PUBLICLY AVAILABLE SPECIFICATION PRE-STANDARD
|
|
|
- Eric West
- 10 years ago
- Views:
Transcription
1 IEC/PAS PUBLICLY AVAILABLE SPECIFICATION PRE-STANDARD Edition Security for industrial process measurement and control Network and system security INTERNATIONAL ELECTROTECHNICAL COMMISSION PRICE CODE XA ICS ; ISBN X
2 PAS IEC:2008(E) 2 CONTENTS FOREWORD...3 INTRODUCTION Scope Normative references Terms, definitions, symbols, abbreviated terms and conventions Terms and definitions Symbols and abbreviated terms Introduction and compliance Principles and reference models General Threat-risk model Security life cycle Policy Generic reference configurations Protection models ICS security policy Overview ICS security policy Principles and assumptions ICS security policy Principles ICS security policy Assumptions and exclusions ICS security policy Organization and management ICS security policy Measures Availability management Integrity management Logical access management Physical access management Partition management External access management...47 Annex A Projected new edition of IEC Bibliography...53 Figure 1 Threat-risk relationship...14 Figure 2 Security life cycle...16 Figure 3 Policy levels...18 Figure 4 Industrial control system (ICS)...21 Figure 5 GPH reference configuration: Generic ICS host with external devices...22 Figure 6 Device protection: Hardening and access management...23 Figure 7 Defense-in-depth through partitioning...25 Figure 8 Example: ICS partitioning...26 Figure 9 Generic external connectivity...27
3 3 PAS IEC:2008(E) INTERNATIONAL ELECTROTECHNICAL COMMISSION SECURITY FOR INDUSTRIAL PROCESS MEASUREMENT AND CONTROL NETWORK AND SYSTEM SECURITY FOREWORD 1) The International Electrotechnical Commission (IEC) is a worldwide organization for standardization comprising all national electrotechnical committees (IEC National Committees). The object of IEC is to promote international co-operation on all questions concerning standardization in the electrical and electronic fields. To this end and in addition to other activities, IEC publishes International Standards, Technical Specifications, Technical Reports, Publicly Available Specifications (PAS) and Guides (hereafter referred to as IEC Publication(s) ). Their preparation is entrusted to technical committees; any IEC National Committee interested in the subject dealt with may participate in this preparatory work. International, governmental and nongovernmental organizations liaising with the IEC also participate in this preparation. IEC collaborates closely with the International Organization for Standardization (ISO) in accordance with conditions determined by agreement between the two organizations. 2) The formal decisions or agreements of IEC on technical matters express, as nearly as possible, an international consensus of opinion on the relevant subjects since each technical committee has representation from all interested IEC National Committees. 3) IEC Publications have the form of recommendations for international use and are accepted by IEC National Committees in that sense. While all reasonable efforts are made to ensure that the technical content of IEC Publications is accurate, IEC cannot be held responsible for the way in which they are used or for any misinterpretation by any end user. 4) In order to promote international uniformity, IEC National Committees undertake to apply IEC Publications transparently to the maximum extent possible in their national and regional publications. Any divergence between any IEC Publication and the corresponding national or regional publication shall be clearly indicated in the latter. 5) IEC provides no marking procedure to indicate its approval and cannot be rendered responsible for any equipment declared to be in conformity with an IEC Publication. 6) All users should ensure that they have the latest edition of this publication. 7) No liability shall attach to IEC or its directors, employees, servants or agents including individual experts and members of its technical committees and IEC National Committees for any personal injury, property damage or other damage of any nature whatsoever, whether direct or indirect, or for costs (including legal fees) and expenses arising out of the publication, use of, or reliance upon, this IEC Publication or any other IEC Publications. 8) Attention is drawn to the Normative references cited in this publication. Use of the referenced publications is indispensable for the correct application of this publication. 9) Attention is drawn to the possibility that some of the elements of this IEC Publication may be the subject of patent rights. IEC shall not be held responsible for identifying any or all such patent rights. A PAS is a technical specification not fulfilling the requirements for a standard but made available to the public. IEC-PAS has been processed by IEC technical committee 65: Industrial-process measurement, control and automation. The text of this PAS is based on the following document: Draft PAS 65/402/NP This PAS was approved for publication by the P-members of the committee concerned as indicated in the following document Report on voting 65/412/RVN Following publication of this PAS, which is a pre-standard publication, the technical committee or subcommittee concerned will transform it into an International Standard. This publication seeks the status of a basic security publication according to IEC Guide 104. This PAS shall remain valid for an initial maximum period of three years starting from The validity may be extended for a single three-year period, following which it shall be revised to become another type of normative document or shall be withdrawn.
