CN103378654B - Method for filtering network messages of process level of intelligent substation - Google Patents

Method for filtering network messages of process level of intelligent substation Download PDF

Info

Publication number
CN103378654B
CN103378654B CN201210127898.XA CN201210127898A CN103378654B CN 103378654 B CN103378654 B CN 103378654B CN 201210127898 A CN201210127898 A CN 201210127898A CN 103378654 B CN103378654 B CN 103378654B
Authority
CN
China
Prior art keywords
message
mac address
flow
messages
kinds
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CN201210127898.XA
Other languages
Chinese (zh)
Other versions
CN103378654A (en
Inventor
李力
吕航
杨贵
何学东
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
NR Electric Co Ltd
NR Engineering Co Ltd
Original Assignee
NR Electric Co Ltd
NR Engineering Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by NR Electric Co Ltd, NR Engineering Co Ltd filed Critical NR Electric Co Ltd
Priority to CN201210127898.XA priority Critical patent/CN103378654B/en
Publication of CN103378654A publication Critical patent/CN103378654A/en
Application granted granted Critical
Publication of CN103378654B publication Critical patent/CN103378654B/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y02TECHNOLOGIES OR APPLICATIONS FOR MITIGATION OR ADAPTATION AGAINST CLIMATE CHANGE
    • Y02EREDUCTION OF GREENHOUSE GAS [GHG] EMISSIONS, RELATED TO ENERGY GENERATION, TRANSMISSION OR DISTRIBUTION
    • Y02E60/00Enabling technologies; Technologies with a potential or indirect contribution to GHG emissions mitigation
    • YGENERAL TAGGING OF NEW TECHNOLOGICAL DEVELOPMENTS; GENERAL TAGGING OF CROSS-SECTIONAL TECHNOLOGIES SPANNING OVER SEVERAL SECTIONS OF THE IPC; TECHNICAL SUBJECTS COVERED BY FORMER USPC CROSS-REFERENCE ART COLLECTIONS [XRACs] AND DIGESTS
    • Y04INFORMATION OR COMMUNICATION TECHNOLOGIES HAVING AN IMPACT ON OTHER TECHNOLOGY AREAS
    • Y04SSYSTEMS INTEGRATING TECHNOLOGIES RELATED TO POWER NETWORK OPERATION, COMMUNICATION OR INFORMATION TECHNOLOGIES FOR IMPROVING THE ELECTRICAL POWER GENERATION, TRANSMISSION, DISTRIBUTION, MANAGEMENT OR USAGE, i.e. SMART GRIDS
    • Y04S10/00Systems supporting electrical power generation, transmission or distribution
    • Y04S10/16Electric power substations

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)
  • Small-Scale Networks (AREA)

Abstract

Provided is a method for filtering network messages of a process level of an intelligent substation. A network of the process level of the intelligent substation is connected with various devices which comprise a merging unit, an intelligent terminal, a switchboard, a protection device and a measuring and control device, wherein the devices are used for sending and receiving SV messages and GOOSE messages, message filtering modules are additionally arranged between network interfaces and physical layers of the devices, the received messages are filtered additionally in a message filtering mode, traffic limitation is performed on the messages with MAC addresses assigned by the devices, key fields of the messages with the MAC addresses assigned by the devices are recognized, repeated messages are filtered, the messages without the MAC addresses assigned by the devices are discarded or forwarded, and broadcasting messages are discarded or forwarded. According to the method, the accurate management of the GOOSE messages and the SV messages can be achieved through the merging unit, the intelligent terminal, the switchboard, the protection device and the measuring and control device in the intelligent substation.

