适用于城市轨道交通CBTC系统的网络安全态势感知系统

U231.7; [目的]城市轨道交通CBTC(基于通信的列车控制)系统面临复杂且多样化的网络安全问题.既有网络安全设备误报率高且与CBTC系统适配度低,对业务数据缺乏深度分析及多系统融合分析,无法主动感知网络安全威胁.为提高CBTC系统网络安全运营水平,有效保障CBTC系统的业务连续性,需构建适用于城市轨道交通CBTC系统的网络安全态势感知系统.[方法]结合相关标准中的通用技术要求,提出了适用于城市轨道交通CBTC系统的网络安全态势感知系统架构,阐述了该系统架构中前端数据源的数据内容及核心组件的具体功能.介绍了面向CBTC系统的日志规范化技术、安全威胁分析技术和态势可视化技术等关键技术.[结果...

Full description

Saved in:
Bibliographic Details
Published in城市轨道交通研究 Vol. 27; no. 10; pp. 318 - 321
Main Authors 刘懂懂, 周星宇, 朵建华, 王向阳, 韩涛, 朱锁明
Format Journal Article
LanguageChinese
Published 宁波市轨道交通集团有限公司智慧运营分公司,315101,宁波%卡斯柯信号有限公司,200072,上海 2024
Subjects
Online AccessGet full text
ISSN1007-869X
DOI10.16037/j.1007-869x.2024.10.058

