Skip to content

Latest commit

 

History

History
22 lines (14 loc) · 1.51 KB

2023-04-21.md

File metadata and controls

22 lines (14 loc) · 1.51 KB

Adaptive Countermeasure based on SDN for ICS - Meeting Notes 21/04/2023

Minutes

Closed issues and decisions

  • Ziyao Wang measured the RTT and throughput between Scada-LTS and OpenPLC using nuttcp in normal ICS network and protected ICS network, in normal operation and under attack. He noticed that this countermeasure will only introduce little delay and it will mitigate the effect of DoS attack on network throughput.

Open issues and questions

  • Ziyao Wang will put a notice in the report concerning the unlicenced Cisco ASAv firewall and its limitation to the network throughput.
  • Ziyao Wang will document the mechanism and usage of nuttcp as well as which devices are compatible with nuttcp.
  • Ziyao Wang will measure the RTT and throughput several (>=5) times under different attack frequencies to find out the relationship between DoS attack frequency and network throughput.
  • Ziyao Wang will use pfsense/opnsense open-source firewall to replace Cisco ASAv firewall and bypass the network throughput restriction.
  • Ziyao Wang will use slowhttptest/slowloris to attack the Scada-LTS webUI and use SDN countermeasure to defend it.
  • Ziyao Wang will record a video demonstrating this countermeasure.

Discussion and proposals

Special Notes