工業(yè)變電站運(yùn)維系統(tǒng)異常數(shù)據(jù)入侵檢測互信息實(shí)現(xiàn)
王子杰,潘嘯天 2024/10/3 8:25:50
國網(wǎng)江蘇省電力有限公司句容市供電分公司,江蘇句容 212400
摘要:工業(yè)變電站運(yùn)維系統(tǒng)在運(yùn)行的過程中經(jīng)常受到不同類型的數(shù)據(jù)侵入,嚴(yán)重影響到變電站的安全,進(jìn)而造成很大的經(jīng)濟(jì)損失。為了進(jìn)一步提高運(yùn)維系統(tǒng)的安全,設(shè)計(jì)了一種面向互信息技術(shù)的工業(yè)變電站運(yùn)維系統(tǒng)異常數(shù)據(jù)入侵檢測方法,并開展測試分析,證明了本文方法的準(zhǔn)確性。研究結(jié)果表明:相對于PCA算法,互信息(MI)算法獲得更高的特征提取精度,檢測率也明顯提升,降低了誤報率。當(dāng)數(shù)據(jù)量快速增加后,分布式模型表現(xiàn)出了更短的入侵檢測時間。。該研究對提高運(yùn)維系統(tǒng)異常數(shù)據(jù)入侵檢測穩(wěn)定性具有一定的實(shí)踐指導(dǎo)意義,但在小概率攻擊類型中該算法存在導(dǎo)致檢測率為零結(jié)果,期待后續(xù)進(jìn)一步的加強(qiáng)。
關(guān)鍵詞:工業(yè)變電站;運(yùn)維系統(tǒng);互信息法;入侵檢測
中圖分類號:TH17 文獻(xiàn)標(biāo)志碼: A
Implementation of mutual information of abnormal data intrusion detection in intelligent substation operation and maintenance system
Wang Zijie, Pan Xiaotian
Jurong Power Supply Branch of State Grid Jiangsu Electric Power Co., LTD., Jurong 212400, China
Abstract: The operation and maintenance system of industrial substation is often subjected to different types of data intrusion during operation, which seriously affects the safety of substation and causes great economic losses. In order to further improve the security of operation and maintenance system, a mutual information technology-oriented abnormal data intrusion detection method for industrial substation operation and maintenance system is designed and tested, and the accuracy of this method is proved. The results show that the mutual information (MI) algorithm achieves higher feature extraction accuracy, significantly improves detection rate and reduces false positive rate compared with PCA algorithm. When the amount of data increases rapidly, the distributed model shows a shorter intrusion detection time. This research has a certain practical guiding significance for improving the stability of abnormal data intrusion detection in operation and maintenance systems. However, in small-probability attack types, the detection rate of this algorithm is zero, and further strengthening is expected.
Key words: industrial substation; Operation and maintenance system; Mutual information method; Intrusion detection
0 引言
當(dāng)前,網(wǎng)絡(luò)應(yīng)用技術(shù)與數(shù)據(jù)傳輸技術(shù)都獲得了快速發(fā)展,人們逐漸進(jìn)入大數(shù)據(jù)時代,尤其是隨著工業(yè)變電站運(yùn)維系統(tǒng)的不斷(未完,下一頁)
附件下載:工業(yè)變電站運(yùn)維系統(tǒng)異常數(shù)據(jù)入侵檢測互信息實(shí)現(xiàn)
|