CN104168268A - Power grid object access control device capable of realizing safety configuration and access of power grid model data - Google Patents

Power grid object access control device capable of realizing safety configuration and access of power grid model data Download PDF

Info

Publication number
CN104168268A
CN104168268A CN201410355049.9A CN201410355049A CN104168268A CN 104168268 A CN104168268 A CN 104168268A CN 201410355049 A CN201410355049 A CN 201410355049A CN 104168268 A CN104168268 A CN 104168268A
Authority
CN
China
Prior art keywords
network model
access control
control apparatus
opc
electric network
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201410355049.9A
Other languages
Chinese (zh)
Other versions
CN104168268B (en
Inventor
谢善益
杨强
范颖
杜双育
梁成辉
徐庆平
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Electric Power Research Institute of Guangdong Power Grid Co Ltd
Original Assignee
WEIHAI CIMSTECH CO Ltd
Electric Power Research Institute of Guangdong Power Grid Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by WEIHAI CIMSTECH CO Ltd, Electric Power Research Institute of Guangdong Power Grid Co Ltd filed Critical WEIHAI CIMSTECH CO Ltd
Priority to CN201410355049.9A priority Critical patent/CN104168268B/en
Publication of CN104168268A publication Critical patent/CN104168268A/en
Application granted granted Critical
Publication of CN104168268B publication Critical patent/CN104168268B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y04INFORMATION OR COMMUNICATION TECHNOLOGIES HAVING AN IMPACT ON OTHER TECHNOLOGY AREAS
    • Y04SSYSTEMS INTEGRATING TECHNOLOGIES RELATED TO POWER NETWORK OPERATION, COMMUNICATION OR INFORMATION TECHNOLOGIES FOR IMPROVING THE ELECTRICAL POWER GENERATION, TRANSMISSION, DISTRIBUTION, MANAGEMENT OR USAGE, i.e. SMART GRIDS
    • Y04S10/00Systems supporting electrical power generation, transmission or distribution
    • Y04S10/40Display of information, e.g. of data or controls
    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y04INFORMATION OR COMMUNICATION TECHNOLOGIES HAVING AN IMPACT ON OTHER TECHNOLOGY AREAS
    • Y04SSYSTEMS INTEGRATING TECHNOLOGIES RELATED TO POWER NETWORK OPERATION, COMMUNICATION OR INFORMATION TECHNOLOGIES FOR IMPROVING THE ELECTRICAL POWER GENERATION, TRANSMISSION, DISTRIBUTION, MANAGEMENT OR USAGE, i.e. SMART GRIDS
    • Y04S40/00Systems for electrical power generation, transmission, distribution or end-user application management characterised by the use of communication or information technologies, or communication or information technology specific aspects supporting them
    • Y04S40/20Information technology specific aspects, e.g. CAD, simulation, modelling, system security

Abstract

The invention aims at providing a power grid object access control device capable of realizing safety configuration and access of power grid model data. The device is characterized by including a layered division and security permission configuration module of the power grid model data and an access security control module; the layered division and security permission configuration module realizes layered division and security permission configuration of the power grid model data; and the access security control module realizes access security control of a power grid model. Through hierarchical organization of the power grid model according to region, sub regions, power stations and voltage levels, classification of other power grid objects such as devices, terminals and measurement devices and the like into corresponding hierarchies according to incidence relations, and combination of access permissions of system access users for the data and the hierarchical result, the device realizes access security control which is appropriate in granularity and enables security access of operation data of the whole power grid to be corresponding to a management system which is currently in effect.

