scada-risk
scada-risk
Project – Solar Plant
“”Go back to the slides especially the textbook and fill out each section as much as you can. Then go to the Internet, research your industry and fill out each section as much as you can. Finally, arrange and restructure the materials for easy to read and follow.””
This assignment is a part of your overall final project. Please make sure to incorporate this assignment to your final project; reference to Week 1 Final Project Template.
Profile ICS Devices
1. For each ICS device document:
a. Logical Ports
For example, 80, 443, etc.
http://www.digitalbond.com/tools/the-rack/control-…
b. Protocols Running
For example, SMTP, SNMP, DNP3, Modbus, Fieldbus, Ethernet, etc.
c. Physical Connection Types
For example, serial, RJ45, USB, parallel, etc.
http://www.digitalbond.com/tools/the-rack/control-…
d. Default Accounts:
Research the manufacturer’s information on the device. Look for default account information to login with.
Check “Default Password List†for an entry: http://www.defaultpassword.com/
e. Services
Research manufacturer’s information on the device and document services running.
f. Authentication
Research manufacturer’s website for the device and locate information on how the device authenticates users.
g. Use of Encryption
Research manufacturer’s website for the device and locate information about encryption. For example, does the device use encrypted connections? Is the back-end database encrypted? What type of encryption does it use? Is public/private key encryption like RSA?
h. Logging Capability
Research manufacturer’s website for the device and locate information about logging. Answer questions like is logging enabled? Are logs stored locally or remotely?
i. Other Security Documentation
Does the manufacturer have any security related documentation not provided above that would be of use?