4 PAS IEC:2008(E) 4 INTRODUCTION The increasing degree of public networking of formerly isolated automation systems increases the exposure of such systems to attack. Standard IT security protection mechanisms have protection goals and strategies that may be inappropriate for automation systems. This PAS addresses the topic of securing access to and within industrial systems while assuring timely response which may be critical to plant operation. For safety applications and applications in the pharmaceutical or other highly specialized industries, additional standards, guidelines, definitions and stipulations may apply, for example, IEC 61508, GAMP (ISPE), for GMP Compliance 21 CFR (FDA) and the Standard Operating Procedure of the European Medicines Agency (SOP/INSP/2003).
5 5 PAS IEC:2008(E) SECURITY FOR INDUSTRIAL PROCESS MEASUREMENT AND CONTROL NETWORK AND SYSTEM SECURITY 1 Scope This PAS establishes a framework for securing information and communication technology aspects of industrial process measurement and control systems including its networks and devices on those networks, during the operational phase of the plant s life cycle. This PAS provides guidance on a plant s operational security requirements and is primarily intended for automation system owners/operators (responsible for ICS operation) Furthermore, the operational requirements of this PAS may interest ICS stakeholders such as: a) automation system designers; b) manufacturers (vendors) of devices, subsystems, and systems; c) integrators of subsystems and systems. The PAS allows for the following concerns: graceful migration/evolution of existing systems; meeting security objectives with existing COTS technologies and products; assurance of reliability/availability of the secured communications services; applicability to systems of any size and risk (scalability); coexistence of safety, legal and regulatory and automation functionality requirements with security requirements. NOTE 1 Plants and systems may contain safety critical components and devices. Any safety-related security components may be subject to certification based on IEC and according to the SILs therein. This PAS does not guarantee that its specifications are all or in part appropriate or sufficient for the security of such safety critical components and devices. NOTE 2 This PAS does not include requirements for security assurance evaluation and testing. NOTE 3 The measures provided by this PAS are rather process-based and general in nature than technically specific or prescriptive in terms of technical countermeasures and configurations. NOTE 4 The procedures of this PAS are written with the plant owner/operator's mind set. NOTE 5 This PAS does not cover the concept, design and implementation live cycle processes, i.e. requirements on control equipment manufacturer's future product development cycle. NOTE 6 This PAS does not cover the integration of components and subsystems into a system. NOTE 7 This PAS does not cover procurement for integration into an existing system, i.e. procurement requirements for owner/operators of a plant. NOTE 8 This PAS will be extended into a 3-part International Standard to cover most of the restrictions expressed in the previous notes; for the planned scope of the extended standards, refer to Annex A. 2 Normative references The following referenced documents are indispensable for the application of this document. For dated references, only the edition cited applies. For undated references, the latest edition of the referenced document (including any amendments) applies. ISO/IEC (all parts), Information technology Security techniques Evaluation criteria for IT security ISO/IEC 27002:2005, Information technology Security techniques Code of practice for IT security management
6 PAS IEC:2008(E) 6 ISO/IEC Guide 73:2002, Risk management Vocabulary Guidelines for use in standards 3 Terms, definitions, symbols, abbreviated terms and conventions 3.1 Terms and definitions For the purposes of this document, the following terms and definitions apply access control prevention of unauthorized use of a restricted resource, including its use in an unauthorized manner [ISO/IEC :2006, modified] adversary entity that attacks, or is a threat to, a system [RFC 2828] alert instant indication that an information system and network may be under attack, or in danger because of accident, failure or people error [ISO/IEC :2006] asset anything that has value to the organization [ISO/IEC :2004] assurance performance of appropriate activities or processes to instil confidence that a deliverable meets its security objectives [ISO/IEC/TR ] attack attempts to destroy, expose, alter, or disable an information system and/or information within it or otherwise reach the security policy [ISO/IEC 18043} attack surface set of system resources exposed directly and indirectly to potential attack audit formal inquiry, formal examination, or verification of facts against expectations, for compliance and conformity [ISO/IEC ] authenticate, authentication provision of assurance of the claimed identity of an entity [ISO/IEC 19792]
