Prosumer Nanogrids: A Cybersecurity Assessment

Nanogrids are customer deployments that can generate and inject electricity into the power grid. These deployments are based on behind-the-meter renewable energy resources and are labeled as “prosumer setups”, allowing customers to not only consume electricity, but also produce...

Full description

Bibliographic Details
Main Authors: Yousif Dafalla, Bo Liu, Dalton A. Hahn, Hongyu Wu, Reza Ahmadi, Alexandru G. Bardas
Format: Article
Language:English
Published: IEEE 2020-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/9141261/
id doaj-f463fa26cc73477db3926ec120d09d49
record_format Article
spelling doaj-f463fa26cc73477db3926ec120d09d492021-03-30T03:36:11ZengIEEEIEEE Access2169-35362020-01-01813115013116410.1109/ACCESS.2020.30096119141261Prosumer Nanogrids: A Cybersecurity AssessmentYousif Dafalla0https://orcid.org/0000-0003-0476-7367Bo Liu1https://orcid.org/0000-0002-2965-7714Dalton A. Hahn2https://orcid.org/0000-0002-7117-2155Hongyu Wu3https://orcid.org/0000-0002-5223-6635Reza Ahmadi4https://orcid.org/0000-0002-3969-7146Alexandru G. Bardas5https://orcid.org/0000-0003-3043-5905Department of Electrical Engineering and Computer Science, The University of Kansas, Lawrence, KS~, USADepartment of Electrical and Computer Engineering, Kansas State University, Manhattan, KS, USADepartment of Electrical Engineering and Computer Science, The University of Kansas, Lawrence, KS~, USADepartment of Electrical and Computer Engineering, Kansas State University, Manhattan, KS, USADepartment of Electrical Engineering and Computer Science, The University of Kansas, Lawrence, KS~, USADepartment of Electrical Engineering and Computer Science, The University of Kansas, Lawrence, KS~, USANanogrids are customer deployments that can generate and inject electricity into the power grid. These deployments are based on behind-the-meter renewable energy resources and are labeled as “prosumer setups”, allowing customers to not only consume electricity, but also produce it. A residential nanogrid is comprised of a physical layer that is a household-scale electric power system, and a cyber layer that is used by manufacturers and/or grid operators to remotely monitor and control the nanogrid. With the increased penetration of renewable energy resources, nanogrids are at the forefront of a paradigm shift in the operational landscape and their correct operation is vital to the electric power grid. In this paper, we perform a cybersecurity assessment of a state-of-the art residential nanogrid deployment. For this purpose, we deployed a real-world experimental nanogrid setup that is based on photovoltaic (PV) generation. We analyzed the security and the resiliency of this system at both the cyber and physical layers. While we noticed improvements in the cybersecurity measures employed in the current nanogrid compared to previous generations, there are still major concerns. Our experiments show that these concerns range from exploiting well-known protocols, such as Secure Shell (SSH) and Domain Name Service (DNS), to the leakage of confidential information, and major shortcomings in the software updating mechanism. While the compromise of multiple nanogrids can have a negative effect on the entire power grid, we focus our analysis on individual households and have determined through Simulink-based simulations the economic loss of a compromised deployment.https://ieeexplore.ieee.org/document/9141261/Cyber-attackscyber-physical systemscybersecuritydistributed energy resourcesCPS gatewaymicrogrids
collection DOAJ
language English
format Article
sources DOAJ
author Yousif Dafalla
Bo Liu
Dalton A. Hahn
Hongyu Wu
Reza Ahmadi
Alexandru G. Bardas
spellingShingle Yousif Dafalla
Bo Liu
Dalton A. Hahn
Hongyu Wu
Reza Ahmadi
Alexandru G. Bardas
Prosumer Nanogrids: A Cybersecurity Assessment
IEEE Access
Cyber-attacks
cyber-physical systems
cybersecurity
distributed energy resources
CPS gateway
microgrids
author_facet Yousif Dafalla
Bo Liu
Dalton A. Hahn
Hongyu Wu
Reza Ahmadi
Alexandru G. Bardas
author_sort Yousif Dafalla
title Prosumer Nanogrids: A Cybersecurity Assessment
title_short Prosumer Nanogrids: A Cybersecurity Assessment
title_full Prosumer Nanogrids: A Cybersecurity Assessment
title_fullStr Prosumer Nanogrids: A Cybersecurity Assessment
title_full_unstemmed Prosumer Nanogrids: A Cybersecurity Assessment
title_sort prosumer nanogrids: a cybersecurity assessment
publisher IEEE
series IEEE Access
issn 2169-3536
publishDate 2020-01-01
description Nanogrids are customer deployments that can generate and inject electricity into the power grid. These deployments are based on behind-the-meter renewable energy resources and are labeled as “prosumer setups”, allowing customers to not only consume electricity, but also produce it. A residential nanogrid is comprised of a physical layer that is a household-scale electric power system, and a cyber layer that is used by manufacturers and/or grid operators to remotely monitor and control the nanogrid. With the increased penetration of renewable energy resources, nanogrids are at the forefront of a paradigm shift in the operational landscape and their correct operation is vital to the electric power grid. In this paper, we perform a cybersecurity assessment of a state-of-the art residential nanogrid deployment. For this purpose, we deployed a real-world experimental nanogrid setup that is based on photovoltaic (PV) generation. We analyzed the security and the resiliency of this system at both the cyber and physical layers. While we noticed improvements in the cybersecurity measures employed in the current nanogrid compared to previous generations, there are still major concerns. Our experiments show that these concerns range from exploiting well-known protocols, such as Secure Shell (SSH) and Domain Name Service (DNS), to the leakage of confidential information, and major shortcomings in the software updating mechanism. While the compromise of multiple nanogrids can have a negative effect on the entire power grid, we focus our analysis on individual households and have determined through Simulink-based simulations the economic loss of a compromised deployment.
topic Cyber-attacks
cyber-physical systems
cybersecurity
distributed energy resources
CPS gateway
microgrids
url https://ieeexplore.ieee.org/document/9141261/
work_keys_str_mv AT yousifdafalla prosumernanogridsacybersecurityassessment
AT boliu prosumernanogridsacybersecurityassessment
AT daltonahahn prosumernanogridsacybersecurityassessment
AT hongyuwu prosumernanogridsacybersecurityassessment
AT rezaahmadi prosumernanogridsacybersecurityassessment
AT alexandrugbardas prosumernanogridsacybersecurityassessment
_version_ 1724183246414020608