Description

A kind of power network object access control apparatus that can realize the configuration of electric network model data security and access
Technical field
The present invention relates to secure access and the control of electric network data, relate in particular to a kind of power network object access control apparatus that can realize the configuration of electric network model data security and access is provided.
Background technology
The region that the production management of electric power system distributes according to electrical network conventionally, the features such as electric pressure of electrical network, electrical network is divided into a plurality of subnets of hierarchical block, as by the electric characteristic such as electric pressure, electrical network can be divided into state's tune, network regulation, province adjust, adjust, the multi-stage scheduling center such as county's tune; And in same rank, the region that can distribute according to electrical network is again divided into a plurality of control centres by same other electrical network of level; The final management system that forms a set of " United Dispatching, multi-zone supervision ".
In recent years, along with the development of electrical network business and the raising of management expectancy, the requirement of the information sharing and collaboration between each professional application of electric power system, between all departments, between the superior and the subordinate's scheduling institution is more and more higher.Power control center need to meet under the requirement of electric power dispatching system network security isolation, the various information resources such as integration management multi-stage scheduling electric network model, data, figure, set up unified operation of power networks data center, realize sharing of power system information resource, and then provide reliable data resource and strong comprehensive analysis and application means for dispatching of power netwoks production, administrative decision.
Being accompanied by unified operation of power networks data center and coming, is the demand to message reference management and control.Before construction operation of power networks data center, corresponding with the management system of " United Dispatching, multi-zone supervision ", each control centre all set up and safeguarding jurisdiction electrical network detailed electric network model structural parameters and and service data, and be responsible for corresponding operation of power networks data and carry out general safety management and control.In Dan operation of power networks data center, each control centre operation of power networks data be incorporated into together, must be more careful and flexible to the security management and control of operation of power networks data access.
In prior art, directly utilize system based on database security access control the access of operation of power networks data is carried out to management and control is current common mode.By being set, user whether the access rights of appointed object type (or form), object instance (or charting) are reached to the management and control to specific data access.
And the shortcoming of safe access control based on database is: security control granularity is not mated with electric power system reality, the layering that electric power system is taked, subregion security management and control, and database security management, as relational database system, towards be form, charting; This just causes corresponding security control to realize complexity, access control efficiency is low.
Another common security solution is directly for the control of authority that conducts interviews of OPC UA server electric network model node.
OPC:OLE for Process Control, for the OLE of process control.Be an industrial standard, managing this standard international organization is OPC foundation.OPC comprises the regular set of a whole set of interface, attribute and method, for process control and automated manufacturing system.
OPC UA:OPC Unified Architecture, the new standard agreement for alternative OPC of OPC foundation regulation.UA is unified shader.
OPC UA be a kind of by OPC foundation stipulate, for being independent of the new standard agreement of communicating by letter of manufacturer and platform, particularly in process automation.OPC UA provides consistent, a sufficient address space and service model, can be used to all operation of power networks data in operation of power networks data center, comprise Power System description data, real time data, in warning and event and their historical information unification to OPC UA server address space, and take with a set of unified service as they outwards provide interface.OPC UA also provides a security model, provided which kind of security mechanism available and be configured to meet the demand for security to specific installation.Security model comprises standard security and parameter.The fail safe of application-level relies on the communication port of a safety, and this communication port is effective all the time in application program conversation process, and guarantees all exchanged information integrities.When a session establishment, client and server application program is consulted secured communication channel of structure and exchange shows that the software authentication book of client and server identity also will exchange the information that function can be provided separately.
Directly the shortcoming of the safe access control based on OPC UA server electric network model node is: take OPC UA node as security control basis, for ground, adjust electric network model OPC UA node with regard to reaching the electric network model of 1,000,000 orders of magnitude, its security control granularity is meticulous, and corresponding system configuration maintenance workload is large.And, owing to not mating with the existing way to manage of electrical network production management, when electric network model or dispatching of power netwoks authority change, be difficult to automatically carry out security configuration migration.
Summary of the invention
The object of the present invention is to provide a kind of power network object access control apparatus that can realize the configuration of electric network model data security and access, this device can be divided user's authentication and authorization mechanism to inherit with the level of electric network model, more careful, the flexible and efficient security management and control of realization to operation of power networks data access, and this device can be realized the access control corresponding, suitable dynamics with existing management system to the secure access of whole operation of power networks data.
Object of the present invention can realize by following technical measures:
Can realize the power network object access control apparatus to the configuration of electric network model data security and access, described device comprises:
The layering division of electric network model data and security permission configuration module and access security control module; Described layering division and security permission configuration module are realized layering division and the security permission configuration of electric network model data, comprise following content:
(11) electric network model subregion initialization:
Power network object access control apparatus obtains electric network model data from OPC UA server, and the electric network model object of the area in electric network model data, equipment container, equipment, measurement, measuring value type is carried out to level division according to the incidence relation between interzone, area and equipment container, between dissimilar equipment container, between equipment container and equipment room, equipment and measurement, between measurement and measuring value;
