Bi-directional data security for control systems
US-9998426-B2 · Jun 12, 2018 · US
US11516229B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-11516229-B2 |
| Application number | US-201816642357-A |
| Country | US |
| Kind code | B2 |
| Filing date | Nov 1, 2018 |
| Priority date | Nov 24, 2017 |
| Publication date | Nov 29, 2022 |
| Grant date | Nov 29, 2022 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
A control device includes: a program execution module that executes a program created depending on a control target; a detection module that determines whether a security event occurs in access from outside to the control device; and a notification module that provides a notification, upon detection of occurrence of the security event, to a notification destination corresponding to the occurred security event. The security event includes an event that does not conform to a predetermined rule.
Opening claim text (preview).
The invention claimed is: 1. A control device that controls a control target, the control device comprising a hardware processor coupled to a port and configured to perform operations comprising: executing a program created depending on the control target; and determining whether a security event occurs by access from outside to the control device; and providing a notification, upon detection of the occurrence of the security event, to a notification destination corresponding to the occurred security event, wherein the port is configured to be capable of network connection, the security event comprises an event in which, when a state of the port is disabled and use of the port for network connection is prohibited, a network connection to the port from outside the control device is detected to occur. 2. The control device according to claim 1 , wherein the security event includes any of a behavior and an action that halt operation of the control device and/or degrade performance of the control device, a behavior and an action that halt processing for executing the program and/or degrade performance of the program in the control device, and a behavior and an action that halt operation of the control target and/or degrade performance of the control target. 3. The control device according to claim 1 , wherein the security event includes that any of a network address, a physical address, and a port number of a data transmission destination and/or a data transmission source is not included in a predetermined list for permitted access, or is included in a predetermined list for prohibited access. 4. The control device according to claim 1 , wherein the security event includes that user authentication required when accessing the control device from the outside fails. 5. The control device according to claim 1 , wherein the security event includes that any of addition and change of the program to be executed in the control device and change of setting in the control device occurs. 6. The control device according to claim 1 , wherein the notification module provides an event notification about the occurrence of the security event through a network. 7. The control device according to claim 6 , wherein an alert unit arranged on the network starts alert operation upon receiving the event notification from the notification. 8. A control device that controls a control target, the control device comprising a hardware processor configured to perform operations comprising: executing a program created depending on the control target; determining whether a security event occurs by access from outside to the control device; and providing a notification, upon detection of the occurrence of the security event, to a notification destination corresponding to the occurred security event, wherein the security event comprises an event in which a support device capable of developing the program to be executed in the control device is determined to be connected to the control device during operation thereof. 9. The control device according to claim 8 , wherein the security event includes any of a behavior and an action that halt operation of the control device and/or degrade performance of the control device, a behavior and an action that halt processing for executing the program and/or degrade performance of the program in the control device, and a behavior and an action that halt operation of the control target and/or degrade performance of the control target. 10. The control device according to claim 8 , wherein the security event includes that any of a network address, a physical address, and a port number of a data transmission destination and/or a data transmission source is not included in a predetermined list for permitted access, or is included in a predetermined list for prohibited access. 11. The control device according to claim 8 , wherein the security event includes that user authentication required when accessing the control device from the outside fails. 12. The control device according to claim 8 , wherein the security event includes that any of addition and change of the program to be executed in the control device and change of setting in the control device occurs. 13. The control device according to claim 8 , wherein the notification provides an event notification about the occurrence of the security event through a network. 14. The control device according to claim 13 , wherein an alert unit arranged on the network starts alert operation upon receiving the event notification from the notification. 15. A control system that controls a control target, the control system comprising a hardware processor coupled to a port and configured to perform operations comprising: executing a program created depending on the control target; and determining whether a security event occurs by access from outside, and providing a notification, upon detection of the occurrence of the security event, to a notification destination corresponding to the occurred security event, wherein the port is configured to be capable of network connection, and the security event comprises an event in which, when a state of the port is disabled and use of the port for network connection is prohibited, a network connection to the port from outside the control system is detected to occur. 16. A control system that controls a control target, the control system comprising a hardware processor configured to perform operations comprising: executing a program created depending on the control target; determining whether a security event occurs by access from outside, and providing a notification, upon detection of the occurrence of the security event, to a notification destination corresponding to the occurred security event, wherein the security event comprises an event in which a support device capable of developing the program to be executed in the control system is determined to be connected to the control system during operation thereof.
involving event detection and direct action · CPC title
by monitoring network traffic (monitoring network traffic per se H04L43/00) · CPC title
Monitoring; Safety · CPC title
Event detection, e.g. attack signature detection · CPC title
Traffic logging, e.g. anomaly detection · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.