<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://rs-485.com/index.php?action=history&amp;feed=atom&amp;title=IEC_62351</id>
	<title>IEC 62351 - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://rs-485.com/index.php?action=history&amp;feed=atom&amp;title=IEC_62351"/>
	<link rel="alternate" type="text/html" href="https://rs-485.com/index.php?title=IEC_62351&amp;action=history"/>
	<updated>2026-05-03T23:04:58Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.42.3</generator>
	<entry>
		<id>https://rs-485.com/index.php?title=IEC_62351&amp;diff=1581&amp;oldid=prev</id>
		<title>RS-485: Imported from Wikipedia (overwrite)</title>
		<link rel="alternate" type="text/html" href="https://rs-485.com/index.php?title=IEC_62351&amp;diff=1581&amp;oldid=prev"/>
		<updated>2026-05-03T13:52:14Z</updated>

		<summary type="html">&lt;p&gt;Imported from Wikipedia (overwrite)&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Short description|Cyber security in power management systems}}&lt;br /&gt;
{{Use British (Oxford) English|date=December 2011}}&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;IEC 62351&amp;#039;&amp;#039;&amp;#039; is a standard developed by WG15 of [[International Electrotechnical Commission|IEC]] [[IEC TC 57|TC57]].  This is developed for handling the security of TC 57 series of protocols including [[IEC 60870-5]] series, [[IEC 60870-6]] series, [[IEC 61850]] series, [[IEC 61970]] series &amp;amp; [[IEC 61968]] series. The different security objectives include authentication of data transfer through [[digital signatures]], ensuring only authenticated access, prevention of [[eavesdropping]], prevention of playback and [[Spoofing attack|spoofing]], and [[Intrusion detection system|intrusion detection]].&lt;br /&gt;
&lt;br /&gt;
==Standard details==&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-1&amp;#039;&amp;#039; — Introduction to the standard&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-2&amp;#039;&amp;#039; — Glossary of terms&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-3 Ed. 2&amp;#039;&amp;#039; — Security for any profiles including [[TCP/IP]]. Current edition was published 06/2023, replacing edition 1.2.&lt;br /&gt;
** [[Transport Layer Security|TLS]] Encryption&lt;br /&gt;
** Node Authentication by means of [[X.509|X.509 certificates]]&lt;br /&gt;
** Message Authentication&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-4&amp;#039;&amp;#039; — Security for any profiles including [[Manufacturing Message Specification|MMS]] (e.g., ICCP-based [[IEC 60870-6]], [[IEC 61850]], etc.).&lt;br /&gt;
** Authentication for MMS&lt;br /&gt;
** TLS (RFC 2246)is inserted between RFC 1006 &amp;amp; RFC 793 to provide transport layer security&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-5&amp;#039;&amp;#039; — Security for any profiles including [[IEC 60870-5]] (e.g., [[DNP3]] derivative)&lt;br /&gt;
** TLS for TCP/IP profiles and encryption for serial profiles.&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-6&amp;#039;&amp;#039; — Security for [[IEC 61850]] profiles.&lt;br /&gt;
** [[VLAN]] use is made as mandatory for [[GOOSE]]&lt;br /&gt;
** RFC 2030 to be used for SNTP&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-7&amp;#039;&amp;#039; — Security through network and system management.&lt;br /&gt;
** Defines [[Management Information Base]] (MIBs) that are specific for the power industry, to handle network and system management through [[SNMP]] based methods.&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-8&amp;#039;&amp;#039; — Role-based access control.&lt;br /&gt;
** Covers the access control of users and automated agents to data objects in power systems by means of role-based access control ([[RBAC]]).&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-9&amp;#039;&amp;#039; — Key Management&lt;br /&gt;
** Describes the correct and safe usage of safety-critical parameters, e.g. passwords, encryption keys.&lt;br /&gt;
** Covers the whole life cycle of cryptographic information (enrollment, creation, distribution, installation, usage, storage and removal). &lt;br /&gt;
** Methods for algorithms using asymmetric cryptography&lt;br /&gt;
*** Handling of [[Public_key_certificate|digital certificates ]] (public / private key) &lt;br /&gt;
*** Setup of the [[Public_key_infrastructure|PKI]] environment with [[X.509|X.509 certificates]]&lt;br /&gt;
*** Certificate enrollment by means of [[Simple_Certificate_Enrollment_Protocol|SCEP]] / [[Enrollment over Secure Transport|EST]], while allowing the use of other enrollment protocols&lt;br /&gt;
*** [[Certificate revocation]] by means of [[Revocation_list|CRL]] / [[Online_Certificate_Status_Protocol|OCSP]]&lt;br /&gt;
** A secure distribution mechanism based on [[Group_Domain_of_Interpretation|GDOI]] and the [[Internet_Key_Exchange|IKEv1]] protocol is presented for the usage of symmetric keys, e.g. session keys.&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-10&amp;#039;&amp;#039; — Security Architecture&lt;br /&gt;
** Explanation of security architectures for the entire IT infrastructure&lt;br /&gt;
** Identifying critical points of the communication architecture, e.g.  substation control center, substation automation&lt;br /&gt;
** Appropriate mechanisms security requirements, e.g. data encryption, user authentication&lt;br /&gt;
** Applicability of well-proven standards from the IT domain, e.g. VPN tunnel, secure FTP, HTTPS&lt;br /&gt;
* &amp;#039;&amp;#039;IEC 62351-11&amp;#039;&amp;#039; — Security for XML Files&lt;br /&gt;
** Embedding of the original XML content into an XML container&lt;br /&gt;
** Date of issue and access control for XML data&lt;br /&gt;
** X.509 signature for authenticity of XML data&lt;br /&gt;
** Optional data encryption&lt;br /&gt;
&lt;br /&gt;
==See also==&lt;br /&gt;
* [[IEC TC 57]]&lt;br /&gt;
* [[List of IEC technical committees]]&lt;br /&gt;
&lt;br /&gt;
== External links ==&lt;br /&gt;
* [http://ipcomm.de/protocol/IEC62351/en/sheet.html Application of the IEC 62351 at IPCOMM GmbH]&lt;br /&gt;
* [https://web.archive.org/web/20150924001524/http://www.epri.com/abstracts/Pages/ProductAbstract.aspx?ProductId=000000003002003738  Report about the implementation of IEC 62351-7]&lt;br /&gt;
* {{IEC|62351}}&lt;br /&gt;
{{List of International Electrotechnical Commission standards}}&lt;br /&gt;
{{List of automation protocols}}&lt;br /&gt;
[[Category:IEC standards|#62351]]&lt;br /&gt;
[[Category:Electric power]]&lt;br /&gt;
[[Category:Computer network security]]&lt;/div&gt;</summary>
		<author><name>RS-485</name></author>
	</entry>
</feed>