★ 許艾 北京四方繼保工程技術(shù)有限公司
★ 劉剛,徐延明,李維 北京四方繼保自動(dòng)化股份有限公司
摘要:近兩年,為了提高關(guān)鍵設(shè)備軟硬件自主可控的比例,電網(wǎng)公司加大了對(duì)電力基礎(chǔ)設(shè)施的投資,目標(biāo)是解決現(xiàn)有智能變電站存在的軟硬件非國(guó)產(chǎn)、核心技術(shù)非自主可控、關(guān)鍵元器件嚴(yán)重依賴國(guó)外的現(xiàn)狀。本文主要論述三方面的內(nèi)容,第一,調(diào)度主站到網(wǎng)關(guān)機(jī)通信基于國(guó)密算法安全組件與數(shù)字證書技術(shù)實(shí)現(xiàn)雙向安全認(rèn)證;第二,在變電站內(nèi),監(jiān)控主機(jī)與測(cè)控、保護(hù)設(shè)備基于自主可控協(xié)議進(jìn)行安全通信;第三,采用自主可控協(xié)議與數(shù)字證書相結(jié)合的方式實(shí)現(xiàn)應(yīng)用層的雙向身份認(rèn)證與傳輸層數(shù)據(jù)加密。通過(guò)采用自主可控協(xié)議與國(guó)產(chǎn)密碼技術(shù),基本解決了調(diào)度到變電站及變電站內(nèi)通信系統(tǒng)方面的安全隱患。
關(guān)鍵詞:SM2;自主可控;變電站安全;身份認(rèn)證;安全可信
Abstract: In the past two years, in order to increase the proportion of independent controllable key equipment software and hardware, the power grid companies have increased their investment in power infrastructure. The goal is to solve the existing smart substations that have non-domestic software and hardware, and core technologies that are not independent and controllable. Components rely heavily on the status quo abroad. This article mainly discusses three aspects. First, the communication between the dispatching master station and the gateway machine is based on the national secret algorithm security component and digital certificate technology to achieve two-way security authentication. Secondly, in the substation, the monitoring host communicates with the measurement and control and protection equipment safely based on the autonomous and controllable protocol. Thirdly, the combination of autonomous and controllable protocol and digital certificate is used to achieve application layer two-way identity authentication and transport layer data encryption. By using of independent controllable protocols and domestic cryptographic technology, the hidden dangers of dispatching to the substation and the communication system in the substation are basically solved.
Key words: SM2; Autonomous and controllable; Substation security; Identity authentication; Safe and reliable
在線預(yù)覽:電力監(jiān)控系統(tǒng)通信安全技術(shù)研究與應(yīng)用.pdf
摘自《自動(dòng)化博覽》2022年1月刊暨《工業(yè)控制系統(tǒng)信息安全專刊(第八輯)》