Cover

Abstract U231.7; [目的]城市轨道交通CBTC(基于通信的列车控制)系统面临复杂且多样化的网络安全问题.既有网络安全设备误报率高且与CBTC系统适配度低,对业务数据缺乏深度分析及多系统融合分析,无法主动感知网络安全威胁.为提高CBTC系统网络安全运营水平,有效保障CBTC系统的业务连续性,需构建适用于城市轨道交通CBTC系统的网络安全态势感知系统.[方法]结合相关标准中的通用技术要求,提出了适用于城市轨道交通CBTC系统的网络安全态势感知系统架构,阐述了该系统架构中前端数据源的数据内容及核心组件的具体功能.介绍了面向CBTC系统的日志规范化技术、安全威胁分析技术和态势可视化技术等关键技术.[结果及结论]适用于城市轨道交通CBTC系统的网络安全态势感知系统架构与CBTC系统架构高度适配,系统功能与CBTC系统运行场景高度融合;采用该系统,可实现业务高效联动,降低既有网络安全系统设备的误报率,提高CBTC系统网络安全水平,有效保障CBTC系统的业务连续性.
AbstractList U231.7; [目的]城市轨道交通CBTC(基于通信的列车控制)系统面临复杂且多样化的网络安全问题.既有网络安全设备误报率高且与CBTC系统适配度低,对业务数据缺乏深度分析及多系统融合分析,无法主动感知网络安全威胁.为提高CBTC系统网络安全运营水平,有效保障CBTC系统的业务连续性,需构建适用于城市轨道交通CBTC系统的网络安全态势感知系统.[方法]结合相关标准中的通用技术要求,提出了适用于城市轨道交通CBTC系统的网络安全态势感知系统架构,阐述了该系统架构中前端数据源的数据内容及核心组件的具体功能.介绍了面向CBTC系统的日志规范化技术、安全威胁分析技术和态势可视化技术等关键技术.[结果及结论]适用于城市轨道交通CBTC系统的网络安全态势感知系统架构与CBTC系统架构高度适配,系统功能与CBTC系统运行场景高度融合;采用该系统,可实现业务高效联动,降低既有网络安全系统设备的误报率,提高CBTC系统网络安全水平,有效保障CBTC系统的业务连续性.
Abstract_FL [Objective]Urban rail transit CBTC(communi-cation-based train control)systems face complex and diverse cybersecurity challenges.Existing cybersecurity tools feature high false alarm rates and poor adaptation to CBTC systems,lacking in-depth analysis of business data and integration across multiple systems,thus uncapable to proactively detect cyberse-curity threats.To enhance the cybersecurity operations of CBTC systems and ensure the continuity of CBTC system busi-ness operations,it is necessary to develop a cybersecurity situa-tional awareness system applicable for urban rail transit CBTC systems.[Method]Based on general technical requirements outlined in relevant standards,a cybersecurity situational awareness system architecture tailored to urban rail transit CBTC systems is proposed.The data content from front-end data sources and the specific functions of core components in the system architecture is expounded.Key technologies,inclu-ding log normalization techniques,security threat analysis methods,and situational visualization techniques for CBTC systems are introduced.[Result & Conclusion]The cyberse-curity situational awareness system architecture applicable for urban rail transit CBTC system is highly compatible with CBTC system architecture,and its functions are deeply inte-grated with CBTC operational scenarios.The implementation of this system enables efficient business coordination,reduces the false alarm rates of existing cybersecurity equipment,en-hances the cybersecurity levels of CBTC systems,effectively ensuring the continuity of CBTC system business operations.
Author 韩涛
王向阳
朵建华
刘懂懂
周星宇
朱锁明
AuthorAffiliation 宁波市轨道交通集团有限公司智慧运营分公司,315101,宁波%卡斯柯信号有限公司,200072,上海
AuthorAffiliation_xml – name: 宁波市轨道交通集团有限公司智慧运营分公司,315101,宁波%卡斯柯信号有限公司,200072,上海
Author_FL HAN Tao
ZHU Suoming
LIU Dongdong
WANG Xiangyang
DUO Jianhua
ZHOU Xingyu
Author_FL_xml – sequence: 1
  fullname: LIU Dongdong
– sequence: 2
  fullname: ZHOU Xingyu
– sequence: 3
  fullname: DUO Jianhua
– sequence: 4
  fullname: WANG Xiangyang
– sequence: 5
  fullname: HAN Tao
– sequence: 6
  fullname: ZHU Suoming
Author_xml – sequence: 1
  fullname: 刘懂懂
– sequence: 2
  fullname: 周星宇
– sequence: 3
  fullname: 朵建华
– sequence: 4
  fullname: 王向阳
– sequence: 5
  fullname: 韩涛
– sequence: 6
  fullname: 朱锁明
BookMark eNrjYmDJy89LZWBQMDTQMzQzMDbXz9IzNDAw17Uws6zQMzIwMgFy9QxMLVgYOGHiERwMvMXFmUkGBkZGZsamJgacDG4vG5qeT1nxZFff0_l9T3c0vdi74mXj5Ce7lrxsmOXsFOL8fPPu57vnP5_V8nzvxOe75zxd1_m0dcWzhsanXfuftcx_Pn8pRAEPA2taYk5xKi-U5mbQdHMNcfbQLU_MS0vMS4_Pyi8tygPKxCcXp6dklVRmgVwIdJeZsTEpagGj-V9A
ClassificationCodes U231.7
ContentType Journal Article
Copyright Copyright © Wanfang Data Co. Ltd. All Rights Reserved.
Copyright_xml – notice: Copyright © Wanfang Data Co. Ltd. All Rights Reserved.
DBID 2B.
4A8
92I
93N
PSX
TCJ
DOI 10.16037/j.1007-869x.2024.10.058
DatabaseName Wanfang Data Journals - Hong Kong
WANFANG Data Centre
Wanfang Data Journals
万方数据期刊 - 香港版
China Online Journals (COJ)
China Online Journals (COJ)
DatabaseTitleList
DeliveryMethod fulltext_linktorsrc
DocumentTitle_FL Cybersecurity Situational Awareness System Applicable for Urban Rail Transit CBTC Sys-tem
EndPage 321
ExternalDocumentID csgdjtyj202410063
GroupedDBID -03
2B.
4A8
92I
93N
ALMA_UNASSIGNED_HOLDINGS
CCEZO
CEKLB
GROUPED_DOAJ
PSX
TCJ
ID FETCH-wanfang_journals_csgdjtyj2024100633
ISSN 1007-869X
IngestDate Thu May 29 04:09:11 EDT 2025
IsPeerReviewed false
IsScholarly true
Issue 10
Keywords 信号系统
网络安全态势感知
cybersecuri-ty situational awareness
urban rail transit
signaling system
城市轨道交通
Language Chinese
LinkModel OpenURL
MergedId FETCHMERGED-wanfang_journals_csgdjtyj2024100633
ParticipantIDs wanfang_journals_csgdjtyj202410063
PublicationCentury 2000
PublicationDate 2024
PublicationDateYYYYMMDD 2024-01-01
PublicationDate_xml – year: 2024
  text: 2024
PublicationDecade 2020
PublicationTitle 城市轨道交通研究
PublicationTitle_FL Urban Mass Transit
PublicationYear 2024
Publisher 宁波市轨道交通集团有限公司智慧运营分公司,315101,宁波%卡斯柯信号有限公司,200072,上海
Publisher_xml – name: 宁波市轨道交通集团有限公司智慧运营分公司,315101,宁波%卡斯柯信号有限公司,200072,上海
SSID ssib002263540
ssib000269188
ssj0002923795
ssib001129289
ssib036435387
ssib051371173
Score 4.679593
Snippet U231.7;...
SourceID wanfang
SourceType Aggregation Database
StartPage 318
Title 适用于城市轨道交通CBTC系统的网络安全态势感知系统
URI https://d.wanfangdata.com.cn/periodical/csgdjtyj202410063
Volume 27
hasFullText 1
inHoldings 1
isFullTextHit
isPrint
link http://utb.summon.serialssolutions.com/2.0.0/link/0/eLvHCXMwnV3NaxQxFB9qvXgRRcVvipiDh103yUw-jsnuDEXQU4XeSndnptLDCnYLtae21IMeCqKnIuxFYU9evEhL8Z_pdux_Yd6b7O5gK7aFZXgkL7_3tSQvmSQTBI9TnoadPGzXuI46tTBntKZoltV4GKUqE1kepXAa-fkLMfsyfDYfzU9Nr1ZPl_Ta9c76qedKLhJVV-biCqdkzxHZMagrcLSLr3u6CLvnmWJMYg07FRQjsSQ6JEaROCTWEBWTOCI68YRVyKOIbSGPa0WJ5p7ZhB5Hm6adawKW5cRaJCygALoDDbGkRTQdVTUB3cREaSBUhOgCdaJYYohNsCQc4STERCdFVHPki6kOUKYBXgBCEzteckRFFNGlahLxPFFlcVaV2jtG0LU0TE5YBNhrI9TKgnTAbTk9JywStFYW4RroJw1wllcXV9hkWXUkhQK684hh57TZwVuiBAq02By1hHi4Kg1a-MBgqFQC4MCj0QCBVRJlJcis4Gki77MS-a_mrMkp9LGOOEV_Fnm_GCzUghj8B0DgEzQhwaoSTZ5JYdaEo16SocQQ_YPKu2BYWRlWYUFcCfxo8njcZbLavzQqoyj3Q3KZkPHyCP2JsV6U10Us10foa3UIYR02a0Zqkt-Md512VpbS5d7bZeCikJtfCi4zKWlUWYkpX74LTSu3-MGUhFU-ysDgAqfJFUncJfUubRhn8RHlklI_K4CE0LXmEr__NPaD31MIJjz9hwF4irCbL3aXKgnv3LXgqp-pzpiy27keTK2_uhEkxxtbxefB4d7OsL8z_Ln1-2BwvPnpcO_r8cYudB7Fj_1iv1_sbhcHH4v9L8Pv74fvBkcbm8MPv462-0X_W8lwM3iSxHPN2ZqXveC7u5WFE97jt4Lp7utudjuYYSxfbCwqlobuJ5hQMmvkIs0Zb9N2O5R3gkf_x7t7FqZ7wRWgy0XQ-8F0781q9sBNC3rthxjEPyfuwes
linkProvider Directory of Open Access Journals
openUrl ctx_ver=Z39.88-2004&ctx_enc=info%3Aofi%2Fenc%3AUTF-8&rfr_id=info%3Asid%2Fsummon.serialssolutions.com&rft_val_fmt=info%3Aofi%2Ffmt%3Akev%3Amtx%3Ajournal&rft.genre=article&rft.atitle=%E9%80%82%E7%94%A8%E4%BA%8E%E5%9F%8E%E5%B8%82%E8%BD%A8%E9%81%93%E4%BA%A4%E9%80%9ACBTC%E7%B3%BB%E7%BB%9F%E7%9A%84%E7%BD%91%E7%BB%9C%E5%AE%89%E5%85%A8%E6%80%81%E5%8A%BF%E6%84%9F%E7%9F%A5%E7%B3%BB%E7%BB%9F&rft.jtitle=%E5%9F%8E%E5%B8%82%E8%BD%A8%E9%81%93%E4%BA%A4%E9%80%9A%E7%A0%94%E7%A9%B6&rft.au=%E5%88%98%E6%87%82%E6%87%82&rft.au=%E5%91%A8%E6%98%9F%E5%AE%87&rft.au=%E6%9C%B5%E5%BB%BA%E5%8D%8E&rft.au=%E7%8E%8B%E5%90%91%E9%98%B3&rft.date=2024&rft.pub=%E5%AE%81%E6%B3%A2%E5%B8%82%E8%BD%A8%E9%81%93%E4%BA%A4%E9%80%9A%E9%9B%86%E5%9B%A2%E6%9C%89%E9%99%90%E5%85%AC%E5%8F%B8%E6%99%BA%E6%85%A7%E8%BF%90%E8%90%A5%E5%88%86%E5%85%AC%E5%8F%B8%2C315101%2C%E5%AE%81%E6%B3%A2%25%E5%8D%A1%E6%96%AF%E6%9F%AF%E4%BF%A1%E5%8F%B7%E6%9C%89%E9%99%90%E5%85%AC%E5%8F%B8%2C200072%2C%E4%B8%8A%E6%B5%B7&rft.issn=1007-869X&rft.volume=27&rft.issue=10&rft.spage=318&rft.epage=321&rft_id=info:doi/10.16037%2Fj.1007-869x.2024.10.058&rft.externalDocID=csgdjtyj202410063
thumbnail_s http://utb.summon.serialssolutions.com/2.0.0/image/custom?url=http%3A%2F%2Fwww.wanfangdata.com.cn%2Fimages%2FPeriodicalImages%2Fcsgdjtyj%2Fcsgdjtyj.jpg