Geneva, Switzerland, 15-16 September 2014 Security by Design in Smart Grids A Need to Rethink ICT in Power System Controls Carsten Strunge, Senior Development.

Slides:



Advertisements
Similar presentations
Smart Grid: an Ontario Perspective Brian Hewson, Senior Manager Regulatory Policy Hamilton May 8, 2013.
Advertisements

World Class Standards Smart Grids ETSI Strategic Topic Philippe Lucas © ETSI All rights reserved ETSI Smart Grid workshop, June 14th 2010.
INTEGRAL1ADDRESS Workshop, Paris 09 June 2010 INTEGRAL: Integrated ICT Platform for Distributed Control in Electricity Grids Hans Akkermans INTEGRAL Project.
Smart Grid Status in Finland I.Country/Economy Smart Grid Status 1.High priority technical needs for smart grid development and/or deployment Research.
Frankfurt (Germany), 6-9 June 2011 André Postma – Netherlands – RT.1b SM components "Smart Grid Components"
Distributed Generation (DG)
Planning, optimization and regulatory issues
The future Role of VPPs in Europe Pan European Balancing Market: EU-FP7-Project eBadge Workshop on DSM Potentials, Implementations and Experiences 20 th.
Development and Operation of Active Distribution Networks: Results of CIGRE C6.11 Working Group (Paper 0311) Dr Samuel Jupe (Parsons Brinckerhoff) UK Member.
Geneva, Switzerland, September 2014 Security by Design in Smart Grids A Need to Rethink ICT in Power System Controls Carsten Strunge, Senior Development.
Jörg Heuer | Siemens AG | München | Renewable Model Region Harz: Climate Protection and Energy Efficiency by Modern ICT and Innovative Operation.
The research leading to these results has received funding from the European Community's Seventh Framework Programme (FP7/ ) under grant agreement.
Olje- og energidepartementetwww.oed.dep.no The energy sector and policy challanges in Europe. Viewpoints from Norway Johan Vetlesen Deputy Director General.
Integrating Multiple Microgrids into an Active Network Management System Presented By:Colin Gault, Smarter Grid Solutions Co-Authors:Joe Schatz, Southern.
CHPCOM project Combined Heat and Power Communication CHPCOM IEC baseret datakommunikation i dansk kontekst Securing Critical Infrastructure Communication.
EStorage First Annual Workshop Arnhem, NL 30, Oct Olivier Teller.
1 LNI & JMJ, SmartGrid 2nd General Assembly Danish TSO Research and Demonstration Activities towards a Future Smart grid EcoGrid Energinet.dk, PMFU section.
1 Smart control of multiple energy commodities on district scale Frans Koene Sustainable places, Nice, 1-3 Oct 2014.
ICT FOR OPTIMIZING SYNERGIES AMONG ENERGY GRIDS IN SMART CITIES S. Caneva & I. Weiss, WIP – Renewable Energies Sustainable Places, Nice, France, 1 st October.
1 Smart Distribution Systems: Sustainability Issues S. S. (Mani) Venkata Alstom Grid and University of Washington (UW)
© ABB SG_Presentation_rev9b.ppt | 1 © ABB SG_Presentation_rev9b.ppt | 1 Smart Grid – The evolution of the future grid Karl Elfstadius,
EU Commission Task Force for Smart Grids Expert Group 3: Roles and Responsibilities of Actors involved in the Smart Grids Deployment Samia Benrachi-Maassam.
Join Us Now at: Enabling Interoperability for the Utility Enterprise And TESTING.
EU policy objectives and European research on Smart Grids European Commission, DG Research Henrik Dam Research Programme Officer ADDRESS international.
1 Some Issues about Big Data in Power Grid Gary Quan.
Al Hefner (NIST Lead) Frances Cleveland (Technical Champion)
Frankfurt (Germany), 6-9 June 2011 Power System Impacts from Large Scale Deployment of EV -The MERGE project – João A. Peças Lopes
Introduction to Secure Messaging The Open Group Messaging Forum April 30, 2003.
FirstEnergy / Jersey Central Power & Light Integrated Distributed Energy Resources (IDER) Joseph Waligorski FirstEnergy Grid-InterOp 2009 Denver, CO November.
Common Information Model and EPRI Smart Grid Research
Estimados Expositores del II Seminario de Electricidad Consequences of increasing penetration of distributed generation on transmission and distribution.
SMART GRID The Next Generation Electric Grid Kunkerati Lublertlop 11/30/2011 Electrical Engineering Department Southern Taiwan University.
Frankfurt (Germany), 6-9 June 2011 Greet Vanalme – NL – RIF Session 6 – Paper 0786 The introduction of local system services – the case of storage in the.
© 2008 OSIsoft, Inc. | Company Confidential Smart Grid, Smart Metering and DSM OSIsoft and Cisco systems Arjen Zwaag- Cisco Martin Otterson- OSIsoft.
0 The Problem – Centralized generation is often dirty, costs are increasing and T&D is vulnerable to natural and man-made interruption – Distributed renewables.
W. Schufft: Challenges for electrical power engineering IP 2007, Pernink Challenges for Electrical Power Engineering.
Frankfurt (Germany), 6-9 June 2011 MARTENSEN – DE – Session 4 – 1221 The Cell Controller Pilot Project (CCPP): From Surviving System Black-Out to Market.
IEC TC57: Report on WG21 Interfaces and protocol profiles relevant to systems connected to the electrical grid P. Ferstl August 2012 INTERNATIONAL ELECTROTECHNICAL.
Halifax, 31 Oct – 3 Nov 2011ICT Accessibility For All SMART GRID ICT: SECURITY, INTEROPERABILITY & NEXT STEPS John O’Neill, Senior Project Manager CSA.
Secure Messaging Workshop The Open Group Messaging Forum February 6, 2003.
Smart Grids: Ireland’s Unique Opportunity Doireann Barry, Smart Grid Programme Manager.
Brussels Workshop Use case 3 11/09/2015 Mario Sisinni.
Frankfurt (Germany), 6-9 June INFRAX 2. Regulatory framework 3. Role of DSO in an open electricity market 4. Role of DSO in Smart Grids 5. Experiences.
Road2CPS Smart Energy Platforms Alexander von Jagwitz B.A.U.M. Consult
Geneva, Switzerland, September 2014 X.509 in a changing world Erik Andersen, Andersen’s L-Service Denmark ITU Workshop on “ICT Security.
REAL TIME BALANCING OF SUPPLY AND DEMAND IN SMART GRID BY USING STORAGE, CONTROLLABLE LOADS AND SMART GENERATIONS Abdulfetah Shobole, Dr. Arif Karakaş.
Integration of Demand Side Management, Distributed Generation, Renewable Energy Sources and Energy Storages Task XVII Workshop on Demand Side Management.
Recent TSO report on changes because of larger amounts of renewable enery IEA Task 25, January 14, 2016 Edf – Clamart – Paris – France Lennart Söder Professor.
EnergyTour November Copenhagen Energy Summit Energy Tour District Heating in Denmark Mr Jan Elleriis, Vice President, Metropolitan Copenhagen Heating.
- 1 Universal Smart Energy Framework A solid foundation for smart energy futures Peter Molengraaf, CEO Alliander.
Unrestricted. © Siemens AG All rights reserved. Open Innovation 2.0 Dr. Walter Weigel VP External Cooperations Corporate Technology I Dublin, June.
This project has received funding from the European Union’s Horizon2020 research and Innovation programme under grant agreement No
Renewable Energy Technologies IEA - ENARD Electricity Networks - Analysis, Research and Development Draft Annex 2: „DER System Integration in Distribution.
Eric Peirano, Ph.D., TECHNOFI, COO
Future Power System Control Architecture
Virtual Power Plants Microgids
ETIP SNET WG4 : Digital Energy
© 2016 ProsumerGrid, Inc., All Rights Reserved
Agenda TSOG 8th November
Operation of power systems with high shares of wind power
Eric Peirano, Ph.D., TECHNOFI, COO
Eric Peirano BRIDGE Support Team, Technofi
Challenges of integrating Variable Renewable Energy Sources (V-RES)
Breakout Session on Smart Grid Data Analytics
Presentation of the three technological pilots
EU-IPA12/CS02 Development of the Renewable Energy Sector
An energy technology powerhouse
The Global Forum Electricity Ancillary Services and Balancing | Berlin, SmartNet Pilots: The demonstration of the different TSO-DSO coordination.
Energy Transition: from Challenges to Solutions
Electricity Distribution and Energy Decarbonisation
Presentation transcript:

