17
CIP Virtualization Overview Project 2016-02 – CIP Modifications CIP SDT Members March, 2020

CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

  • Upload
    others

  • View
    8

  • Download
    0

Embed Size (px)

Citation preview

Page 1: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

CIP Virtualization OverviewProject 2016-02 – CIP Modifications

CIP SDT MembersMarch, 2020

Page 2: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY2

• Virtualization Overview• Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact

Agenda

Page 3: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY3

• What is Virtualization? Comparison to the Interconnected BES

• Reliability Benefits• Security Benefits

Virtualization Overview

Page 4: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY4

Clarification for permitted architectures

Page 5: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY5

Clarification – Hypervisors and Storage Systems

Hypervisors are the EMS of Virtualized infrastructure

• What is a Hypervisor?

• Benefits of Hypervisors

• Challenges for CIP Compliance

• Changes Made

Page 6: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY6

Virtual Machines are a now “Form” of computing

• What is a Virtual Machine?

• Benefits of Virtual Machines

• Challenges for CIP Compliance

• Changes Made

Clarification – Virtual Machines

Page 7: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY7

Containers are an even newer “Form” of computing

• What is a Container?

• Benefits of Container

• Challenges for CIP Compliance

• Changes Made

Clarification – Containers

Page 8: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY8

What do Super ESPs have to do with Virtualization?

• What is a Super ESP?

• Benefits of Super ESP

• Challenges for CIP Compliance

• Changes Made

Clarification – Super ESPs

Page 9: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY9

Management of the infrastructure, like Dispatch

• What is a: Management System?

Management Interface?

Management Module?

• Benefits of Management Systems

• Challenges for CIP Compliance

• Changes Made

Clarification – Management

Page 10: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY10

Additional Capabilities Enabled

Page 11: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY11

Enhanced and Automated Access Control through Zero Trust

• What is Zero Trust?

• Benefits of Zero Trust

• Challenges for CIP Compliance

• Changes Made

Additional Capabilities – Zero Trust

Page 12: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY12

Hardware and Software Reduction through Logical Isolation and common trust levels

• What can be reduced?

• Benefits of Hardware and Software Reduction

• Challenges for CIP Compliance

• Changes Made

Additional Capabilities –Hardware and Software Reduction

Page 13: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY13

Automated control and compliance through Network Access Control

• What is a Network Access Control?

• Benefits of Network Access Control

• Challenges for CIP Compliance

• Changes Made

Additional Capabilities –Network Access Control

Page 14: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY14

• Technical Standards impact: CIP-005 – biggest impact CIP-007 – minor impact CIP-010 – moderate impact

• Definitions• Conforming changes to other Standards

CIP Standards Impact

Page 15: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY15

• Drafting Technical Rationale and Implementation Guidance for each: CIP-005 CIP-007 CIP-010

• Virtualization and Future Technologies –What’s in it for me V2 (soon to be released)

2016-02 SDT Virtualization Updates

Page 16: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY16

• Weekly Conference Calls – Thursdays 3:00 – 5:00 p.m. eastern

2016-02 SDT Meeting Schedule

Page 17: CIP Virtualization Overview 201602...• Virtualization Overview • Clarification for Permitted Architectures • Additional Capabilities Enabled • CIP Standards Impact Agenda

RELIABILITY | ACCOUNTABILITY17

Jordan [email protected]