Described interzone incidence relation, refers to the inclusion relation between the sub-area of " province-city-county " such area->;
Described equipment container is a kind of abstract concept, comprises power plant, transformer station, electric pressure, interval, circuit; Wherein, described power plant, transformer station are referred to as plant stand conventionally; Formed by the equipment with identical voltage in described electric pressure implication Wei Yige transformer station one equipment container in logic; Closely connect, have that the part of some common function forms in the described Yi Ge of being spaced apart transformer station one equipment container in logic; The type of the capital equipment that interval comprises according to it is conventionally classified as different intervals, comprises electric power outgoing line interval, bus interval, main transformer interval;
Incidence relation between described area and equipment container, refers to the inclusion relation between area and plant stand;
Incidence relation between described equipment container, refers to that plant stand comprises electric pressure, electric pressure comprises interval and plant stand directly comprises these several incidence relations of interval;
The incidence relation of described equipment container and equipment room, refers to the inclusion relation between transformer station, electric pressure, interval and equipment;
Incidence relation between described equipment and measurement, refers to the inclusion relation between equipment and measurement;
Incidence relation between described measurement and measuring value, refers to the inclusion relation between measurement and measuring value;
(12) asynchronous subscription: power network object access control apparatus is subscribed to and monitored electric network model change events to OPC UA server, OPC UA server is when the electric network model of its management changes, for the electric network model event change event of asynchronous subscription, the asynchronous notifications that supplies a model and change to power network object access control apparatus; The type of the electric network model change events of being concerned about comprises the incidence relation modification between power network object increase, deletion, power network object;
(13) power network object access control apparatus responds asynchronous notifications corresponding to asynchronous subscription, according to the additions and deletions of the electric network model carrying in asynchronous notifications, converts to breath, safeguards dynamically the division of electric network model level;
(14) bookkeeping is set: specify the access rights of specific user to different electric network model level branch, the access right existence of supporting " reads ", " establishment ", " change " and " deletion ", for electrical network level branch, for the authority of next level, specify the unified authority covering father's level to specify;
Described access security control module realizes the access security of electric network model and controls, and described access security is controlled and comprised following content:
(21) OPC UA client, OPC UA server end through consultation, are set up escape way, and the other side's identity are authenticated, and establish now client session and are confirmed to be " user 1 ";
(22) OPC UA client is initiated electric network model associative operation;
(23) whether OPC UA server has suitable authority to power network object access control apparatus inquiring user;
(24) first power network object access control apparatus confirms the affiliated Grid of electric network model object corresponding to UA node that client is accessed, and then whether the identity of inquiring client terminal, have the corresponding authority to target area, if had, return to " permission ", otherwise, return to " refusal "; And as replying that step (23) is called, to OPC UA server, return to treatment step result;
(25) according to step (24), return results, if " permission ", execution step (22) solicit operation, returns to operation execution result; Otherwise directly to OPC UA client, return to " without access rights, operation is rejected ";
(26) as replying that step (22) is called, to OPC UA client, return to step (25) treatment step result.
The present invention contrasts prior art, has the following advantages:
The present invention proposes by by OPC UA security model, and particularly user's authentication and authorization mechanism is wherein integrated with the hierarchical partition of electric network model, realizes more careful, the flexible and efficient security management and control to operation of power networks data access.
The present invention is by pressing hierarchical organization by electric network model according to area-> area-> plant stand-> electric pressure, other power network object, as equipment, terminal, measurement etc. belong in corresponding level according to its incidence relation, and system access user is combined with this level result to the access rights of data, realized the secure access of whole operation of power networks data and existing management system access security corresponding, suitable particle size has been controlled.
Accompanying drawing explanation
Fig. 1 is the flow chart that electric network model data hierarchy is divided and security permission configures;
Fig. 2 is the flow chart that electric network model access security control strategy is implemented;
Fig. 3 is that electric network model tree level is divided schematic diagram.
Embodiment
The invention provides a kind of that can be achieved as follows object and can realize the power network object access control apparatus to the configuration of electric network model data security and access,
1. corresponding with the existing management system of electrical network production management, electric network model area-> area-> plant stand-> electric pressure stratification method for organizing.
2. utilize OPC UA model modification to change subscription, the Dynamic Maintenance of distribution technology realization to electric network model stratification tissue.
3. based on OPC UA security model, combine with electric network model stratification tissue, and operation of power networks data controlled access technology during the operation realizing.
This power network object access control apparatus comprises: the layering division of electric network model data and security permission configuration module and access security control module;
As shown in Figure 1, layering division and security permission configuration module are realized layering division and the security permission configuration of electric network model data, comprise the steps:
(11) electric network model subregion initialization step: power network object access control apparatus obtains electric network model data from OPC UA server, carries out level division by the electric network model object of the area in electric network model data, equipment container, equipment, measurement, measuring value type according to the incidence relation between interzone, area and equipment container, between dissimilar equipment container, between equipment container and equipment room, equipment and measurement, between measurement and measuring value;
Described interzone incidence relation, refers to the inclusion relation between the sub-area of " province-city-county " such area->.
