Abstract

Synchrophasor technology is used for real-time control and monitoring in modern power systems. IEEE C37.118 communication framework is most widely used by synchrophasor devices such as Phasor Measurement Units (PMUs) and Phasor Data Concentrators (PDCs). The size, format and structure of IEEE C37.118 payloads vary significantly from one PMU/PDC to the other which make traditional signature based IDS tools (i.e., SNORT, Suricata, etc) inefficient for synchrophasor-based systems. Thus, this paper presents the design of a comprehensive model-based Synchrophasor Specific Intrusion Detection System (SS-IDS) and analyzes its features and capabilities. The proposed SS-IDS is implemented as a light-weight efficient multi-threaded tool using optimized PCAP filters. The defined model-based rules enable it to detect known as well as unknown attacks (including unintentional misuse). The functionalities of the proposed SS-IDS are validated in the lab using a testbed consisting of real PMU data and NRL CORE based emulated network.

Full Text
Paper version not known

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call

Disclaimer: All third-party content on this website/platform is and will remain the property of their respective owners and is provided on "as is" basis without any warranties, express or implied. Use of third-party content does not indicate any affiliation, sponsorship with or endorsement by them. Any references to third-party content is to identify the corresponding services and shall be considered fair use under The CopyrightLaw.