TECHNICAL SPECIFICATION
TECHNICAL SPECIFICATION IEC/TS 62351-7 Edition 1.0 2010-07 colour inside Power systems management and associated information exchange Data and communications security Part 7: Network and system management
INTERNATIONAL STANDARD
ISO/IEC 14543-4-2 INTERNATIONAL STANDARD Edition 1.0 2008-05 Information technology Home electronic system (HES) architecture Part 4-2: Communication layers Transport, network and general parts of data
TECHNICAL SPECIFICATION
TECHNICAL SPECIFICATION IEC/TS 62443-1-1 Edition 1.0 2009-07 colour inside Industrial communication networks Network and system security Part 1-1: Terminology, concepts and models INTERNATIONAL ELECTROTECHNICAL
TECHNICAL REPORT IEC TR 62443-2-3. Security for industrial automation and control systems Part 2-3: Patch management in the IACS environment
TECHNICAL REPORT IEC TR 62443-2-3 Edition 1.0 2015-06 colour inside Security for industrial automation and control systems Part 2-3: Patch management in the IACS environment INTERNATIONAL ELECTROTECHNICAL
CONSOLIDATED VERSION IEC 62304. Medical device software Software life cycle processes. colour inside. Edition 1.1 2015-06
IEC 62304 CONSOLIDATED VERSION Edition 1.1 2015-06 colour inside Medical device software life cycle processes INTERNATIONAL ELECTROTECHNICAL COMMISSION ICS 11.040 ISBN 978-2-8322-2765-7 Warning! Make sure
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 62616 Edition 1.0 2010-02 Maritime navigation and radiocommunication equipment and systems Bridge navigational watch alarm system (BNWAS) INTERNATIONAL ELECTROTECHNICAL COMMISSION
This is a preview - click here to buy the full publication
TECHNICAL REPORT IEC/TR 62443-3-1 Edition 1.0 2009-07 colour inside Industrial communication networks Network and system security Part 3 1: Security technologies for industrial automation and control systems
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 62885-3 Edition 1.0 2014-12 colour inside Surface cleaning appliances Part 3: Wet carpet cleaning appliances Methods for measuring the performance INTERNATIONAL ELECTROTECHNICAL
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61968-8 Edition 1.0 2015-05 colour inside Application integration at electric utilities System interfaces for distribution management Part 8: Interfaces for customer operations
TECHNICAL SPECIFICATION
TECHNICAL SPECIFICATION IEC TS 61400-14 First edition 2005-03 Wind turbines Part 14: Declaration of apparent sound power level and tonality values IEC 2005 Copyright - all rights reserved No part of this
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60300-3-3 Second edition 2004-07 Dependability management Part 3-3: Application guide Life cycle costing IEC 2004 Copyright - all rights reserved No part of this publication
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60812 Second edition 2006-01 Analysis techniques for system reliability Procedure for failure mode and effects analysis (FMEA) This English-language version is derived from the
This is a preview - click here to buy the full publication
IEC/TR 80001-2-3 TECHNICAL REPORT Edition 1.0 2012-07 colour inside Application of risk management for IT-networks incorporating medical devices Part 2-3: Guidance for wireless networks INTERNATIONAL ELECTROTECHNICAL
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61190-1-3 Second edition 2007-04 Attachment materials for electronic assembly Part 1-3: Requirements for electronic grade solder alloys and fluxed and non-fluxed solid solders
INTERNATIONAL STANDARD
IEC 61892-7 INTERNATIONAL STANDARD Edition 2.0 2007-11 Mobile and fixed offshore units Electrical installations Part 7: Hazardous areas INTERNATIONAL ELECTROTECHNICAL COMMISSION PRICE CODE XA ICS 47.020.60
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61215 Second edition 2005-04 Crystalline silicon terrestrial photovoltaic (PV) modules Design qualification and type approval This English-language version is derived from the