Described equipment container is a kind of abstract concept, comprises power plant, transformer station, electric pressure, interval, circuit.Wherein, described power plant, transformer station are referred to as plant stand conventionally.Formed by the equipment with identical voltage in described electric pressure implication Wei Yige transformer station one equipment container in logic.Closely connect, have that the part of some common function forms in the described Yi Ge of being spaced apart transformer station one equipment container in logic.The type of the capital equipment that interval comprises according to it is conventionally classified as different intervals, for example electric power outgoing line interval, bus interval, main transformer interval.
Incidence relation between described area and equipment container, refers to the inclusion relation between area and plant stand.
Incidence relation between described equipment container, refers to that plant stand comprises electric pressure, electric pressure comprises interval and plant stand directly comprises these several incidence relations of interval.
The incidence relation of described equipment container and equipment room, refers to the inclusion relation between transformer station, electric pressure, interval and equipment.
Incidence relation between described equipment and measurement, refers to the inclusion relation between equipment and measurement.
Incidence relation between described measurement and measuring value, refers to the inclusion relation between measurement and measuring value.
(12) asynchronous subscription: power network object access control apparatus is subscribed to and monitored electric network model change events to OPC UA server.
First, OPC UA server when the electric network model of its management changes, for the electric network model event change event of asynchronous subscription, the asynchronous notifications that supplies a model and change to power network object access control apparatus.Consistent with the power network object model maintenance in OPC UA server in order to ensure the power network object of managing in power network object access control apparatus, power network object access control apparatus is subscribed to and is monitored electric network model change events to OPC UA server, the electric network model change type of being concerned about comprises that power network object increases, delete, incidence relation between power network object is revised, for example the scheduling of Yi Ge transformer station power is adjusted by economizing to adjust to transfer to, will cause the incidence relation of corresponding area (province)-> area (districts and cities)-> plant stand to change.
According to the inclusion relation between area-> area-> plant stand-> electric pressure-> interval, electric network model can be divided into the level of tree shown in Fig. 3 from network structure, thereby by the equipment in electric network model, measurement belongs in corresponding tree branch according to incidence relation, in described tree, area is root node, each area-> area-> plant stand-> electric pressure forms a concrete branch, like this, equipment, just measuring can be according to itself and equipment container and incidence relation each other, is attributed in corresponding tree branch.
Due in an OPC UA server, each electric network model object is corresponding to an OPC UA node, and between these OPC UA nodes, can set up mutual association according to the relation between the electric network model object of its representative and quote, naturally also just can be divided in a concrete electric network model level branch according to the electric network model object of its representative.Therefore, entered after the division of step (1), the OPC UA node that all electric network model objects are corresponding, is all divided in a concrete electric network model level branch.
OPC UA server, when the electric network model of its management changes, can produce corresponding model and change description, and clearly subscribe to the application of these variations before to those, as power network object access control apparatus, sends the model variation producing and describes.Model changes to be described, and in OPC UA standard, is referred to as model change events.
(13) power network object access control apparatus responds asynchronous notifications corresponding to asynchronous subscription, according to the additions and deletions of the electric network model carrying in asynchronous notifications, converts to breath, safeguards dynamically the division of electric network model level.
Electric network model between described power network object access control apparatus and OPC UA server is synchronous, by one group of asynchronous operation, completes, and comprises asynchronous subscription and asynchronous notifications:
A. asynchronous subscription, power network object access control apparatus is subscribed to the model change events of being concerned about
B. asynchronous notifications, when electric network model changes, OPC UA server produces electric network model change events, and sends to power network object access control apparatus.Between the subscription operation of this operation and power network object access control apparatus, do not synchronize execution, but asynchronous execution.
(14) bookkeeping is set step: specify the access rights of specific user to different electric network model level branch, the access right existence of supporting " reads ", " establishment ", " change " and " deletion ", for electrical network level branch, for the authority of next level, specify the unified authority covering father's level to specify, for example specify " user 1 " that " xx province aa city " had and " read, upgrade " authority, and " xx province aa city xxx transformer station " had to " reading " authority, " user 1 " is deprived of " renewal " authority of " xx province aa city xxx transformer station ".
As shown in Figure 2, access security control module realizes the access security of electric network model and controls, and described access security is controlled and comprised the steps:
(21) OPC UA client, OPC UA server end through consultation, are set up escape way, and the other side's identity are authenticated, and establish now client session and are confirmed to be " user 1 ".
(22) OPC UA client is initiated electric network model associative operation.
(23) whether OPC UA server has suitable authority to power network object access control apparatus inquiring user.Such as, if the associative operation of step (22) is Browse (Node1) operation of OPC UA, check whether read (user 1, Node1, " reading ") access request meets; If the associative operation of step (22) is DeleteNodes (Node2) operation, check whether delete (user 1, Node2, " deletion ") access request meets.
(24) first power network object access control apparatus confirms the affiliated Grid of electric network model object corresponding to UA node that client is accessed, and then whether the identity of inquiring client terminal, have the corresponding authority to target area, if had, return to " permission ", otherwise, return to " refusal ".For example, when the associative operation of step (22) is DeleteNodes (Node2) operation, inquires Node2 and belong to " xx province dd city ", and " user 1 " does not have " erase right ", returns to refusal.
And as replying that step (23) is called, to OPC UA server, return to treatment step result.
(25) according to step (24), return results, if " permission ", execution step (22) solicit operation, returns to operation execution result; Otherwise directly to OPC UA client, return to " without access rights, operation is rejected ".
(26) as replying that step (22) is called, to OPC UA client, return to step (25) treatment step result.
Embodiments of the present invention are not limited to this; under the above-mentioned basic fundamental thought of the present invention prerequisite; modification, replacement or the change to other various ways that content of the present invention is made according to the ordinary skill knowledge of this area and customary means, within all dropping on rights protection scope of the present invention.

