Weiss Event Podcast Interviews
I pulled out the Mobile Podcast rig, a new toy, and took advantage of the gathering of experts to do a few interviews. Listen to them all or skip to the one you are interested in by noting the start time in the stream.
- Introduction (0:00)
- Dilemma of Water Sector Security with Jake Brodsky and Cheryl Santor (0:22)
- US-CERT Control System Vulnerability Disclosure with Art Manion (17:44)
- HP Trusted Compliance Solution for Energy (think NERC CIP) with Steve Scott (25:21)
- Proposed ISA Security Division with Bryan Singer (29:25)
- IEC 60870-5-104 deep inspection firewall with Erik Hjelmvik (34:05)
- A raspy Joe Weiss post event interview (39:54)
Author: Dale Peterson
Posted: August 17th, 2007 under Conferences.
Comments: 2
Comments
Comment from Jake Brodsky
Time: August 19, 2007, 12:39 am
The IEC standard to which Eric refers regarding the authentication of ‘104 and DNP is IEC 62351. Just thought the readership might want to know in case you want to look it up…
Comment from Erik Hjelmvik
Time: August 20, 2007, 8:39 am
Comment to Jake’s comment: Yes, and 62351-5 in particular. I do really think that that this is a great effort since it will provide a basis for end-to-end security for SCADA devices. I do however think that the specific solution in the standard isn’t optimal (I’ve commented on this at this blog earlier).
I can also say that the ‘104 FW is based on Netfilter and iptables regardless of what I say in the interview.

Write a comment