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61131-1 Second edition 2003-05 Programmable controllers Part 1: General information Automates programmables Partie 1: Informations générales IEC 2003 Copyright - all rights reserved
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61400-2 Second edition 2006-03 Wind turbines Part 2: Design requirements for small wind turbines This English-language version is derived from the original bilingual publication
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61892-1 First edition 2001-12 Mobile and fixed offshore units Electrical installations Part 1: General requirements and conditions Unités fixes et mobiles en mer Installations
NEMA ICS 61131-1-2005 (R2013) Programmable Controllers Part 1: General Information
NEMA ICS 61131-1-2005 (R2013) IEC Publication 61131-1 Programmable Controllers Part 1: General Information Published by: National Electrical Manufacturers Association 1300 North 17 th Street, Suite 900
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60076-11 First edition 2004-05 Power transformers Part 11: Dry-type transformers This English-language version is derived from the original bilingual publication by leaving out
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61587-2 First edition 2000-12 Mechanical structures for electronic equipment Tests for IEC 60917 and IEC 60297 Part 2: Seismic tests for cabinets and racks Structures mécaniques
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60502-1 Second edition 2004-04 Power cables with extruded insulation and their accessories for rated voltages from 1 kv (U m = 1,2 kv) up to 30 kv (U m = 36 kv) Part 1: Cables
FINAL DRAFT INTERNATIONAL STANDARD
PROJECT IEC 61975 Edition 1.0 2010-05 FINAL DRAFT INTERNATIONAL STANDARD High-voltage direct current (HVDC) installations System tests INTERNATIONAL ELECTROTECHNICAL COMMISSION ICS 29.130.01; 31.080.01
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60870-5-103 First edition 1997-12 Telecontrol equipment and systems Part 5-103: Transmission protocols Companion standard for the informative interface of protection equipment
This document is a preview generated by EVS
TECHNICAL REPORT ISO/IEC TR 20000-9 First edition 2015-02-15 Information technology Service management Part 9: Guidance on the application of ISO/IEC 20000-1 to cloud services Technologies de l information
NEMA ICS 61131-4-2005 (R2013) Programmable Controllers Part 4: User Guidelines
NEMA ICS 61131-4-2005 (R2013) IEC Publication 61131-4 Programmable Controllers Part 4: User Guidelines Published by: National Electrical Manufacturers Association 1300 North 17 th Street, Suite 900 Rosslyn,
This document is a preview generated by EVS
INTERNATIONAL STANDARD ISO/IEC 27033-1 Second edition 2015-08-15 Information technology Security techniques Network security Part 1: Overview and concepts Technologies de l information Techniques de sécurité
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60297-5-101 First edition 2001-01 Mechanical structures for electronic equipment Dimensions of mechanical structures of the 482,6 mm (19 in) series Part 5-101: Subracks and associated
FINAL DRAFT INTERNATIONAL STANDARD
IEC 62047-15 Edition 1.0 2014-12 FINAL DRAFT INTERNATIONAL STANDARD colour inside Semiconductor devices Micro-electromechanical devices Part 15: Test method of bonding strength between PDMS and glass INTERNATIONAL
Systems and software engineering Lifecycle profiles for Very Small Entities (VSEs) Part 5-6-2:
TECHNICAL REPORT ISO/IEC TR 29110-5-6-2 First edition 2014-08-15 Systems and software engineering Lifecycle profiles for Very Small Entities (VSEs) Part 5-6-2: Systems engineering Management and engineering
DRAFT ÖNORM ISO/IEC 27005
DRAFT ÖNORM ISO/IEC 27005 Edition: 2013-07-01 Information technology Security techniques Information security risk management (ISO/IEC 27005:2011) Informationstechnologie Sicherheitstechnik Informationssicherheits-
ELECTROTECHNIQUE IEC INTERNATIONALE 61508-3 INTERNATIONAL ELECTROTECHNICAL
61508-3 ª IEC: 1997 1 Version 12.0 05/12/97 COMMISSION CEI ELECTROTECHNIQUE IEC INTERNATIONALE 61508-3 INTERNATIONAL ELECTROTECHNICAL COMMISSION Functional safety of electrical/electronic/ programmable
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 62056-21 First edition 2002-05 Electricity metering Data exchange for meter reading, tariff and load control Part 21: Direct local data exchange This English-language version
