DID YOU KNOW? DTIC has over 3.5 million final reports on DoD funded research, development, test, and evaluation activities available to our registered users. Click
HERE to register or log in.
Accession Number:
ADA620212
Title:
Automatic Configuration of Programmable Logic Controller Emulators
Descriptive Note:
Master's thesis
Corporate Author:
AIR FORCE INSTITUTE OF TECHNOLOGY WRIGHT-PATTERSON AFB OH GRADUATE SCHOOL OF ENGINEERING AND MANAGEMENT
Report Date:
2015-03-01
Pagination or Media Count:
199.0
Abstract:
This research presents a scalable solution to automatically configure programmable logic controller emulators using network traces. The accuracy, flexibility, and efficiency of the proposed framework, ScriptGenE, is tested in three fully automated experiments. Results from the experiments show that ScriptGenE can accurately emulate a PLCs webserver with only one input trace. Additionally, only five input EtherNetIP traces are required to create an emulator that is identified by RSLinx as a PLC with modules. A minimum of two input traces are required to create a Siemens PLC emulator that can be browsed by STEP7. Additionally, the emulators produce traffic that differs in variability from the reference capture group by less than 0.018 with 95 confidence. Overall, this research provides numerous contributions including the first successful automatically configured application layer honeypot for EtherNetIP. ScriptGenE requires less input traces than previous works. Additionally, a novel backtracking algorithm is implemented that handles unknown transitions and allows for looping in ICS polling sessions.
Distribution Statement:
APPROVED FOR PUBLIC RELEASE