Formally Verifying Flow Properties in Industrial Systems

Jannik Dreier, Maxime Puys, Marie-Laure Potet, Pascal Lafourcade, Jean-Louis Roch

Abstract

In contrast to other IT systems, industrial systems often do not only require classical properties like data confidentiality or authentication of the communication, but have special needs due to their interaction with physical world. For example, the reordering or deletion of some commands sent to a machine can cause the system to enter an unsafe state with potentially catastrophic effects. To prevent such attacks, the integrity of the message flow is necessary. We provide a formal definition of Flow Integrity. We apply our framework to two well-known industrial protocols: OPC-UA and MODBUS. Using TAMARIN, a cryptographic protocol verification tool, we confirm that most of the secure modes of these protocols ensure Flow Integrity given a resilient network. However, we also identify a weakness in a supposedly secure version of MODBUS.

Download


Paper Citation


in Harvard Style

Dreier J., Puys M., Potet M., Lafourcade P. and Roch J. (2017). Formally Verifying Flow Properties in Industrial Systems . In Proceedings of the 14th International Joint Conference on e-Business and Telecommunications - Volume 6: SECRYPT, (ICETE 2017) ISBN 978-989-758-259-2, pages 55-66. DOI: 10.5220/0006396500550066


in Bibtex Style

@conference{secrypt17,
author={Jannik Dreier and Maxime Puys and Marie-Laure Potet and Pascal Lafourcade and Jean-Louis Roch},
title={Formally Verifying Flow Properties in Industrial Systems},
booktitle={Proceedings of the 14th International Joint Conference on e-Business and Telecommunications - Volume 6: SECRYPT, (ICETE 2017)},
year={2017},
pages={55-66},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006396500550066},
isbn={978-989-758-259-2},
}


in EndNote Style

TY - CONF
JO - Proceedings of the 14th International Joint Conference on e-Business and Telecommunications - Volume 6: SECRYPT, (ICETE 2017)
TI - Formally Verifying Flow Properties in Industrial Systems
SN - 978-989-758-259-2
AU - Dreier J.
AU - Puys M.
AU - Potet M.
AU - Lafourcade P.
AU - Roch J.
PY - 2017
SP - 55
EP - 66
DO - 10.5220/0006396500550066