Geneva, Switzerland, September 2014 Security by Design in Smart Grids A Need to Rethink ICT in Power System Controls Carsten Strunge, Senior Development Engineer, Energinet.dk ITU Workshop on “ICT Security Standardization for Developing Countries” (Geneva, Switzerland, September 2014)

Geneva, Switzerland, September The Challenge of Balancing Wind Power and Electricity Consumption Approx. 30 pct. of classic demand Approx. 75 pct. of classic demandApprox. 140 pct. of classic demand 2050 (scale 1:1)

The Challenge of the Changing Power System Geneva, Switzerland, September SC HVDC NO/SE HVDC NL HVAC DE HVAC SE 400 kV 10 kV 0,4 kV SVC 150 kV 60 kV

The Challenge to Utilization Renewabel Power Geneva, Switzerland, September ,0 Hz 49,5 Hz 50,5 Hz Power production Consumption New paradigm:  More load must follow production. Not just locally, but cross boarder * Local balancing should only be for congestion management.

What is Security by Design in Smart Grid? Security and robustness in data exchange PKI RBAC, IEC61850 and SecureMMS, CIM and SecureCIM Secure and robust data storage Access to data at the source Roll Based Access Controls (RBAC) at source Secure and robust data processing Semi-offline controls though exchange of schedules Distributed controls Secure and robust fall-back schemes Detection of abnormal behavior Segmentation of processes and ICT-networks Possible isolation of “infected” parts Fall-back concepts Geneva, Switzerland, September To have information security thought into the power system control concepts.

