QoS of SCADA system interconnecting a Power grid and a Telco network ACK: contribute of WP Interdependency Analysis and Modeling participants
CRPHT CRAT ROMA3 ENEA IEC ITRUST MULT FCTUC UNIBRAD
Talk contents
Motivation of the research: lesson learned by IRRIIS project
MICIE: Prediction of risk of loss/degradation of quality of services of CI operators (i.e. SCADA and NMS operators)
Reference scenario and service oriented approach Fault Isolation and System Restoration (FISR) service Risk of loss/degradation of FISR FISR models Indicators of risk of loss/degradation of FISR
IRRIIS project - scenario of failure propagation from Telco Network to ACEA MV Power Grid A mini black on the Telecom Italia PoP node in Rome
Flooding of a Telecom Italia major telecommunication node has occurred in Rome on January the 2nd 2004. Part of wired and wireless services tilted (a mini black out for Italian Telco infrastructure) causing problems and delays in different infrastructures, including
Fiumicino airport (stop of check-in, ticketing services and of luggage acceptance and switching), ANSI print agency, post offices and banks, ACEA power distribution and the communication network (GARR), connecting the main Italian research institutions.
The mini black out occurred to the Telecom Italia major node in Rome, thePoP of Laurentina -Inviolatella, on Tor Pagnotta street
Green arrow indicates the area where the Telecom centre is located
Luxemburg, 20 May 2010 ICT-SEC 225353 MICIE (5)
IRRIIS project - Telco blackout impacted on services of SCADA operator of ACEA power grid
ACEA SCADA has two main Control Centres: Flaminia Control Centre that is unmanned;
receive/send data and control commands from a first part of the cabins of Rome electrical distribution network;
all the tele-measures, commands and alarms managed by Flaminia Control Centre are dispatched to Ostiense Control Centre using two redundant TELCO communication links at 2Mbits/sec;
One is the main link; the other one is a backup link that is always in stand-by position; such links were expected to be located on two different geographical paths;
IRRIIS project - Loss of services of SCADA operator on failure of SCADA communication links
SCADA system
A Main SCADA Control Centre (MSC) directly controls and supervises the portion of the power grid. A Disaster Recovery SCADA centre (DRS), directly controls and supervises a complementary portion of the power distribution grid. two types of Remote Terminal Units (RTUs), which interface the SCADA with power distribution grid: HV RTUs, located at HV substations, and MV RTUs, located at MV substations.
Telco network
Default Proprietary Network of SCADA Public Switched Telephone network (MSC and DRS are connected, via firewalls, by two redundant, public, high speed Telco links) Global System Mobile connections
IRRIIS project - Portion of grid directly observed by SCADA operator (feeding the flooded Telco node)
IRRIIS project - SCADA system and its mapping on the whole power grid
QoS of SCADA system interconnecting a Power grid and a Telco network: Framework
MICIE: How can models predict the risk of loss/degradation the QoS of SCADA and NMS operators?
QoS of SCADA system interconnecting a Power grid and a Telco network Quality of services of SCADA and NMS operators
How can models predict the risk of loss/degradation the QoS of SCADA and NMS operators with the final aim to improve the quality of power to grid customers?
Reference scenario and service oriented approach Fault Isolation and System Restoration (FISR) service Risk of loss/degradation of FISR FISR models Indicators of risk of loss/degradation of FISR FISR models for the online risk prediction tool
MICIE project
Understanding risk of loss/degradation of (SCADA and NMS operators) services due to interdependencies A recursive approach
methodology scenarios
tools
models
Interconnected networks
MICIE Reference scenario currently includes the following subset of interconnected networks/CIs:
E CI, Electrical CI: a portion of the electrical 22 KV grid and of 161 KV transmission lines C CI, Communication: a portion of communication transmission equipments.
It transfers information and data from Remote Terminal Units and control centres of SCADA and Network Management System for the control and the management of the CIs ( it does not include SCADA and NMS systems)
ICT CI, SCADA system for 22KV grid and NMS system for control and management of fibre optic grid It also includes all the Automatic systems on substations that are included in scenarios
ICT-SEC 225353 MICIE (16)
Currently we are focusing on the service Fault Isolation and System Restoration performed by SCADA operator by means of SCADA control centre of the MV power distribution network
Outages in MV power distribution network, need to be automatically detected, isolated and the network has to be restored to power its end users again.
The quality of FISR service affects the quality of power supply in terms of SAIDI SAIFI CAIFI The degradation/loss of FISR service performed by SCADA operator, is critical because it is strictly correlated to the quality of power supplied to customers. A timely actuation of FISR service, consequential to a permanent failure of the grid, reduces the outage duration
Bayesian Belief Networks (GENIE) [online] Holistic Reductionistic models (CISIA extension) [online] Deterministic and Agent Based simulation (RAO) [online] Raw data models of operational status (algorithm) [online]
Luxemburg, 20 May 2010 ICT-SEC 225353 MICIE (25)
N.O. N.O.
Protection breaker
Tie switch
N.O.
Tie switch
Load Electrical junction Remotly controlled switch MV substation N.O. = Normally Open
Protection breaker
Luxemburg, 20 May 2010 ICT-SEC 225353 MICIE (26)
Gateway
FIU MOSCAD
INTERCONNECTIONS
Dependability of FISR
Connectivity between SCADA control centre and RTUs: minpaths and mincuts (WNRA models) Reliability and availability between SCADA control centre and RTUs (WNRA models) Probability of loss of a service on occurrence of specific events (BBN models) Reliability indices of power grid: SAIDI, SAIFI, CAIDI (RAO simulator)