Netinfo Security ›› 2024, Vol. 24 ›› Issue (11): 1710-1720.doi: 10.3969/j.issn.1671-1122.2024.11.010

Previous Articles     Next Articles

Analysis of Security Risks and Countermeasures for Modbus TCP Protocol

MA Rupo(), WANG Qun, YIN Qiang, GAO Gugang   

  1. Department of Computer Information and Cyber Security, Jiangsu Police Institute, Nanjing 210031, China
  • Received:2024-07-03 Online:2024-11-10 Published:2024-11-21

Abstract:

As the product of the deep integration of new generation information technology and industrial system, industrial internet is promoting the transformation of industrial production mode. However, in the initial design of industrial control network protocols, some security issues are overlooked due to the emphasis on efficiency improvement and functional implementation. In addition, security vulnerabilities and abnormal behaviors in applications have led to serious security risks. This paper introduced the development background and trend of industrial Internet and the characteristics of industrial control network protocol, analyzed the security risks of the typical industrial control network protocol Modbus TCP, which was widely used at present, studied the security countermeasures such as data encryption, data integrity detection, identity authentication and anomaly intrusion detection, and finally proposed a set of security scheme of Modbus TCP protocol. This scheme included data encryption and decryption modules using AES and RSA algorithms, data integrity detection module using SM3 algorithm, identity authentication module using dynamic password authentication technology, and anomaly intrusion detection system based on data features. At the same time, the scheme adopted PKI, which could further enhance the security of the industrial control system.

Key words: industrial internet, industrial control network protocol, Modbus TCP, safety risk analysis

CLC Number: