China

Substation

Case study: Network security situational awareness system


Project background


    Electricity plays a very important role in the national economy and people's life.The law of electric power production and the need of electric power enterprises determine that electric power must be produced safely.

    In the new era of industrial control networks and infrastructure networks gradually becoming interconnected, cyberspace security has gradually become the focus of competition among countries. The safety of power production is related to national economy and people's livelihood and it is an important part of China's security strategy. In recent years, the power system has become a key target for cyber attacks. As a key information infrastructure of the country, the power monitoring system faces an increasingly severe network security situation. Network security attacks may lead to large-scale power outages, which seriously threaten corporate and national security. How to strengthen the network security protection of the power system has become an important issue facing of the government and enterprises.

    However, according to the annual network security supervision report of the national energy administration and the results of the company's network security inspection, the security protection of the power monitoring system of power grid companies still has the problem of insufficient network security situational awareness and early warning capability, which is embodied in the insufficient network security operation data collection means at the main station and the plant end, as well as the lack of supervision and analysis.The safety compliance of power monitoring system relies too much on manual, the verification efficiency is low.The degree of standardization of safe operation data is low, so it is difficult to analyze and sort directly.Lack of automatic detection and control means for typical security problems such as inter-regional interconnection, illegal network access and illegal mobile media access;The existing operation control system cannot monitor and accurately analyze the network security situation, and there is a significant gap between all-weather and all-directional network security situation awareness.

    Therefore, establish a network security situation awareness system for the power monitoring system, realize all-round and all-weather network security situation awareness of the company's power monitoring systems, timely discover various network security risks and illegal access events,realize the network security situation awareness And early warning has become an urgent need for network security protection of the company's power monitoring system.

    This case is completed by EVOC in cooperation with a power grid company. The power grid company uses EVOC's dedicated industrial PC SPC-8271BA1784 in the network security situation awareness system of the power monitoring system.


Project requirements

   

    The specific requirements of the power monitoring system network security situation awareness system collection device are as follows:

    1. Should adopt industrial-grade hardware architecture design, high-performance hardware platform;

    2. Multi-communication interface requirements: 16 x 10M/100M/1000M adaptive Ethernet electrical ports, 8 x optical ports, 1 x serial port (RS-485), and 1 x console port;

    3. Electromagnetic compatibility should meet the Electricity Ⅳ level for China (Same as IEC 61850 and IEEE-1613);

    4. Dual-channel power supply provides independent power supply, and supports dual-channel DC power supply or dual-channel AC power supply. The power supply module has a hard contact output when it loses power.


EVOC solution

    

    In response to the requirements of this network security situational awareness acquisition device, EVOC's dedicated industrial PC SPC-8271BA1784 is adopted to meet the application requirements. Its characteristics are as follows:

    1. High performance and high reliability platform

    The motherboard adopts QM87 platform, onboard Intel® I7-4700EQ processor, equipped with 16GB DDR4 memory, 64G SSD and 1TB enterprise-grade HDD, system disk and data storage disk are separated, power supply supports AC / DC110V / 220V redundant dual Power supply, support power supply alarm.

    2. Rich I/O ports

    SPC-8271BA1784 is a 19 "2U standard rack-mounted multi-network port dedicated industrial PC that meets the IEC61850 standard. It adopts a multi-network port design and provides 24 network ports (including 16 x RJ45 ports, 8 x optical ports), the front panel integrated status monitoring LED, respectively display the working status of power supply, hard disk and I / O ports. Support Windows and Linux operating systems.

    3. Strict electromagnetic compatibility design

    Designed specifically for the application environment of the power industry, it has strong anti-interference ability against strong electric fields and strong magnetic fields, stable performance, high temperature resistance, long-term uninterrupted work, suitable for substations and other occasions. EMC performance has passed the Electricity Ⅳ level for China.


System operation and effect evaluation

    

    SPC-8271BA1784 is deployed as a network security situation awareness device for power monitoring systems in all levels of control centers (monitoring, maintenance centers), power plants / substations at all levels, and conducts network security data monitoring of power monitoring systems at the main station or plant Collection, analysis and processing and communication with the main station system, with real-time network security monitoring, diachronic auditing, predictive analysis and other functions, real-time monitoring and online management of security risks and security events of the power monitoring system. The system topology is as follows:


    After practical application, the stability and reliability of SPC-8271BA1784 have been tested by the market. It provides a powerful hardware platform for the power monitoring network security situation awareness system to meet the needs of upper-layer application software module development and integration. Realized all-round and all-weather network security situation awareness of power monitoring systems at all levels of the power grid company, timely discovered various network security risks and illegal access events, and realized the situational awareness and early warning of network security of power monitoring systems demand.


Panel layout



    The front panel contains 24 network ports, 1 serial port, 1 Console indicator, 1 hard drive indicator, 1 system indicator, and 2 power indicators; the PVC film on the panel can be customized according to customer requirements.



    The rear panel contains 24 network ports, 8 optical ports and 16 RJ45 ports, 1 Console port (RJ45 type), 1 serial port (DB9 type) and power module.


Product dimensions

More info