Claims (9)

1. can realize the power network object access control apparatus to the configuration of electric network model data security and access, it is characterized in that described device comprises: the layering division of electric network model data and security permission configuration module and access security control module;
Described layering division and security permission configuration module are realized layering division and the security permission configuration of electric network model data, comprise following content:
(11) electric network model subregion initialization:
Power network object access control apparatus obtains electric network model data from OPC UA server, and the electric network model object of the area in electric network model data, equipment container, equipment, measurement, measuring value type is carried out to level division according to the incidence relation between interzone, area and equipment container, between dissimilar equipment container, between equipment container and equipment room, equipment and measurement, between measurement and measuring value;
(12) asynchronous subscription: power network object access control apparatus is subscribed to and monitored electric network model change events to OPC UA server, OPC UA server is when the electric network model of its management changes, for the electric network model event change event of asynchronous subscription, the asynchronous notifications that supplies a model and change to power network object access control apparatus;
(13) power network object access control apparatus responds asynchronous notifications corresponding to asynchronous subscription, according to the additions and deletions of the electric network model carrying in asynchronous notifications, converts to breath, safeguards dynamically the division of electric network model level;
(14) bookkeeping is set: specify the access rights of specific user to different electric network model level branch, the access right existence of supporting " reads ", " establishment ", " change " and " deletion ", for electrical network level branch, for the authority of next level, specify the unified authority covering father's level to specify;
Described access security control module realizes the access security of electric network model and controls, and described access security is controlled and comprised following content:
(21) OPC UA client, OPC UA server end through consultation, are set up escape way, and the other side's identity are authenticated, and establish now client session and are confirmed to be " user 1 ";
(22) OPC UA client is initiated electric network model associative operation;
(23) whether OPC UA server has suitable authority to power network object access control apparatus inquiring user;
(24) first power network object access control apparatus confirms the affiliated Grid of electric network model object corresponding to UA node that client is accessed, and then whether the identity of inquiring client terminal, have the corresponding authority to target area, if had, return to " permission ", otherwise, return to " refusal "; And as replying that step (23) is called, to OPC UA server, return to treatment step result;
(25) according to step (24), return results, if " permission ", execution step (22) solicit operation, returns to operation execution result; Otherwise directly to OPC UA client, return to " without access rights, operation is rejected ";
(26) as replying that step (22) is called, to OPC UA client, return to step (25) treatment step result.
2. power network object access control apparatus according to claim 1, is characterized in that: described interzone incidence relation, refers to the inclusion relation between the sub-area of " province-city-county " such area->.
3. power network object access control apparatus according to claim 1, is characterized in that: described equipment container is a kind of abstract concept, comprises power plant, transformer station, electric pressure, interval, circuit; Wherein, described power plant, transformer station are referred to as plant stand conventionally; Formed by the equipment with identical voltage in described electric pressure implication Wei Yige transformer station one equipment container in logic; Closely connect, have that the part of some common function forms in the described Yi Ge of being spaced apart transformer station one equipment container in logic; The type of the capital equipment that interval comprises according to it is conventionally classified as different intervals, comprises electric power outgoing line interval, bus interval, main transformer interval.
4. power network object access control apparatus according to claim 1, is characterized in that: incidence relation between described area and equipment container, refers to the inclusion relation between area and plant stand.
5. power network object access control apparatus according to claim 1, is characterized in that: the incidence relation between described equipment container, refers to that plant stand comprises electric pressure, electric pressure comprises interval and plant stand directly comprises these several incidence relations of interval.
6. power network object access control apparatus according to claim 1, is characterized in that: the incidence relation of described equipment container and equipment room, refers to the inclusion relation between transformer station, electric pressure, interval and equipment.
7. power network object access control apparatus according to claim 1, is characterized in that: the incidence relation between described equipment and measurement, refers to the inclusion relation between equipment and measurement.
8. power network object access control apparatus according to claim 1, is characterized in that: the incidence relation between described measurement and measuring value, refers to the inclusion relation between measurement and measuring value.
9. power network object access control apparatus according to claim 1, is characterized in that: the type of described electric network model change events comprises the incidence relation modification between power network object increase, deletion, power network object.
CN201410355049.9A 2014-07-24 2014-07-24 A kind of power network object access control apparatus that can realize grid model data security configuration and access Active CN104168268B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410355049.9A CN104168268B (en) 2014-07-24 2014-07-24 A kind of power network object access control apparatus that can realize grid model data security configuration and access

