition Security Terminal Based on E2000D

靖琦东 蒋增文 田炜 万里云 周秩辉
计算机测量与控制2024,Vol.32Issue(10) :208-214,221.DOI:10.16526/j.cnki.11-4762/tp.2024.10.030

基于E2000D的工业物联数采安全终端研究与设计

Research and Design of Industrial IoT Data Acquisition Security Terminal Based on E2000D

靖琦东 1蒋增文 1田炜 1万里云 1周秩辉1
扫码查看

作者信息

  • 1. 中电工业互联网有限公司,长沙 410000
  • 折叠

摘要

工业物联网的出现使工业数据安全备受关注,数据采集的安全直接关系到了工业互联网的数据安全;数据采集系统中,数据采集(南向)和云端通信(北向)协议及数据采集系统运行环境是数采终端最主要的安全攻击目标;在对工业物联数采安全终端主流北向MQTT协议和南向OPC UA协议的安全性及数采系统可信运行环境进行分析后,在国产处理器E2000D安全可信运行环境上基于OpenSSL库设计并实现了支持北向MQTT和南向OPC UA协议的工业数采安全终端;通过试验测试表明,该工业物联数采安全终端在安全认证、访问控制、数据完整性和数据机密性方面都有较高的安全性能.

Abstract

The emergence of Industrial Internet of Things(IoT)has paid attention to industrial data security.The security of da-ta collection is directly related to the data security of the industrial Internet.In the data acquisition system,the data acquisition(southbound)and cloud communication(northbound)protocols and the operating environment of the data acquisition system are the most important security attack targets of data acquisition terminals.This paper analyzes the security of the mainstream northbound message queuing telemetry transport(MQTT)protocol and southbound object linking and embedding(OLE)for process control uni-fied architecture(OPC UA)protocol of the industrial IoT data mining security terminal and the trusted operating environment of the data acquisition system,designs and implements a data mining security terminal supporting northbound MQTT and southbound OPC UA protocol based on OpenSSL library in the secure operating environment of domestic processor E2000D.Experimental results show that the industrial IoT data acquisition security terminal has a high security performance in security authentication,access control,da-ta integrity and data confidentiality.

关键词

工业物联网/E2000D/OPCUA/OpenSSL/数采安全终端

Key words

Industrial IoT/E2000D/OPC UA/OpenSSL/data acquisition security terminal

引用本文复制引用

基金项目

湖南省创新型省份建设专项高新技术产业科技创新引领计划(2021GK4012)

出版年

2024
计算机测量与控制
中国计算机自动测量与控制技术协会

计算机测量与控制

CSTPCD
影响因子:0.546
ISSN:1671-4598
段落导航相关论文