Description

Transformer station process layer network message filtering method
Technical field
Communicating of all kinds of devices such as this merge cells relating to digital transformer substation, intelligent terminal, switch, protective device and measure and control device, specifically device send and receive SV (sampled value), GOOSE message (transformer substation case towards general object is for meeting electric substation automation system rapid message in IEC 61850 standard) filtration method and adopt the device of the method.
Background technology
Transformer station process layer network is by L2 Ethernet switch (L2 switch: be exactly Layer 2 switch, only according to MAC(Media Access Control, medium access control) address etc. carries out Message processing, there is no three-tier switch function and the routing functions such as IP) form, for connecting protective device, measure and control device, intelligent terminal, merge cells etc., realize GOOSE (Generic Object Oriented Substation Events, transformer substation case towards general object), SV(Sample Value sampled value) signal networking transmission, the transmission reliability of this information, real-time directly has influence on the Reliability of Microprocessor of protection.Therefore, the filtration that the various devices on network should be able to provide enough safety prevention measure to realize useless message, ensures that effective GOOSE, SV message can normal transmission and can not be subject to message useless on network or the impact of exception message.
Various devices on existing GOOSE, SV network are the main network storm suppressor mode relying on switch and provide in packet filtering, which can realize to broadcasting packet, multicast message and unknown unicast message by message classification suppress flow, the multicast and unicast message flow, duplicate message of specifying MAC Address cannot be suppressed, cause cannot effectively managing accurately the message flow on network in the application scenario of process layer, network security has very large hidden danger.
Summary of the invention
The object of the invention is: a kind of transformer station process layer network message filtering method is provided, solve current network storm suppressor mode cannot carry out flow restriction problem for the MAC Address of specifying.
technical solution of the present invention is:transformer station process layer network message filtering method; the process-level network of intelligent substation is connected with all kinds of device; comprise merge cells; intelligent terminal, switch, protective device and measure and control device; described all kinds of device sends and receives SV and GOOSE message, at network interface and the PHY of described all kinds of devices (Physical layer, physical layer) between increase packet filtering module, carry out extra filtration in the mode of packet filtering to the message received, the strategy of filtration is: specify the message of MAC Address to carry out flow restriction to all kinds of device; Specify all kinds of device the critical field of the message of MAC Address to identify, filter duplicate message; That does not specify MAC Address message to all kinds of device carries out discard processing or forward process; Discard processing or forward process are carried out for broadcasting packet.By the mode increasing packet filtering (being performed by filtering module), extra filtration is carried out to the message received, filter and mainly adopt suppression strategy: all kinds of device such as merge cells, intelligent terminal, protection, measure and control device configures different multicast mac address to all kinds of device according to actual needs.
The specific strategy of filtering or step are:
1) carry out flow to the MAC Address of specifying to limit respectively, namely the actual physics traffic conditions for each MAC Address decides the peak flow values distributing to this MAC Address, when this MAC Address produce flow exceed this maximum time will be dropped, ensure that the flow of other MAC Address is unaffected, at present, only have network storm to suppress to realize the overall flow restriction of multicast message, cannot realize carrying out flow restriction according to MAC Address.
2) for specifying the critical field (critical field can be SV test serial number, source MAC, destination-mac address etc.) of MAC Address message to carry out identifying (such as, repeat to identify to the SV test serial number of same MAC Address, and discard processing is carried out to duplicate message make receiving terminal receive only the message of this sequence number of bag), filter duplicate message, namely the first packet voice is only allowed to pass through, other packet loss.
In packet filtering module, the mode receiving and send the specific fields (i.e. critical field) of message and carry out fields match is reached and accurately object is limited to network message flow.
3) discard processing or forward process can be selected as required to unspecified MAC Address message; Discard processing or forward process can be selected as required for broadcasting packet.
Beneficial effect of the present invention: the present invention can realize merge cells in intelligent substation; all kinds of devices such as intelligent terminal, switch, protective device and measure and control device are to the accurate management of GOOSE and SV network message; solve the problem that process-level network message cannot accurately suppress, solve the hidden danger that network may be formed network storm.The retransmitted problem of effective solution process-level network message, useless message takies effective bandwidth problem.Purify network environment to greatest extent, ensure the unobstructed transmission of effective GOOSE, SV message on process-level network.
Accompanying drawing explanation
Fig. 1 is the structural representation of embodiment of the present invention.
Fig. 2 is the structural representation of another execution mode of the present invention.
Embodiment
It is following that according to embodiment, also the invention will be further described by reference to the accompanying drawings:
The equipment such as the switch in transformer station process layer, protection, observing and controlling, merge cells and intelligent terminal all need to provide the network interface of 2 or more to come with other corollary apparatus interconnected; (between each network interface, internal connection is not had time separate between each port; different network interfaces as device) Fig. 2 can be adopted to manage, when mutually having an association between each port, (each network interface as switch) can adopt Fig. 1 to manage.
First Fig. 2 is described below; when we know that the application of device (switch, protection, observing and controlling, merge cells, intelligent terminal etc.) in intelligent substation configures; we can know that each network interface of device needs to send and receive MAC Address and the flow of message simultaneously, and we can be arranged packet filtering module as follows by the CPU of device
1. the direction of setting device manage traffic: management incoming message flow, outgoing message flow or the message flow of management input and output simultaneously.
2. according to different MAC Address arrange send and receive message carry out maximum stream flow, the processing mode (forward or abandon) of other MAC Address is set simultaneously.
3. the drop policy of duplicate message is set, such as, in appointment 10ms, occurs the processing method of the message that sequence number is identical in identical MAC Address message: only allow the first packet voice pass through or all abandon.
4. the MAC Address quantity of the maximum management of this network interface of setting device.
Suppose that Fig. 2 is merge cells; this device is responsible for protection and measurement and control device and provides the measurement data of line voltage distribution and electric current and in the mode of SV multicast message by L2 switch gives protection supervisory equipment; suppose that the P_1 port of merge cells sends SV message and receives GOOSE message, other ports do not use simultaneously.The feature of merge cells is that the SV message only sending a kind of address does not receive any SV message, sends the message flow of SV generally at about 6Mbps; Receive the GOOSE message that intelligent terminal sends, GOOSE message flow is generally the message of a few bag per second simultaneously.Therefore, we are combined unit P_1 port and arrange as follows:
1. the direction of setting device manage traffic is manage input and output message flow simultaneously.
2. arrange transmission SV message maximum stream flow to be 10Mbps(or to be greater than 6Mbps), arranging and receiving GOOSE message flow is that 1Mbps(also can be less, arranges according to actual needs).Or the processing mode arranging other MAC Address is for abandoning.
3. the drop policy arranging duplicate message is occur in 50ms that the message that in identical MAC Address message, sequence number is identical only allows the first packet voice to pass through, other packet loss.
4. the MAC Address quantity of the maximum management of setting device P_1 network interface is 5 (or less, satisfying the demand).
Fig. 1 and Fig. 2 is the different set-up modes of same packet filtering module, and P_1-P_N+1 port uses identical packet filtering module in FIG, when there is association between the network interface that this implementation is adapted at device.P_1-P_N+1 in Fig. 2 carries out separate configurations to each port, and namely each port adopts the different rules that arranges to carry out work, arranges regular the same merge cells and arranges, do not repeat them here.

