Skip to main content
SHARE
Publication

Data Diodes in Support of Trustworthy Cyber Infrastructure...

by Frederick T Sheldon, Hamed Okhravi
Publication Type
Conference Paper
Publication Date
Publisher Location
Portland, Oregon, United States of America
Conference Name
Cyber Security and Information Intelligence Workshop
Conference Location
Oak Ridge, Tennessee, United States of America
Conference Date
-

Interconnections between process control networks and en- terprise networks has resulted in the proliferation of stan- dard communication protocols in industrial control systems which exposes instrumentation, control systems, and the critical infrastructure components they operate to a variety of cyber attacks. Various standards and technologies have been proposed to protect industrial control systems against cyber attacks and to provide them with confidentiality, in- tegrity, and availability. Among these technologies, data diodes provide protection of critical systems by the means of physically enforcing traffic direction on the network. In order to deploy data diodes effectively, it is imperative to un- derstand the protection they provide, the protection they do not provide, their limitations, and their place in the larger security infrastructure. In this work, we briefly review the security challenges in an industrial control system, study data diodes, their functionalities and limitations, and pro- pose a scheme for their effective deployment in trusted pro- cess control networks (TPCNs.)