SM2加密体系在智能变电站站内通信中的应用
Application of SM2 Encrypted System in Smart Substation Inner Communication
-
摘要: 现有的安全体系公钥算法大多采用RSA算法,无法保证数字化变电站通信报文的安全传输。针对此问题,提出了一种基于IEC 62351通信协议的身份认证机制,并结合国产商用密码SM2密码体系针对通信报文的安全传输问题提出了解决方案。分别以D2-1型变电站全站星形网、环形网及带冗余的双环路通信网络出现母线故障的场景为例,对面向通用对象的变电站事件/采样值(GOOSE/SMV)报文数字签名时间进行了定量计算,并通过OPNET软件对扩展报文进行了通信延时仿真,得到了3种网络结构在100 Mbit/s和10 Mbit/s带宽下的最大传输延时。仿真结果表明,该方案可有效满足变电站通信报文安全性和实时性需求。Abstract: Currently,the RAS algorithm is adopted as the public key algorithm of most existing security systems,which cannot ensure the security of message transmission in digital substation communications.In order to solve this problem,an implementation scheme for authentication mechanisms based on IEC 62351 combined with SM2 cryptosystem is proposed.For situations in which a bus fault occurs in the unified star network,ring network and ring network with redundant loop network in the whole D2-1substation,respectively.The digital signing time for generic object oriented substation/sample value(GOOSE/SMV)messages is calculated quantitatively while the communication delay is obtained through OPNET simulation,and the different maximum transmission delay times of three kinds of network structures with 100 Mbit/s and 10 Mbit/s bandwidths are obtained.Simulation results have proved the effectiveness of the proposed design in meeting the demand of security and real-time in substation communication message.