Archive for June, 2007
ISA SP99 WG4 Update
I’m just back from the first face-to-face meeting of Working Group 4’s effort to write ISA SP99 Part 4. Part 4 will contain normative requirements for technical security measures in control system devices, sub-systems and systems. This means that vendors, integrators and asset owners will be able to verify or audit compliance with SP 99 […]
Author: Dale Peterson
Posted: June 28th, 2007 under ISA SP99.
Comments: 1
Launch? of ISA Security Compliance Institute
There has been an effort underway for over a year now to develop a compliance organization for control system security standards. It was started at PCSF 2006 in San Diego by Eric Byres as the Control Systems Security Foundation. After some organizational research and feasibility studies it was taken over by the ISA’s Automation Standards […]
Author: Dale Peterson
Posted: June 26th, 2007 under ISA SP99, Standards & Orgs.
Comments: 1
Friday News and Notes
Want to see what the chemical industry is doing for control system security? Check out the American Chemistry Council’s site devoted to the topic. There are some white papers and resources there, but many leading experts in the chemical sector continue to contribute to ISA SP99 as well.
Cisco has a derivative product offering targeting the […]
Author: Dale Peterson
Posted: June 22nd, 2007 under Uncategorized.
Comments: 5
ISA SP99 Part 4
Next week in Scottsdale there will be a three day face-to-face meeting to begin drafting a structure and table of contents on SP99 Part 4. Parts 1 to 3 provided useful guidance and defined terms and models and set the stage for Part 4. Part 4 will be a normative standard meaning there will be […]
Author: Dale Peterson
Posted: June 20th, 2007 under ISA SP99.
Comments: none
S4 Call for Papers!
The call for papers is out. Send an abstract on your brilliant control system security research to S4@digitalbond.com and get a slot in the SCADA Security Scientific Symposium (S4) 2008 program on January 23 - 24. We offer the most generous speaker program in the community so even humble grad students can present their papers […]
Author: Dale Peterson
Posted: June 17th, 2007 under S4.
Comments: none
Friday News and Notes
A survey in Control magazine shows that 44% say a Safety Instrumented System (SIS) should not be connected to a process control system, while 56% say it’s safe to do so. Of course you can guess my opinion on this, but either way you look at it about 50% are wrong.
The industrial firewall space is […]
Author: Dale Peterson
Posted: June 15th, 2007 under Uncategorized.
Comments: none
Is Sloppy Use of SCADA a Problem?
I’m prepping for my podcast interview with Joe Weiss on security awareness in control systems and came across one point that didn’t make the cut, but is still interesting.
Some people in the community get very upset when SCADA is used as a term to cover all control systems. They have a point that SCADA are […]
Author: Dale Peterson
Posted: June 13th, 2007 under Big Picture.
Comments: 8
Secure DNP3 on SCADApedia
We have created a SCADApedia entry on Secure DNP3 as a companion to the recent podcast with Grant Gilchrist. We should have a DNP3 entry up in the next day or so for those new to the protocol.
Also don’t forget the DNP3 IDS signatures that have been deployed in many of the commercial IDS and […]
Author: Dale Peterson
Posted: June 12th, 2007 under DNP3, IDS / IPS.
Comments: none
Secure DNP3 Podcast
Our first podcast is now available.
Here is a direct link to the podcast if your reader blocked the embedded reader.
In it I talk with Grant Gilchrist of EnerNex about the Secure DNP3 protocol developed by the DNP User Group. Grant was one of the Secure DNP3 authors and explains the protocol and the reasoning behind […]
Author: Dale Peterson
Posted: June 10th, 2007 under DNP3.
Comments: 5
Friday News and Notes
This was a slow news week:
Brian Singer is blogging now at CIPIQ, which is a subset of the company he works for FluidIQ
You may have noticed no SCADApedia updates on June 1. We were occupied figuring out the podcast thing and have resumed work on it this month. Our first podcast on Secure DNP3 with […]
Author: Dale Peterson
Posted: June 8th, 2007 under Uncategorized.
Comments: 1