Claims (2)

1. transformer station process layer network message filtering method, the process-level network of intelligent substation is connected with all kinds of device, all kinds of device comprises merge cells, intelligent terminal, switch, protective device and measure and control device, described all kinds of device sends and receives SV and GOOSE message, it is characterized in that: between the network interface and physical layer of described all kinds of devices, increase packet filtering module, in the mode of packet filtering, extra filtration is carried out to the message received; The strategy filtered is: specify the message of MAC Address to carry out flow restriction to all kinds of device; Specify all kinds of device the critical field of the message of MAC Address to identify, filter duplicate message; That does not specify MAC Address message to all kinds of device carries out discard processing or forward process; Discard processing or forward process are carried out for broadcasting packet;
Specific strategy or the step of packet filtering are:
1) carry out flow to the MAC Address of specifying to limit respectively, namely the actual physics traffic conditions for each MAC Address decides the peak flow values distributing to this MAC Address, when this MAC Address produce flow exceed this maximum time will be dropped, ensure that the flow of other MAC Address is unaffected;
2) for the critical field of specifying MAC Address message, critical field is that SV test serial number, source MAC or destination-mac address identify; Filter duplicate message, namely only allow the first packet voice to pass through, other packet loss;
In packet filtering module, the mode receiving and send the critical field of message and carry out fields match is reached and network message flow is accurately limited;
3) discard processing or forward process are selected as required to unspecified MAC Address message; Discard processing or forward process are selected as required for broadcasting packet.
2. transformer station process layer network message filtering method according to claim 1, is characterized in that: a port of the merge cells of intelligent substation sends SV message and receives GOOSE message, and other ports do not use; The SV message that this merge cells only sends a kind of address does not receive any SV message, sends the message flow of SV at 6Mbps; Receive the GOOSE message that intelligent terminal sends, GOOSE message flow is a few bag per second simultaneously; This port of described merge cells is arranged as follows:
1) direction of setting device manage traffic is manage input and output message flow simultaneously;
2) arranging transmission SV message maximum stream flow is 10Mbps, and arranging and receiving GOOSE message flow is 1Mbps;
3) processing mode of other MAC Address is set for abandoning;
4) drop policy arranging duplicate message is occur the message that in identical MAC Address message, sequence number is identical in 50ms;
5) the first packet voice is only allowed to pass through, other packet loss;
6) the MAC Address quantity of the maximum management of this port of setting device is 5.
CN201210127898.XA 2012-04-27 2012-04-27 Method for filtering network messages of process level of intelligent substation Expired - Fee Related CN103378654B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210127898.XA CN103378654B (en) 2012-04-27 2012-04-27 Method for filtering network messages of process level of intelligent substation

