{"updated":"2025-01-20T01:19:04.171179+00:00","metadata":{"_oai":{"id":"oai:ipsj.ixsq.nii.ac.jp:00190169","sets":["6164:6165:6640:9508"]},"path":["9508"],"owner":"11","recid":"190169","title":["ホワイトリスト運用のための複数の制御機器情報に基づいた運転状態の推定"],"pubdate":{"attribute_name":"公開日","attribute_value":"2017-06-21"},"_buckets":{"deposit":"99ec1fac-0598-450b-8cf5-42ccb6021bb8"},"_deposit":{"id":"190169","pid":{"type":"depid","value":"190169","revision_id":0},"owners":[11],"status":"published","created_by":11},"item_title":"ホワイトリスト運用のための複数の制御機器情報に基づいた運転状態の推定","author_link":["434553","434551","434550","434552","434554","434555"],"item_titles":{"attribute_name":"タイトル","attribute_value_mlt":[{"subitem_title":"ホワイトリスト運用のための複数の制御機器情報に基づいた運転状態の推定"}]},"item_keyword":{"attribute_name":"キーワード","attribute_value_mlt":[{"subitem_subject":"ホワイトリスト,ネットワーク監視装置,攻撃検出,産業用制御システム","subitem_subject_scheme":"Other"}]},"item_type_id":"18","publish_date":"2017-06-21","item_language":{"attribute_name":"言語","attribute_value_mlt":[{"subitem_language":"jpn"}]},"item_18_text_3":{"attribute_name":"著者所属","attribute_value_mlt":[{"subitem_text_value":"電気通信大学"},{"subitem_text_value":"電気通信大学"},{"subitem_text_value":"電気通信大学"},{"subitem_text_value":"三菱電機"},{"subitem_text_value":"三菱電機"},{"subitem_text_value":"三菱電機"}]},"item_publisher":{"attribute_name":"出版者","attribute_value_mlt":[{"subitem_publisher":"情報処理学会","subitem_publisher_language":"ja"}]},"publish_status":"0","weko_shared_id":-1,"item_file_price":{"attribute_name":"Billing file","attribute_type":"file","attribute_value_mlt":[{"url":{"url":"https://ipsj.ixsq.nii.ac.jp/record/190169/files/IPSJ-DICOMO2017164.pdf","label":"IPSJ-DICOMO2017164.pdf"},"date":[{"dateType":"Available","dateValue":"2019-06-21"}],"format":"application/pdf","billing":["billing_file"],"filename":"IPSJ-DICOMO2017164.pdf","filesize":[{"value":"1.6 MB"}],"mimetype":"application/pdf","priceinfo":[{"tax":["include_tax"],"price":"660","billingrole":"5"},{"tax":["include_tax"],"price":"330","billingrole":"6"},{"tax":["include_tax"],"price":"0","billingrole":"34"},{"tax":["include_tax"],"price":"0","billingrole":"29"},{"tax":["include_tax"],"price":"0","billingrole":"35"},{"tax":["include_tax"],"price":"0","billingrole":"30"},{"tax":["include_tax"],"price":"0","billingrole":"37"},{"tax":["include_tax"],"price":"0","billingrole":"36"},{"tax":["include_tax"],"price":"0","billingrole":"43"},{"tax":["include_tax"],"price":"0","billingrole":"46"},{"tax":["include_tax"],"price":"0","billingrole":"47"},{"tax":["include_tax"],"price":"0","billingrole":"50"},{"tax":["include_tax"],"price":"0","billingrole":"44"}],"accessrole":"open_date","version_id":"c5b5bda2-459f-431b-9133-f11fac7ea012","displaytype":"detail","licensetype":"license_note","license_note":"Copyright (c) 2017 by the Information Processing Society of Japan"}]},"item_18_creator_5":{"attribute_name":"著者名","attribute_type":"creator","attribute_value_mlt":[{"creatorNames":[{"creatorName":"秦, 康祐"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"望月, 明典"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"澤田, 賢治"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"中井, 綱人"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"山口, 晃由"}],"nameIdentifiers":[{}]},{"creatorNames":[{"creatorName":"小林, 信博"}],"nameIdentifiers":[{}]}]},"item_resource_type":{"attribute_name":"資源タイプ","attribute_value_mlt":[{"resourceuri":"http://purl.org/coar/resource_type/c_5794","resourcetype":"conference paper"}]},"item_18_description_7":{"attribute_name":"論文抄録","attribute_value_mlt":[{"subitem_description":"産業用制御システム (ICS: Industrial Control System) をサイバー攻撃から防御する手法として,近年ホワイトリストを利用した異常検出手法が注目されている.先行研究ではICSの「停止中」や「立ち上げ」などの運転状態毎に異なる通信・動作パターンに着目し,運転状態に応じたホワイトリスト切り替え手法を提案した.加えて,複数機器で構成されるICSのうち1つの機器から取得した情報を利用してホワイトリストの切り替えに必要な運転状態情報を推定する手法について示した.これに対し本稿では,ネットワーク監視装置を利用して複数の機器から情報を取得することで運転状態を推定する.これにより,ホワイトリスト運用のための運転状態推定の信頼性向上を目指す.一方で運転状態推定に必要なトリガー信号はICSを構成する機器によって生成に要する時間が異なるため,本推定結果を利用するとホワイトリスト運用に支障をきたす可能性がある.そこで,本稿ではホワイトリストの切り替え手法も新たに提案する.また,提案手法の有用性を検証するために気液プラントシステムのシミュレーションモデルを用いて数値実験を行った.その結果,先行研究の手法と比較してより信頼性の高い運転状態の推定ができることを示した.","subitem_description_type":"Other"}]},"item_18_biblio_info_10":{"attribute_name":"書誌情報","attribute_value_mlt":[{"bibliographicPageEnd":"1151","bibliographic_titles":[{"bibliographic_title":"マルチメディア,分散協調とモバイルシンポジウム2017論文集"}],"bibliographicPageStart":"1145","bibliographicIssueDates":{"bibliographicIssueDate":"2017-06-21","bibliographicIssueDateType":"Issued"},"bibliographicVolumeNumber":"2017"}]},"relation_version_is_last":true,"weko_creator_id":"11"},"created":"2025-01-19T00:56:09.349864+00:00","id":190169,"links":{}}