Account:  - Login  |  Webstore  |  Shopping basket cart
English  |  Français  |  Nederlands

Publication details

Publication CODE Title
NBN EN IEC 62351-8:2020 (2020-06) POWER SYSTEMS MANAGEMENT AND ASSOCIATED INFORMATION EXCHANGE - DATA AND COMMUNICATIONS SECURITY - PART 8: ROLE-BASED ACCESS CONTROL FOR POWER SYSTEM MANAGEMENT
 
Price Excl. VAT Total number of pages, tables and drawings
25.00 € 4.
Description
IEC 62351-8: 2020 is to facilitate role-based access control (RBAC) for power system management. RBAC assigns human users, automated systems, and software applications (collectively called "subjects" in this document) to specified "roles", and restricts their access to only those resources, which the security policies identify as necessary for their roles. As electric power systems become more automated and cyber security concerns become more prominent, it is becoming increasingly critical to ensure that access to data (read, write, control, etc.) is restricted. As in many aspects of security, RBAC is not just a technology; it is a way of running a business. RBAC is not a new concept; in fact, it is used by many operating systems to control access to system resources. Specifically, RBAC provides an alternative to the all-or-nothing super-user model in which all subjects have access to all data, including control commands. RBAC is a primary method to meet the security principle of least privilege, which states that no subject should be authorized more permissions than necessary for performing that subject's task. With RBAC, authorization is separated from authentication. RBAC enables an organization to subdivide super-user capabilities and package them into special user accounts termed roles for assignment to specific individuals according to their associated duties. This subdivision enables security policies to determine who or what systems are permitted access to which data in other systems. RBAC provides thus a means of reallocating system controls as defined by the organization policy. In particular, RBAC can protect sensitive system operations from inadvertent (or deliberate) actions by unauthorized users. Clearly RBAC is not confined to human users though; it applies equally well to automated systems and software applications, i.e., software parts operating independent of user interactions. The following interactions are in scope: - local (direct wired) access to the object by a human user; by a local and automated computer agent, or built-in HMI or panel; - remote (via dial-up or wireless media) access to the object by a human user; - remote (via dial-up or wireless media) access to the object by a remote automated computer agent, e.g. another object at another substation, a distributed energy resource at an end-user's facility, or a control centre application. While this document defines a set of mandatory roles to be supported, the exchange format for defined specific or custom roles is also in scope of this document. Out of scope for this document are all topics which are not directly related to the definition of roles and access tokens for local and remote access, especially administrative or organizational tasks.
Class  C
Available files
ATTENTION: Belgian registered standards (NBN EN or NBN HD) are generally only available in English or French. Only the cover page is translated and the document itself is in English or in French.

Very important notice: 98% of the text of the NBN EN 55XXX, NBN EN 6XXXX comes from the IEC text which is NOT included. This text can be ordered electronically on our website, but isn't available via this link. Please contact the BEC if you want to buy this text and we'll give you the appropriate link.

DE version
EN version
FR version
Status
Status Registered trilingual Belgian standard EN or FR or DE
Situation Currently active
Origin
Committee CLC/TC 57
Power systems management and associated information exchange
Approval
BEC Approval 2020-06-02
NBN Approval 2020-07-15
ICS-Code (International Standards Classification) 33.200
NBN Status New
Date of ratification (d.o.r.) 2020-06-02
Date of availability (d.a.v.) 2020-06-26
Date of announcement (d.o.a.) 2020-09-02
Date of publication (d.o.p.) 2021-03-02
Date of withdrawal former edition (d.o.w.) 2023-06-02
Correspondences with international standards
Relation International standard Date
is identical to EN IEC 62351-8:2020 2020-06-26
is identical to IEC 62351-8:201X
Relations to belgian/foreign publications
Type Origin Code Date
Standard Belgium EN 61850-7-2
Standard Belgium EN 62351-3:2014/A2:2020
Standard Belgium EN IEC 62351-4
Document Foreign IEC/TS 62351-2
Document Foreign IEC/TS 62351-8:2011
Standard Belgium NBN EN 62351-3:2015
Document Foreign RFC 5246