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 62305-3 Edition 2.0 2010-12 colour inside Protection against lightning Part 3: Physical damage to structures and life hazard INTERNATIONAL ELECTROTECHNICAL COMMISSION PRICE CODE
ANSI/IEC 60529-2004. Degrees of Protection Provided by Enclosures (IP Code) (identical national adoption)
ANSI Approval Date November 3, 2004 ANSI/IEC 60529-2004 Degrees of Protection Provided by Enclosures (IP Code) (identical national adoption) Published by: National Electrical Manufacturers Association
This is a preview - click here to buy the full publication TECHNICAL REPORT INFORMATION TECHNOLOGY HOME ELECTRONIC SYSTEM (HES) APPLICATION MODEL
TECHNICAL REPORT ISO/IEC TR 15067-4 First edition 2001-06 INFORMATION TECHNOLOGY HOME ELECTRONIC SYSTEM (HES) APPLICATION MODEL Part 4: Security system for HES ISO/IEC 2001 All rights reserved. Unless
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60227-1 Edition 2.2 1998-03 Edition 2:1993 consolidated with amendments 1:1995 and 2:1997 Polyvinyl chloride insulated cables of rated voltages up to and including 450/750 V
This document is a preview generated by EVS
INTERNATIONAL STANDARD ISO 10781 Second edition 2015-08-01 Health Informatics HL7 Electronic Health Records-System Functional Model, Release 2 (EHR FM) Informatique de santé Modèle fonctionnel d un système
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61156-5 First edition 2002-03 Multicore and symmetrical pair/quad cables for digital communications Part 5: Symmetrical pair/quad cables with transmission characteristics up
This document is a preview generated by EVS
TECHNICAL REPORT ISO/TR 17522 First edition 2015-08-01 Health informatics Provisions for health applications on mobile/smart devices Informatique de santé Provisions pour les applications de santé sur
This document is a preview generated by EVS
INTERNATIONAL STANDARD ISO 18852 Third edition 2015-06-01 Rubber compounding ingredients Determination of multipoint nitrogen surface area (NSA) and statistical thickness surface area (STSA) Ingrédients
Conformity assessment Requirements for bodies providing audit and certification of management systems
BRITISH STANDARD Conformity assessment Requirements for bodies providing audit and certification of management systems The European Standard has the status of a British Standard ICS 03.120.20 BS EN ISO/IEC
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 61400-1 Second edition 1999-02 Wind turbine generator systems Part 1: Safety requirements Aérogénérateurs Partie 1: Spécifications de sécurité IEC 1999 Copyright - all rights
Information and documentation The Dublin Core metadata element set
ISO TC 46/SC 4 N515 Date: 2003-02-26 ISO 15836:2003(E) ISO TC 46/SC 4 Secretariat: ANSI Information and documentation The Dublin Core metadata element set Information et documentation Éléments fondamentaux
This document is a preview generated by EVS
INTERNATIONAL STANDARD ISO 11133 First edition 2014-05-15 Microbiology of food, animal feed and water Preparation, production, storage and performance testing of culture media Microbiologie des aliments,
INFORMATION AND DOCUMENTATION RECORDS MANAGEMENT PART 1: GENERAL IRISH STANDARD I.S. ISO 15489-1:2004. Price Code
IRISH STANDARD I.S. ISO 15489-1:2004 ICS 01.140.20 INFORMATION AND DOCUMENTATION RECORDS MANAGEMENT PART 1: GENERAL National Standards Authority of Ireland Glasnevin, Dublin 9 Ireland Tel: +353 1 807 3800
EESTI STANDARD EVS-ISO/IEC 18028-2:2007
EESTI STANDARD EVS-ISO/IEC 18028-2:2007 INFOTEHNOLOOGIA Turbemeetodid Infotehnoloogiavõrkude turve Osa 2: Võrguturbe arhitektuur Information technology Security techniques IT network security Part 2: Network
Informationsteknologi Serviceledelse Del 4: Procesreferencemodel
DS-information DS/ISO/IEC TR 20000-4 1. udgave 2010-12-14 Informationsteknologi Serviceledelse Del 4: Procesreferencemodel Information technology Service management Part 4: Process reference model DS/ISO/IEC
INTERNATIONAL STANDARD
INTERNATIONAL STANDARD IEC 60076-1 Edition 2.1 2000-04 Edition 2:1993 consolidated with amendment 1:1999 Power transformers Part 1: General This English-language version is derived from the original bilingual
GUIDE 62. General requirements for bodies operating assessment and certification/registration of quality systems
GUIDE 62 General requirements for bodies operating assessment and certification/registration of quality systems First edition 1996 ISO/IEC GUIDE 62:1996(E) Contents Pag e Section 1: General 1 1.1 Scope
