3
STANDARDS
There are several standards, which apply to substation cyber-security. The standards currently applicable to GE
IEDs are NERC and IEEE1686.
Standard
Country
Description
NERC CIP (North American Electric Reliability
Corporation)
USA
Framework for the protection of the grid critical Cyber Assets
BDEW (German Association of Energy and Water
Industries)
Germany
Requirements for Secure Control and Telecommunication
Systems
ANSI ISA 99
USA
ICS oriented then Relevant for EPU completing existing standard
and identifying new topics such as patch management
IEEE 1686
International
International Standard for substation IED cyber-security
capabilities
IEC 62351
International
Power system data and Comm. protocol
ISO/IEC 27002
International
Framework for the protection of the grid critical Cyber Assets
NIST SP800-53 (National Institute of Standards and
Technology)
USA
Complete framework for SCADA SP800-82and ICS cyber-security
CPNI Guidelines (Centre for the Protection of National
Infrastructure)
UK
Clear and valuable good practices for Process Control and SCADA
security
3.1
NERC COMPLIANCE
The North American Electric Reliability Corporation (NERC) created a set of standards for the protection of critical
infrastructure. These are known as the CIP standards (Critical Infrastructure Protection). These were introduced to
ensure the protection of 'Critical Cyber Assets', which control or have an influence on the reliability of North
America’s electricity generation and distribution systems.
These standards have been compulsory in the USA for several years now. Compliance auditing started in June
2007, and utilities face extremely heavy fines for non-compliance.
NERC CIP standards
CIP standard
Description
CIP-002-1 Critical Cyber Assets
Define and document the Critical Assets and the Critical Cyber Assets
CIP-003-1 Security Management Controls
Define and document the Security Management Controls required to protect the
Critical Cyber Assets
CIP-004-1 Personnel and Training
Define and Document Personnel handling and training required protecting Critical
Cyber Assets
CIP-005-1 Electronic Security
Define and document logical security perimeters where Critical Cyber Assets reside.
Define and document measures to control access points and monitor electronic
access
CIP-006-1 Physical Security
Define and document Physical Security Perimeters within which Critical Cyber Assets
reside
CIP-007-1 Systems Security Management
Define and document system test procedures, account and password management,
security patch management, system vulnerability, system logging, change control
and configuration required for all Critical Cyber Assets
CIP-008-1 Incident Reporting and Response Planning
Define and document procedures necessary when Cyber-security Incidents relating
to Critical Cyber Assets are identified
CIP-009-1 Recovery Plans
Define and document Recovery plans for Critical Cyber Assets
P64x
Chapter 17 - Cyber-Security
P64x-TM-EN-1.3
377
Summary of Contents for P642
Page 2: ......
Page 18: ...Contents P64x xvi P64x TM EN 1 3 ...
Page 24: ...Table of Figures P64x xxii P64x TM EN 1 3 ...
Page 25: ...CHAPTER 1 INTRODUCTION ...
Page 26: ...Chapter 1 Introduction P64x 2 P64x TM EN 1 3 ...
Page 36: ...Chapter 1 Introduction P64x 12 P64x TM EN 1 3 ...
Page 37: ...CHAPTER 2 SAFETY INFORMATION ...
Page 38: ...Chapter 2 Safety Information P64x 14 P64x TM EN 1 3 ...
Page 50: ...Chapter 2 Safety Information P64x 26 P64x TM EN 1 3 ...
Page 51: ...CHAPTER 3 HARDWARE DESIGN ...
Page 52: ...Chapter 3 Hardware Design P64x 28 P64x TM EN 1 3 ...
Page 87: ...CHAPTER 4 SOFTWARE DESIGN ...
Page 88: ...Chapter 4 Software Design P64x 64 P64x TM EN 1 3 ...
Page 98: ...Chapter 4 Software Design P64x 74 P64x TM EN 1 3 ...
Page 99: ...CHAPTER 5 CONFIGURATION ...
Page 100: ...Chapter 5 Configuration P64x 76 P64x TM EN 1 3 ...
Page 121: ...CHAPTER 6 TRANSFORMER DIFFERENTIAL PROTECTION ...
Page 122: ...Chapter 6 Transformer Differential Protection P64x 98 P64x TM EN 1 3 ...
