Secure layer 2 tunneling over IP for GOOSE-based logic selectivity

Peyman Jafary, Ontrei Raipala, Sami Repo, Mikko Salmenperä, Jari Seppälä, Hannu Koivisto, Seppo Horsmanheimo, Heli Kokkoniemi-Tarkkanen, Lotta Tuomimäki, Amelia Alvarez, Francisco Ramos, Alessio Dede, Davide Della Giustina

    Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

    3 Citations (Scopus)

    Abstract

    Logic Selectivity immensely reduces both number of outages and their duration in the distribution network. IEC 61850 can be applied for standard implementing of Logic Selectivity in which Generic Object Oriented Substation Events (GOOSE) messages should be exchanged between intelligent field devices over the Internet. However, information security and automation requirements must be noted in order to ensure secure and accurate operation of Logic Selectivity. This paper describes lab setups for analyzing functional and non-functional characteristics of GOOSE-based Logic Selectivity. Layer 2 tunneling over IPsec is proposed for GOOSE communication over 4G Internet. Data integrity and confidentiality are achieved via IPsec in Transport mode. Furthermore, communication impact on Logic Selectivity performance are investigated by the software tool measuring communication network quality.
    Original languageEnglish
    Title of host publication2017 IEEE International Conference on Industrial Technology, ICIT 2017
    PublisherInstitute of Electrical and Electronic Engineers IEEE
    Pages609-614
    Number of pages6
    ISBN (Electronic)978-1-5090-5320-9
    ISBN (Print)978-1-5090-5321-6
    DOIs
    Publication statusPublished - 26 Apr 2017
    MoE publication typeA4 Article in a conference publication
    EventIEEE International Conference on Industrial Technology, ICIT 2017 - Toronto, Canada
    Duration: 23 Mar 201725 Mar 2017

    Conference

    ConferenceIEEE International Conference on Industrial Technology, ICIT 2017
    Abbreviated titleICIT 2017
    CountryCanada
    CityToronto
    Period23/03/1725/03/17

    Fingerprint

    Internet
    Communication
    Security of data
    Electric power distribution
    Outages
    Telecommunication networks
    Automation

    Keywords

    • distribution automation urity
    • IEC61850
    • layer 2 tunneling over IPsec
    • logic selectivity

    Cite this

    Jafary, P., Raipala, O., Repo, S., Salmenperä, M., Seppälä, J., Koivisto, H., ... Della Giustina, D. (2017). Secure layer 2 tunneling over IP for GOOSE-based logic selectivity. In 2017 IEEE International Conference on Industrial Technology, ICIT 2017 (pp. 609-614). [7915428] Institute of Electrical and Electronic Engineers IEEE. https://doi.org/10.1109/ICIT.2017.7915428
    Jafary, Peyman ; Raipala, Ontrei ; Repo, Sami ; Salmenperä, Mikko ; Seppälä, Jari ; Koivisto, Hannu ; Horsmanheimo, Seppo ; Kokkoniemi-Tarkkanen, Heli ; Tuomimäki, Lotta ; Alvarez, Amelia ; Ramos, Francisco ; Dede, Alessio ; Della Giustina, Davide. / Secure layer 2 tunneling over IP for GOOSE-based logic selectivity. 2017 IEEE International Conference on Industrial Technology, ICIT 2017. Institute of Electrical and Electronic Engineers IEEE, 2017. pp. 609-614
    @inproceedings{adaea023ccf84a9d89601c9c37c55654,
    title = "Secure layer 2 tunneling over IP for GOOSE-based logic selectivity",
    abstract = "Logic Selectivity immensely reduces both number of outages and their duration in the distribution network. IEC 61850 can be applied for standard implementing of Logic Selectivity in which Generic Object Oriented Substation Events (GOOSE) messages should be exchanged between intelligent field devices over the Internet. However, information security and automation requirements must be noted in order to ensure secure and accurate operation of Logic Selectivity. This paper describes lab setups for analyzing functional and non-functional characteristics of GOOSE-based Logic Selectivity. Layer 2 tunneling over IPsec is proposed for GOOSE communication over 4G Internet. Data integrity and confidentiality are achieved via IPsec in Transport mode. Furthermore, communication impact on Logic Selectivity performance are investigated by the software tool measuring communication network quality.",
    keywords = "distribution automation urity, IEC61850, layer 2 tunneling over IPsec, logic selectivity",
    author = "Peyman Jafary and Ontrei Raipala and Sami Repo and Mikko Salmenper{\"a} and Jari Sepp{\"a}l{\"a} and Hannu Koivisto and Seppo Horsmanheimo and Heli Kokkoniemi-Tarkkanen and Lotta Tuomim{\"a}ki and Amelia Alvarez and Francisco Ramos and Alessio Dede and {Della Giustina}, Davide",
    year = "2017",
    month = "4",
    day = "26",
    doi = "10.1109/ICIT.2017.7915428",
    language = "English",
    isbn = "978-1-5090-5321-6",
    pages = "609--614",
    booktitle = "2017 IEEE International Conference on Industrial Technology, ICIT 2017",
    publisher = "Institute of Electrical and Electronic Engineers IEEE",
    address = "United States",

