4.7 Article

Supervisory control of discrete-event systems under external attacks

期刊

INFORMATION SCIENCES
卷 562, 期 -, 页码 398-413

出版社

ELSEVIER SCIENCE INC
DOI: 10.1016/j.ins.2021.03.033

关键词

Labeled Petri net; Attack; Supervisory control; Discrete-event system

资金

  1. National Key R&D Program of China [2018YFB1700104]

向作者/读者索取更多资源

Resilience is a critical criterion for evaluating networked systems, including discrete-event systems (DESs). This research focuses on the supervisory control problem of a DES modeled with labeled Petri nets under malicious attacks. Attacks on systems can be classified into actuator attacks and sensor attacks which may disrupt the normal operation of the system.
Resilience is a critical criterion to evaluate a networked system including discrete-event systems (DESs). This research touches upon the supervisory control problem of a DES modeled with labeled Petri nets under malicious attacks. Attacks on a system can be categorized into actuator attacks and sensor attacks. The former may cause a failure of an actuator for executing the commands issued from a supervisor that enforces a specification. The latter may corrupt an observation (i.e., a sequence of observable transition labels) from a sensor by different types of attacks such as insertion, removal, and replacement of transition labels. For actuator attacks, if we can detect them and disable some particular controllable transition labels before reaching a state that does not satisfy the specification, then we can find a modified supervisor to enforce the specification. For sensor attacks, we assume that, once a time, only one attack can be carried out, i.e., the attacker does not change the attack during an observation corruption. Given a specification, we consider in a plant model any two feasible transition sequences that share the same corrupted observation under attacks. It is shown that there exists a supervisor to enforce the specification if the one-step controllable extensions of the two transition sequences either satisfy or violate the specification simultaneously. To this end, a novel structure, namely a product observation reachability graph constructed from a plant and its specification, is proposed to decide the existence of such a supervisor by checking whether each state in the graph satisfies a particular condition. The application of the reported methods is demonstrated through examples. (c) 2021 Elsevier Inc. All rights reserved.

作者

我是这篇论文的作者
点击您的名字以认领此论文并将其添加到您的个人资料中。

评论

主要评分

4.7
评分不足

次要评分

新颖性
-
重要性
-
科学严谨性
-
评价这篇论文

推荐

暂无数据
暂无数据