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410355049.9A CN104168268B (en) 2014-07-24 2014-07-24 A kind of power network object access control apparatus that can realize grid model data security configuration and access

Publications (2)

Publication Number Publication Date
CN104168268A true CN104168268A (en) 2014-11-26
CN104168268B CN104168268B (en) 2016-01-20

Family

ID=51911892

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410355049.9A Active CN104168268B (en) 2014-07-24 2014-07-24 A kind of power network object access control apparatus that can realize grid model data security configuration and access

Country Status (1)

Country Link
CN (1) CN104168268B (en)

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104506528A (en) * 2014-12-23 2015-04-08 国家电网公司 Integrated network safety access method
CN105468689A (en) * 2015-11-17 2016-04-06 广东电网有限责任公司电力科学研究院 Power grid object level authority configuration and inheritance method
CN105717904A (en) * 2016-05-09 2016-06-29 柴俊沙 Intelligent irrigation device based on OPC protocol
CN107451188A (en) * 2017-06-26 2017-12-08 中国电力科学研究院 A kind of dissemination method and system of power grid regulation model data multistage combination of nodes
WO2017214802A1 (en) * 2016-06-13 2017-12-21 深圳天珑无线科技有限公司 Distributed network message processing method and node
CN109756557A (en) * 2018-11-23 2019-05-14 比亚迪股份有限公司 User right server and method of servicing and system based on user right
CN112235298A (en) * 2020-10-14 2021-01-15 国网电子商务有限公司 Data security classification dynamic access control method based on zero trust model
CN112765134A (en) * 2020-12-29 2021-05-07 广东电网有限责任公司电力科学研究院 Generation method and system of electric power internet of things level object model
CN113343300A (en) * 2021-06-21 2021-09-03 杭州市电力设计院有限公司余杭分公司 Power grid data safety protection method and distributed power grid data safety protection system
CN115203172A (en) * 2022-06-30 2022-10-18 北京亚控科技发展有限公司 Model construction method, model data subscription method, model construction device, model data subscription device, electronic equipment and medium

