Skip to main content
SHARE
Publication

Data Diodes in Support of Trustworthy Cyber Infrastructure and Net-Centric Cyber Decision Support...

by Hamed Okhravi, Frederick T Sheldon, Joshua Haines
Publication Type
Journal
Journal Name
Energy Systems
Publication Date
Page Numbers
203 to 216
Volume
N/A

Data diodes provide protection of critical cyber assets by the means of physically enforcing traffic direction on the network. In order to deploy data diodes effectively, it is imperative to understand the protection they provide, the protection they do not provide, their limitations, and their place in the larger security infrastruc- ture. In this work, we study data diodes, their functionalities and limitations. We then propose two critical infrastructure systems that can benefit from the additional protection offered by data diodes: process control networks and net-centric cyber decision support systems. We review the security requirements of these systems, describe the architectures, and study the trade-offs. Finally, the architectures are evaluated against different attack patterns.