Page 165: ...CHAPTER 7 TRANSFORMER CONDITION MONITORING ...
Page 166: ...Chapter 7 Transformer Condition Monitoring P64x 142 P64x TM EN 1 3 ...
Page 189: ...CHAPTER 8 RESTRICTED EARTH FAULT PROTECTION ...
Page 190: ...Chapter 8 Restricted Earth Fault Protection P64x 166 P64x TM EN 1 3 ...
Page 215: ...CHAPTER 9 CURRENT PROTECTION FUNCTIONS ...
Page 216: ...Chapter 9 Current Protection Functions P64x 192 P64x TM EN 1 3 ...
Page 249: ...CHAPTER 10 CB FAIL PROTECTION ...
Page 250: ...Chapter 10 CB Fail Protection P64x 226 P64x TM EN 1 3 ...
Page 259: ...CHAPTER 11 VOLTAGE PROTECTION FUNCTIONS ...
Page 260: ...Chapter 11 Voltage Protection Functions P64x 236 P64x TM EN 1 3 ...
Page 274: ...Chapter 11 Voltage Protection Functions P64x 250 P64x TM EN 1 3 ...
Page 275: ...CHAPTER 12 FREQUENCY PROTECTION FUNCTIONS ...
Page 276: ...Chapter 12 Frequency Protection Functions P64x 252 P64x TM EN 1 3 ...
Page 286: ...Chapter 12 Frequency Protection Functions P64x 262 P64x TM EN 1 3 ...
Page 287: ...CHAPTER 13 MONITORING AND CONTROL ...
Page 288: ...Chapter 13 Monitoring and Control P64x 264 P64x TM EN 1 3 ...
Page 306: ...Chapter 13 Monitoring and Control P64x 282 P64x TM EN 1 3 ...
Page 307: ...CHAPTER 14 SUPERVISION ...
Page 308: ...Chapter 14 Supervision P64x 284 P64x TM EN 1 3 ...
Page 322: ...Chapter 14 Supervision P64x 298 P64x TM EN 1 3 ...
Page 323: ...CHAPTER 15 DIGITAL I O AND PSL CONFIGURATION ...
Page 324: ...Chapter 15 Digital I O and PSL Configuration P64x 300 P64x TM EN 1 3 ...
Page 336: ...Chapter 15 Digital I O and PSL Configuration P64x 312 P64x TM EN 1 3 ...
Page 337: ...CHAPTER 16 COMMUNICATIONS ...
Page 338: ...Chapter 16 Communications P64x 314 P64x TM EN 1 3 ...
Page 397: ...CHAPTER 17 CYBER SECURITY ...
Page 398: ...Chapter 17 Cyber Security P64x 374 P64x TM EN 1 3 ...
Page 415: ...CHAPTER 18 INSTALLATION ...
Page 416: ...Chapter 18 Installation P64x 392 P64x TM EN 1 3 ...
Page 431: ...CHAPTER 19 COMMISSIONING INSTRUCTIONS ...
Page 432: ...Chapter 19 Commissioning Instructions P64x 408 P64x TM EN 1 3 ...
Page 460: ...Chapter 19 Commissioning Instructions P64x 436 P64x TM EN 1 3 ...
Page 461: ...CHAPTER 20 MAINTENANCE AND TROUBLESHOOTING ...
Page 462: ...Chapter 20 Maintenance and Troubleshooting P64x 438 P64x TM EN 1 3 ...
Page 477: ...CHAPTER 21 TECHNICAL SPECIFICATIONS ...
Page 478: ...Chapter 21 Technical Specifications P64x 454 P64x TM EN 1 3 ...
Page 507: ...APPENDIX A ORDERING OPTIONS ...
Page 508: ...Appendix A Ordering Options P64x P64x TM EN 1 3 ...
Page 512: ...Appendix A Ordering Options P64x A4 P64x TM EN 1 3 ...
Page 513: ...APPENDIX B SETTINGS AND SIGNALS ...
Page 515: ...APPENDIX C WIRING DIAGRAMS ...
Page 516: ...Appendix C Wiring Diagrams P64x P64x TM EN 1 3 ...
Page 590: ......
Page 591: ......