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080219186A1 (en) * 2007-03-05 2008-09-11 Grid Net, Inc. Energy switch router
CN101272051A (en) * 2008-05-06 2008-09-24 江苏省电力公司南京供电公司 Information system integration method of electric network production control region and management information region
CN101482901A (en) * 2009-02-06 2009-07-15 中国电力科学研究院 System and method for providing power data correlated service based on WAN
CN101540505A (en) * 2009-01-09 2009-09-23 南京南瑞继保电气有限公司 Building method of multistage multi-region interconnected network data model
CN101751426A (en) * 2008-12-11 2010-06-23 北京市电力公司 Method and device for realizing information sharing between SCADA and GIS
CN201518429U (en) * 2009-10-26 2010-06-30 江西省电力科学研究院 Electric energy qualitative data concentrator for digitalization transforming plant
CN102035210A (en) * 2011-01-05 2011-04-27 河北省电力研究院 Relaxative-constraint powerless equipment optimization method for power system

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20080219186A1 (en) * 2007-03-05 2008-09-11 Grid Net, Inc. Energy switch router
CN101272051A (en) * 2008-05-06 2008-09-24 江苏省电力公司南京供电公司 Information system integration method of electric network production control region and management information region
CN101751426A (en) * 2008-12-11 2010-06-23 北京市电力公司 Method and device for realizing information sharing between SCADA and GIS
CN101540505A (en) * 2009-01-09 2009-09-23 南京南瑞继保电气有限公司 Building method of multistage multi-region interconnected network data model
CN101482901A (en) * 2009-02-06 2009-07-15 中国电力科学研究院 System and method for providing power data correlated service based on WAN
CN201518429U (en) * 2009-10-26 2010-06-30 江西省电力科学研究院 Electric energy qualitative data concentrator for digitalization transforming plant
CN102035210A (en) * 2011-01-05 2011-04-27 河北省电力研究院 Relaxative-constraint powerless equipment optimization method for power system

Cited By (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104506528A (en) * 2014-12-23 2015-04-08 国家电网公司 Integrated network safety access method
CN104506528B (en) * 2014-12-23 2018-02-23 国家电网公司 A kind of integral network safety cut-in method
CN105468689A (en) * 2015-11-17 2016-04-06 广东电网有限责任公司电力科学研究院 Power grid object level authority configuration and inheritance method
CN105717904A (en) * 2016-05-09 2016-06-29 柴俊沙 Intelligent irrigation device based on OPC protocol
WO2017214802A1 (en) * 2016-06-13 2017-12-21 深圳天珑无线科技有限公司 Distributed network message processing method and node
CN107451188A (en) * 2017-06-26 2017-12-08 中国电力科学研究院 A kind of dissemination method and system of power grid regulation model data multistage combination of nodes
CN109756557A (en) * 2018-11-23 2019-05-14 比亚迪股份有限公司 User right server and method of servicing and system based on user right
CN112235298A (en) * 2020-10-14 2021-01-15 国网电子商务有限公司 Data security classification dynamic access control method based on zero trust model
CN112235298B (en) * 2020-10-14 2022-03-01 国网电子商务有限公司 Data security classification dynamic access control method and device and electronic equipment
CN112765134A (en) * 2020-12-29 2021-05-07 广东电网有限责任公司电力科学研究院 Generation method and system of electric power internet of things level object model
CN113343300A (en) * 2021-06-21 2021-09-03 杭州市电力设计院有限公司余杭分公司 Power grid data safety protection method and distributed power grid data safety protection system
CN115203172A (en) * 2022-06-30 2022-10-18 北京亚控科技发展有限公司 Model construction method, model data subscription method, model construction device, model data subscription device, electronic equipment and medium
CN115203172B (en) * 2022-06-30 2023-11-07 北京亚控科技发展有限公司 Model construction and model data subscription method and device, electronic equipment and medium

