Survey On Analysis Of Security Threats In DNP3 Protocol

Bhagyashri Sangewar, Dr. A. R. Buchade



DNP3 protocol, IACS, SCADA, Secure authentication, SAV2, SAV5, Security.



Industrial Automation and Control Systems (IACS) required facilitating the safer means of information communication between smart devices such as various Intelligent Electronic Devices (IEDs) or between IEDs and host systems. Security in Industrial Automation and Control Systems (IACS) is critical task as many of these devices are present in remote location and controlling critical plant processes. These IEDs and hosts use various protocols such as Modbus, DNP3, IEC 60870, IEC 61850 etc. Distributed network protocol version 3(DNP3) is non-proprietary protocol used in Supervisory Control and Data Acquisition (SCADA) system. SCADA is the key foundation for many critical industries. DNP3 protocol is de facto standard for water, sewage, and oil and gas industry. DNP3 is used in industrial automation but initially DNP3 was not covering security aspects. Due to the need for secure communication later secure authentication is added to the protocol. DNP3-SA is the authentication mechanism which ensures the integrity and confidentiality between communicating devices. This paper presents the survey on DNP3 protocol and what are various attacks possible in basic DNP3 without secure authentication and with secure authentication mainly on SAV2 (Secure Authentication Version 2) and SAV5 (Secure Authentication Version 5).



