Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection

In the remote operation and maintenance of relay protection, there are network intrusion risks at every stage of data transmission. Existing security measures have not effectively addressed business layer risks, and some issues such as delayed risk response still exist. Therefore, a message complian...

Full description

Saved in:
Bibliographic Details
Main Authors: Jiang YU, Honghui GAO, Zebing SHI, Weiwei JIANG, Fangying WU, Qingcai ZHAN, Rui ZHANG
Format: Article
Language:zho
Published: State Grid Energy Research Institute 2024-03-01
Series:Zhongguo dianli
Subjects:
Online Access:https://www.electricpower.com.cn/CN/10.11930/j.issn.1004-9649.202302015
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1850249799490600960
author Jiang YU
Honghui GAO
Zebing SHI
Weiwei JIANG
Fangying WU
Qingcai ZHAN
Rui ZHANG
author_facet Jiang YU
Honghui GAO
Zebing SHI
Weiwei JIANG
Fangying WU
Qingcai ZHAN
Rui ZHANG
author_sort Jiang YU
collection DOAJ
description In the remote operation and maintenance of relay protection, there are network intrusion risks at every stage of data transmission. Existing security measures have not effectively addressed business layer risks, and some issues such as delayed risk response still exist. Therefore, a message compliance detection method and intrusion blocking technology have been proposed. By analyzing the objects, formats, business logic, and behavioral patterns of messages, a library of message compliance rules and a strategy for blocking non-compliant messages are established. Finally, modules for blocking non-compliant messages and an "emergency blocking" control module are designed and developed. The simulation testing results indicate that the proposed technology consistently blocks abnormal messages of different types as expected. This technology can effectively prevent the illegal intrusion attacks, thereby enhancing the security and stability of the remote operation and maintenance for relay protection.
format Article
id doaj-art-20d1e6c8e1d648048d2bea5d84adeae6
institution OA Journals
issn 1004-9649
language zho
publishDate 2024-03-01
publisher State Grid Energy Research Institute
record_format Article
series Zhongguo dianli
spelling doaj-art-20d1e6c8e1d648048d2bea5d84adeae62025-08-20T01:58:24ZzhoState Grid Energy Research InstituteZhongguo dianli1004-96492024-03-0157313514310.11930/j.issn.1004-9649.202302015zgdl-57-01-yujiangApplication of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay ProtectionJiang YU0Honghui GAO1Zebing SHI2Weiwei JIANG3Fangying WU4Qingcai ZHAN5Rui ZHANG6Dispatching Center of China Southern Grid, Guangzhou 510530, ChinaDispatching Center of China Southern Grid, Guangzhou 510530, ChinaDispatching Center of China Southern Grid, Guangzhou 510530, ChinaBeijing Sifang Automation Co., Ltd., Beijing 100085, ChinaBeijing Sifang Automation Co., Ltd., Beijing 100085, ChinaBeijing Sifang Automation Co., Ltd., Beijing 100085, ChinaBeijing Sifang Automation Co., Ltd., Beijing 100085, ChinaIn the remote operation and maintenance of relay protection, there are network intrusion risks at every stage of data transmission. Existing security measures have not effectively addressed business layer risks, and some issues such as delayed risk response still exist. Therefore, a message compliance detection method and intrusion blocking technology have been proposed. By analyzing the objects, formats, business logic, and behavioral patterns of messages, a library of message compliance rules and a strategy for blocking non-compliant messages are established. Finally, modules for blocking non-compliant messages and an "emergency blocking" control module are designed and developed. The simulation testing results indicate that the proposed technology consistently blocks abnormal messages of different types as expected. This technology can effectively prevent the illegal intrusion attacks, thereby enhancing the security and stability of the remote operation and maintenance for relay protection.https://www.electricpower.com.cn/CN/10.11930/j.issn.1004-9649.202302015relay protectionremote operation and maintenancenetwork securityintrusion detectionemergency control
spellingShingle Jiang YU
Honghui GAO
Zebing SHI
Weiwei JIANG
Fangying WU
Qingcai ZHAN
Rui ZHANG
Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection
Zhongguo dianli
relay protection
remote operation and maintenance
network security
intrusion detection
emergency control
title Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection
title_full Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection
title_fullStr Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection
title_full_unstemmed Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection
title_short Application of Message Compliance Detection and Intrusion Blocking Technology in Remote Operation and Maintenance System of Relay Protection
title_sort application of message compliance detection and intrusion blocking technology in remote operation and maintenance system of relay protection
topic relay protection
remote operation and maintenance
network security
intrusion detection
emergency control
url https://www.electricpower.com.cn/CN/10.11930/j.issn.1004-9649.202302015
work_keys_str_mv AT jiangyu applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection
AT honghuigao applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection
AT zebingshi applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection
AT weiweijiang applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection
AT fangyingwu applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection
AT qingcaizhan applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection
AT ruizhang applicationofmessagecompliancedetectionandintrusionblockingtechnologyinremoteoperationandmaintenancesystemofrelayprotection