Also Published As

Publication number Publication date
CN104168268B (en) 2016-01-20

Similar Documents

Publication Publication Date Title
CN104168268B (en) A kind of power network object access control apparatus that can realize grid model data security configuration and access
US20230198257A1 (en) Establishing Communication and Power Sharing Links Between Components of a Distributed Energy System
Xu et al. Peer-to-peer multienergy and communication resource trading for interconnected microgrids
Lin et al. Decentralized reactive power optimization method for transmission and distribution networks accommodating large-scale DG integration
Basden et al. How utilities are using blockchain to modernize the grid
Rahbari‐Asr et al. Consensus‐based distributed scheduling for cooperative operation of distributed energy resources and storage devices in smart grids
Shi et al. Real-time energy management in microgrids
CN105406459B (en) Utilize the method for the optimal load flow estimated based on uniformity distributed treatment in power network
CN104102973A (en) Realization method of integral operation and distributed deployment provincial and prefectural electric power scheduling data center
CN103401905B (en) Mobile application platform system for power grid scheduling based on mobile intelligent terminal
EP3602720B1 (en) Method of operating an electrical grid
CN102821160A (en) System and method for multilevel data protection oriented to loose cloud nodes in cloud computing network environment
Bani-Ahmed et al. Foundational support systems of the smart grid: State of the art and future trends
Wang et al. Air conditioner fast dispatching model based on load aggregator and direct load control
Ogle et al. Enhancing responsiveness and resilience with distributed applications in the grid
CN107846297A (en) A kind of user's Explore of Unified Management Ideas for network platform exploitation
Kampezidou et al. Multi-microgrid architecture: optimal operation and control
Taft et al. Ultra large-scale power system control architecture
Mosaddegh et al. Distributed computing architecture for optimal control of distribution feeders with smart loads
Nematkhah et al. Evolution in computing paradigms for internet of things-enabled smart grid applications: their contributions to power systems
CN105071959A (en) Plug-and-play management method and system based on unified registration of power network devices
CN105636031A (en) Packet communication management method, apparatus and system
Taft et al. Ultra large-scale power system control and coordination architecture
Vukojevic et al. An integrated utility microgrid test site ecosystem optimized by an open interoperable distributed intelligence platform
Sanduleac et al. Solutions for digital interaction of a resilient energy community in a service-oriented framework

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C53 Correction of patent of invention or patent application
CB02 Change of applicant information

Address after: 510080 Dongfeng East Road, Dongfeng, Guangdong, Guangzhou, Zhejiang Province, No. 8

Applicant after: ELECTRIC POWER RESEARCH INSTITUTE, GUANGDONG POWER GRID CO., LTD.

Applicant after: WeiHai CIMSTech Co., Ltd.

Address before: 510080 Dongfeng East Road, Dongfeng, Guangdong, Guangzhou, Zhejiang Province, No. 8

Applicant before: Electrical Power Research Institute of Guangdong Power Grid Corporation

Applicant before: WeiHai CIMSTech Co., Ltd.

COR Change of bibliographic data

Free format text: CORRECT: APPLICANT; FROM: ELECTRICAL POWER RESEARCH INSTITUTE OF GUANGDONG POWER GRID CORPORATION TO: ELECTRIC POWER RESEARCH INSTITUTE OF GUANGDONG POWER GRID CO., LTD.

C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
TR01 Transfer of patent right
TR01 Transfer of patent right

Effective date of registration: 20200407

Address after: 510080 Dongfeng East Road, Dongfeng, Guangdong, Guangzhou, Zhejiang Province, No. 8

Patentee after: Electric Power Research Institute of Guangdong Power Grid Co.,Ltd.

Address before: 510080 Dongfeng East Road, Dongfeng, Guangdong, Guangzhou, Zhejiang Province, No. 8

Co-patentee before: WEIHAI CIMSTECH Co.,Ltd.

Patentee before: Electric Power Research Institute of Guangdong Power Grid Co.,Ltd.