The increased exposure of industrial control systems to cyber threats and attacks demands for the deployment of adequate security countermeasures. Specialised firewalls, able to recognise and inspect traffic concerning special-purpose communication protocols adopted in industrial environments, are one of the basic solutions that have started spreading on the market. This paper deals with the performance evaluation of two commercial firewalls designed for industrial applications. Our analysis is mainly based on the measurement of typical parameters that are relevant for the considered application scenario. A more conventional device has also been considered in the experimental campaign so as to provide a reference comparison with a well-assessed and general-purpose product. In particular, the paper focuses on the firewall packet inspection capabilities for the Modbus/TCP protocol.

Performance of Firewalls for Industrial Applications

M Cheminod;L Durante;M Maggiora;A Valenzano;C Zunino
2016

Abstract

The increased exposure of industrial control systems to cyber threats and attacks demands for the deployment of adequate security countermeasures. Specialised firewalls, able to recognise and inspect traffic concerning special-purpose communication protocols adopted in industrial environments, are one of the basic solutions that have started spreading on the market. This paper deals with the performance evaluation of two commercial firewalls designed for industrial applications. Our analysis is mainly based on the measurement of typical parameters that are relevant for the considered application scenario. A more conventional device has also been considered in the experimental campaign so as to provide a reference comparison with a well-assessed and general-purpose product. In particular, the paper focuses on the firewall packet inspection capabilities for the Modbus/TCP protocol.
2016
Istituto di Elettronica e di Ingegneria dell'Informazione e delle Telecomunicazioni - IEIIT
Industrial network security
firewalls
performance evaluation
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/325561
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact