• 0
    • ارسال درخواست
    • حذف همه
    • Industrial Standards
    • Defence Standards
  • درباره ما
  • درخواست موردی
  • فهرست استانداردها
    • Industrial Standards
    • Defence Standards
  • راهنما
  • Login
  • لیست خرید شما 0
    • ارسال درخواست
    • حذف همه
View Item 
  •   YSE
  • Industrial Standards
  • IEC - International Electrotechnical Commission
  • View Item
  •   YSE
  • Industrial Standards
  • IEC - International Electrotechnical Commission
  • View Item
  • All Fields
  • Title(or Doc Num)
  • Organization
  • Year
  • Subject
Advanced Search
JavaScript is disabled for your browser. Some features of this site may not work without it.

Archive

IEC TR 62351-90-1

Power systems management and associated information exchange - Data and communications security - Part 90-1: Guidelines for handling role-based access control in power systems - Edition 1.0; Includes Access to Additional Content

Organization:
IEC - International Electrotechnical Commission
Year: 2018

Abstract: This part of IEC 62351, which is a technical report, addresses the handling of access control of users and automated agents to data objects in power systems by means of role-based access control (RBAC) as defined in IEC TS 62351-8. IEC TS 62351-8 defines three different profiles to distribute role information and also defines a set of mandatory roles to be supported. Adoption of RBAC has shown that the defined mandatory roles are not always sufficient and it is recommended that the method for defining custom roles be standardized to ensure interoperability. Hence, the main focus of this document lies in developing a standardized method for defining and engineering custom roles, their role-to-right mappings and the corresponding infrastructure support needed to utilize these custom roles in power systems. This is achieved by defining categories and sub level categories, which provide a distinction of actions, connected with dedicated rights as well as a proposal for a format to distribute the custom role-to-right mappings. Moreover, a format is being proposed to distribute the information on custom defined roles and associated rights by utilizing XACML as an established standard for access control. Besides the discussion of handling custom roles, this document also addresses the following issues: – Providing recommendations and/or examples for role-right-operation and (object) association to ensure interoperability from operational and developers point of view. – Providing mechanisms and rules to avoid overloading of existing roles by allowing for an aligned way to define new (custom) roles. – Easing the administration of roles in IEDs from a device management point of view: • Allowing for centralized assignment of roles, by maintaining the same associations on device/application level. • Avoiding the definition of role-right-operation on command level to cope with diverse application environment of IEC TS 62351-8 (e.g. IED, substation level, control centre, SCADA). – Enhancing available constraints for acting in a specific role considering the local environment with respect to operational constraints.
URI: http://yse.yabesh.ir/std;jsessiouthor:%22NAVY%20-%20YD%20-/handle/yse/264671
Collections :
  • IEC - International Electrotechnical Commission
  • Download PDF : (1.874Mb)
  • Show Full MetaData Hide Full MetaData
  • Statistics

    IEC TR 62351-90-1

Show full item record

contributor authorIEC - International Electrotechnical Commission
date accessioned2018-07-31T09:58:34Z
date available2018-07-31T09:58:34Z
date copyright2018.01.01
date issued2018
identifier otherRBZYCGAAAAAAAAAA.pdf
identifier urihttp://yse.yabesh.ir/std;jsessiouthor:%22NAVY%20-%20YD%20-/handle/yse/264671
description abstractThis part of IEC 62351, which is a technical report, addresses the handling of access control of users and automated agents to data objects in power systems by means of role-based access control (RBAC) as defined in IEC TS 62351-8. IEC TS 62351-8 defines three different profiles to distribute role information and also defines a set of mandatory roles to be supported. Adoption of RBAC has shown that the defined mandatory roles are not always sufficient and it is recommended that the method for defining custom roles be standardized to ensure interoperability. Hence, the main focus of this document lies in developing a standardized method for defining and engineering custom roles, their role-to-right mappings and the corresponding infrastructure support needed to utilize these custom roles in power systems. This is achieved by defining categories and sub level categories, which provide a distinction of actions, connected with dedicated rights as well as a proposal for a format to distribute the custom role-to-right mappings. Moreover, a format is being proposed to distribute the information on custom defined roles and associated rights by utilizing XACML as an established standard for access control. Besides the discussion of handling custom roles, this document also addresses the following issues: – Providing recommendations and/or examples for role-right-operation and (object) association to ensure interoperability from operational and developers point of view. – Providing mechanisms and rules to avoid overloading of existing roles by allowing for an aligned way to define new (custom) roles. – Easing the administration of roles in IEDs from a device management point of view: • Allowing for centralized assignment of roles, by maintaining the same associations on device/application level. • Avoiding the definition of role-right-operation on command level to cope with diverse application environment of IEC TS 62351-8 (e.g. IED, substation level, control centre, SCADA). – Enhancing available constraints for acting in a specific role considering the local environment with respect to operational constraints.
languageEnglish
titleIEC TR 62351-90-1num
titlePower systems management and associated information exchange - Data and communications security - Part 90-1: Guidelines for handling role-based access control in power systems - Edition 1.0; Includes Access to Additional Contenten
typestandard
page43
statusActive
treeIEC - International Electrotechnical Commission:;2018
contenttypefulltext
DSpace software copyright © 2017-2020  DuraSpace
نرم افزار کتابخانه دیجیتال "دی اسپیس" فارسی شده توسط یابش برای کتابخانه های ایرانی | تماس با یابش
yabeshDSpacePersian
 
DSpace software copyright © 2017-2020  DuraSpace
نرم افزار کتابخانه دیجیتال "دی اسپیس" فارسی شده توسط یابش برای کتابخانه های ایرانی | تماس با یابش
yabeshDSpacePersian