The Generalized Stakeholder and Domain Model (from NIST) Geneva, Switzerland, September

Basic Elements in the Smart Grid Control Loop Geneva, Switzerland, September Control1 (Agent) Communication Control2 Other actors Control box w. RBAC (Agent or Gateway) Sensor Actuator Power System Status for availibility Control and information data

Elements in the Smart Grid Control Loop - Prosumer Relation Geneva, Switzerland, September DSO Voltage and Emergency controls (Agent) Communication (Fiber, PLC, GPRS, ?) Communication (Internet) Market Aktor Commercial Operation (Aggregator) Control box w. RBAC (Agent or Gateway) Sensor Meter Actuator DER HP, EV etc. Power System Status for availibility Control and information Energy og online power E.g. via AMR/AMI data

Local Technical VPP and Commercial VPP in Smart Grid Geneva, Switzerland, September Control TekniskVPP (Agent) Market actor A ComVPP Market actor B ComVPP 10/0,4 kV Communication (Internet) AMI/AMR Tech + ComA + ComBTech + ComATech + ComA + ComB Tech + ComA

Utilizing resources for Voltage Control Challenges in Local Distribution Grids Geneva, Switzerland, September kV 0,4 kV 10 kV 0,4 kV 10 kV 0,4 kV 10 kV 0,4 kV Local technical agents in the grid, control voltages by utilizing resources online or already active in the power markets.

Activating resources through Technical VPP connected to the transmission grid level Geneva, Switzerland, September

Market Based Controls on Distributed Load and Production (As-Is) Geneva, Switzerland, September       Virtual Power Plant (VPP) Aggregator >10 MW 5 MW3 MW 2 MW 600 kW700 kW 400 kW 300 kW Boilers 200 kW Hydrogen 800 kW Day ahead Balance Responsible and Aggregator Balance Responsible and Aggregator NOIS Several markets already in place Day Ahead Spot Market Intraday Market Regulation Power Market Reserve Capacity Market Frequency Reserve Market

Smart Grid Coupling of Power Grid Control and Power Markets Geneva, Switzerland, September Cell Controller Commercial demand e.g. industry Distributed Generation e.g. CHP Wind Power Existing and testedNew or in R&D Balance Responsible Party DSO Technical VPP Aggregator Commercial VPP Resources Power System Grid Power Markets

CHPCOM– is testing standards to make assets Smart Grid Ready 14 DSO/DNO Balance responsible Flexibility Market Aggregator Technical control Generator CHP plant Control Power sale Power buy  ~   Internet Accumulator Electric Boiler Power Market TSO Data Measurement International data exchange standard IEC Secured according to IEC Supply of services Local resources to balance the local grid Market control Measurement Data Measurement New District heat Solar heat See: (not yet available in English)

CHPCOM – Role Based Access Control Geneva, Switzerland, September CHPCOM RBAC unit incl. IP-Firewall Internet IEC SecureMMS from Sisco IEC RBAC from EURISCO

RBAC structure in IEC Whitelisting, Roles and Rights Geneva, Switzerland, September Subject Person/system whitelisted and identified by X.509 based certificate, whishes access to a resource Example Roles Rights Operations Objects Roles define basic user rights Rights defines access to specific functions Functions can conduct specific actions at resource Resource read or write data DCIP1.EngCtl.ctlVal Start engine #1 Write Egon Olsen BRP Operator IEC TS IEC also applies to IEC TC57 CIM-standards

The CHPCOM data flow Geneva, Switzerland, September RBAC s/MMS GW DB SCAD A DB RTU MMS SCADA s/MMS SecureMMS Gateway SCADA SCADA fronten d MMS INTERNET Firewall PKI Components

CHPCOM PKI Overview Geneva, Switzerland, September Firewall RBAC s/MMS (IEC / IEC 62351) s/MMS (IEC / IEC 62351) PKI Components X.500 Directory CA SecureMMS Gateway RA SCADA Environment MMS (IEC 61850) MMS (IEC 61850) s/MMS (IEC / IEC 62351) LDAP OCSP + REST Phone / LDAP

CHPCOM Information Security Activities Implementation of PKI-elements X.509 certificates with encoded role information Automated certificate handling SecureMMS IEC RBAC gateway units Security Analysis PKI policies for the operational framework to issue and revoke certificates Clients and Servers (including RBAC-units) with private keys – policies for installation and key management. Standardisation Feedback to basic X.509 standard (ITU-T SG17) with specific Smart Grid requirements; Feedback to X.509 standardisation for needed automated procedures to establish and manage PKI for Smart Grid. Feedback to IEC (TC57 WG15) on RBAC implementation Feedback to IEC on SecureMMS Identify legislative needs Identify the legislative requirements to be able to realise Smart Grid Information Security in Denmark. Dialog with key stakeholders. Geneva, Switzerland, September

Conclusions and Recommendations What we found Smart Grid from ITU-T Automated machine2machine solutions e.g. for certificate renewal Local certificate whitelists Strong processes for initial certificate “bootstraping” Multiple associated parallel PKI E.g. Smart Grid-PKI, Smart Meter-PKI, EV- PKI, etc. And not least a good cooperation between ITU-T and IEC TC57. Geneva, Switzerland, September