DOI QR코드

DOI QR Code

A Study on The Security Vulnerability Analysis of Open an Automatic Demand Response System

개방형 자동 수요 반응 시스템 보안 취약성 분석에 관한 연구

  • Received : 2016.03.28
  • Accepted : 2016.05.20
  • Published : 2016.05.28

Abstract

Technology to optimize and utilize the use and supply of the electric power between consumer and supplier has been on the rise among the smart grid power market network in electric power demand management based on the Internet. Open Automated Demand Response system protocol, which can deliver Demand Response needed in electric power demand management to electricity supplier, system supplier and even the user is openADR 2.0b. This paper used the most credible, cosmopolitanly proliferated EPRI open source and analysed the variety of security vulnerability that developed VEN and VTN system may have. Using the simulator for attacking openADR protocol, the VEN/VTN system that has been implemented as EPRI open source was conducted to attack in a variety of ways. As a result of the analysis, we were able to get the results that the VEN/VTN system has security vulnerabilities to the parameter tampering attacks and service flow falsification attack. In conclusion, if you want to implement the openADR2.0b protocol system in the open or two-way communication environment smart grid network, considering a variety of security vulnerability should be sure to seek security technology and services.

인터넷 기반 전력 수요 관리 망에서 소비자와 공급자간 전기에너지 공급과 사용을 최적화, 효율화하기 위한 기술은 스마트 그리드 망에서 핵심 요소 기술로 대두되고 있다. 현재 전력 수요 관리 망에서 수요 반응 신호를 전기에너지 공급자와 시스템 제공자 및 사용자까지 전달하는 개방형 자동수요반응 표준 프로토콜은 openADR 2.0b가 사용되고 있다. 본 논문은 가장 신뢰성 있고 전 세계적으로 확산되어 있는 EPRI 오픈 소스를 사용하여 개발한 VEN, VTN 시스템의 다양한 공격 취약성에 대한 분석을 목적으로 하고 있다. 공격용 시뮬레이터를 이용하여 EPRI 오픈 소스로 구현한 VEN, VTN 시스템을 다양한 방법으로 공격하여 분석을 수행하였고 분석 결과 VEN, VTN 시스템이 파라미터 변조 공격, 서비스 플로우 변조 공격에 대한 보안 취약성이 존재한다는 결과를 얻을 수 있었다. 개방형, 양방향 통신 환경의 스마트 그리드 망에서 openADR 2.0b 프로토콜을 구현할 때는 다양한 보안 취약성을 고려한 프로토콜에 특화된 보안 기술이 반드시 모색되어야 한다는 결론을 얻을 수 있었다.

Keywords

References

  1. SmartGrid Website, http://www.smartgrid.org.
  2. Hyun-Jae Kim, Sung-Han Jo, "A Study on Consumer Protections for the Introduction of Smart Grid", The Journal of Digital Policy & Management, 2011.
  3. Ji-Hyun Kim, Suk-Jun Lee, Ki-Yoon Kim, Suk-Jae Jeong, "Evaluation and Facilitation of the Korean Smart Grid Market", The Journal of Digital Policy & Management, 2013.
  4. Hyun-Jae Kim, Chan-Kook Park, "A Study on the Evaluation Criteria for the Performance of Smart Grid Pilot Projects", The Journal of Digital Policy & Management, 2012.
  5. Sung-Yong Lee, Snag-Soo Yeo, "Efficient Secret Sharing Data Management Scheme for Privacy Protection in Smart Grid Environment", The Journal of Digital Policy & Management, 2013.
  6. Si-Jung Kim, Do-Eun Cho, "A Study on Secure Home Network in Envuronment Smart Grid", The Journal of Digital Policy & Management, 2012.
  7. Bo-Seon Kang, Keun-Ho Lee, "A Scheme on Energy Efficiency Through the Convergence of Micro-grid and Small Hydro Energy", Journal of the Korea Convergence Society, Vol. 6, No. 1, pp. 29-34, 2015. https://doi.org/10.15207/JKCS.2015.6.1.029
  8. Keun-Ho Lee, "Analysis of Threats Factor in IT Convergence Security", Journal of the Korea Convergence Society, Vol. 1, No. 1, pp. 49-55, 2010.
  9. NIST Cyber Security WG, "smart Grid Cyber Security Strategy and Requirements", 2010
  10. Jae Jung Park, "DR(Demand Reponse) Technology for Smart Grid", KERI, 2013.
  11. PIER, "Open Automated Demand Response Communications Specification(Ver. 1.0), 2009.
  12. W. M. Taqqali and N. Abdulaziz, "Smart Grid and demand response technology," EnergyCon 2010 IEEE International, 2010.
  13. Jae Jung Park, DR(Demand Reponse) Technologyfor Smart Grid, KERI, 2013.
  14. openADR Alliance Website, http://www.openadr.org
  15. openADR 2.0 Profile Specification A Profile, openADR Alliance, 2011
  16. Jimyung Kang, Implementation of openADR 2.0a Profile for Demand Response in Smart Grid, KERI, 2013.
  17. openADR 2.0 Profile Specification B Profile, openADR Alliance, 2013.07
  18. Certified EPRI Open Source openADR 2.0b VEN & VTN Website, http://www.openadr.org
  19. openADR Open Source Toolkit: Developing Open Source Software for the Smart Grid, Charles McParland, IEEE Power and Energy Society General Meeting, 2011.
  20. David Heyerman "The smart Grid Frontier:Wide Open" http://tinycomb.com/2009/05/03 May 3, 2009