    }

    Jafary, P, Raipala, O, Repo, S, Salmenperä, M, Seppälä, J, Koivisto, H, Horsmanheimo, S, Kokkoniemi-Tarkkanen, H, Tuomimäki, L, Alvarez, A, Ramos, F, Dede, A & Della Giustina, D 2017, Secure layer 2 tunneling over IP for GOOSE-based logic selectivity. in 2017 IEEE International Conference on Industrial Technology, ICIT 2017., 7915428, Institute of Electrical and Electronic Engineers IEEE, pp. 609-614, IEEE International Conference on Industrial Technology, ICIT 2017, Toronto, Canada, 23/03/17. https://doi.org/10.1109/ICIT.2017.7915428

    Secure layer 2 tunneling over IP for GOOSE-based logic selectivity. / Jafary, Peyman; Raipala, Ontrei; Repo, Sami; Salmenperä, Mikko; Seppälä, Jari; Koivisto, Hannu; Horsmanheimo, Seppo; Kokkoniemi-Tarkkanen, Heli; Tuomimäki, Lotta; Alvarez, Amelia; Ramos, Francisco; Dede, Alessio; Della Giustina, Davide.

    2017 IEEE International Conference on Industrial Technology, ICIT 2017. Institute of Electrical and Electronic Engineers IEEE, 2017. p. 609-614 7915428.

    Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

    TY - GEN

    T1 - Secure layer 2 tunneling over IP for GOOSE-based logic selectivity

    AU - Jafary, Peyman

    AU - Raipala, Ontrei

    AU - Repo, Sami

    AU - Salmenperä, Mikko

    AU - Seppälä, Jari

    AU - Koivisto, Hannu

    AU - Horsmanheimo, Seppo

    AU - Kokkoniemi-Tarkkanen, Heli

    AU - Tuomimäki, Lotta

    AU - Alvarez, Amelia

    AU - Ramos, Francisco

    AU - Dede, Alessio

    AU - Della Giustina, Davide

    PY - 2017/4/26

    Y1 - 2017/4/26

    N2 - Logic Selectivity immensely reduces both number of outages and their duration in the distribution network. IEC 61850 can be applied for standard implementing of Logic Selectivity in which Generic Object Oriented Substation Events (GOOSE) messages should be exchanged between intelligent field devices over the Internet. However, information security and automation requirements must be noted in order to ensure secure and accurate operation of Logic Selectivity. This paper describes lab setups for analyzing functional and non-functional characteristics of GOOSE-based Logic Selectivity. Layer 2 tunneling over IPsec is proposed for GOOSE communication over 4G Internet. Data integrity and confidentiality are achieved via IPsec in Transport mode. Furthermore, communication impact on Logic Selectivity performance are investigated by the software tool measuring communication network quality.

    AB - Logic Selectivity immensely reduces both number of outages and their duration in the distribution network. IEC 61850 can be applied for standard implementing of Logic Selectivity in which Generic Object Oriented Substation Events (GOOSE) messages should be exchanged between intelligent field devices over the Internet. However, information security and automation requirements must be noted in order to ensure secure and accurate operation of Logic Selectivity. This paper describes lab setups for analyzing functional and non-functional characteristics of GOOSE-based Logic Selectivity. Layer 2 tunneling over IPsec is proposed for GOOSE communication over 4G Internet. Data integrity and confidentiality are achieved via IPsec in Transport mode. Furthermore, communication impact on Logic Selectivity performance are investigated by the software tool measuring communication network quality.

    KW - distribution automation urity

    KW - IEC61850

    KW - layer 2 tunneling over IPsec

    KW - logic selectivity

    UR - http://www.scopus.com/inward/record.url?scp=85019609091&partnerID=8YFLogxK

    U2 - 10.1109/ICIT.2017.7915428

    DO - 10.1109/ICIT.2017.7915428

    M3 - Conference article in proceedings

    SN - 978-1-5090-5321-6

    SP - 609

    EP - 614

    BT - 2017 IEEE International Conference on Industrial Technology, ICIT 2017

    PB - Institute of Electrical and Electronic Engineers IEEE

    ER -

    Jafary P, Raipala O, Repo S, Salmenperä M, Seppälä J, Koivisto H et al. Secure layer 2 tunneling over IP for GOOSE-based logic selectivity. In 2017 IEEE International Conference on Industrial Technology, ICIT 2017. Institute of Electrical and Electronic Engineers IEEE. 2017. p. 609-614. 7915428 https://doi.org/10.1109/ICIT.2017.7915428