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210127898.XA CN103378654B (en) 2012-04-27 2012-04-27 Method for filtering network messages of process level of intelligent substation

Publications (2)

Publication Number Publication Date
CN103378654A CN103378654A (en) 2013-10-30
CN103378654B true CN103378654B (en) 2015-06-17

Family

ID=49463375

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210127898.XA Expired - Fee Related CN103378654B (en) 2012-04-27 2012-04-27 Method for filtering network messages of process level of intelligent substation

Country Status (1)

Country Link
CN (1) CN103378654B (en)

Families Citing this family (27)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104135337A (en) * 2014-06-18 2014-11-05 贵州电力试验研究院 Message decoding method and device based on feature vectors in digital substation
CN105281933A (en) * 2014-06-24 2016-01-27 广西电网公司 Network message learning method and device
CN104468392B (en) * 2014-06-25 2017-12-15 许继电气股份有限公司 A kind of transformer station process layer IED network storm suppressing method
CN104468071B (en) * 2014-06-27 2017-08-22 许继电气股份有限公司 A kind of intelligent substation Synchronization Clock anti-interference method
CN104104558B (en) * 2014-06-27 2017-10-31 南京国电南自电网自动化有限公司 A kind of method that network storm suppresses in transformer station process layer communication
CN104158687B (en) * 2014-08-21 2017-11-10 国电南瑞科技股份有限公司 The device and implementation method of double-network redundant in a kind of transformer station
CN104158762B (en) * 2014-08-21 2017-05-03 国电南瑞科技股份有限公司 FPGA based process-level message filtering and bandwidth control method
CN104219151B (en) * 2014-09-19 2018-05-01 国家电网公司 A kind of Goose message flow table filter methods based on SDN
CN104518568B (en) * 2014-12-15 2017-07-18 东南大学 The implementation method that network message is selected in a kind of intelligent substation
CN104601371A (en) * 2014-12-22 2015-05-06 国家电网公司 Substation communication method
CN104917705A (en) * 2015-06-18 2015-09-16 国家电网公司 Network message management method of intelligent substation process layer switch
CN105049346B (en) * 2015-07-31 2018-01-12 南京荣桓电力自动化有限公司 The localization method of intelligent substation dynamic communication link
CN106302005A (en) * 2016-08-04 2017-01-04 国电南瑞科技股份有限公司 The method of combining unit device dynamic monitoring IEC61850 92 network storm
CN106571979A (en) * 2016-11-03 2017-04-19 许昌许继软件技术有限公司 Link detection method for process-level switch of intelligent substation and switch
CN107395455A (en) * 2017-07-14 2017-11-24 国网四川省电力公司电力科学研究院 The network storm method of testing and tester of a kind of intelligent substation network switch
CN109379255B (en) * 2018-12-12 2021-10-08 国网宁夏电力有限公司电力科学研究院 Intelligent switch based process layer network flow monitoring and early warning method
CN109981812A (en) * 2019-03-13 2019-07-05 深圳供电局有限公司 A kind of interior communication method and device thereof, the computer equipment of multiple substations
CN111092750B (en) * 2019-11-22 2022-12-27 苏州浪潮智能科技有限公司 Switch management network system and white box switch based on intelligent monitoring
CN110995588B (en) * 2019-12-25 2022-01-21 华南理工大学 Method suitable for converting GOOSE message into R-GOOSE message
CN111447149A (en) * 2020-06-17 2020-07-24 广东电网有限责任公司佛山供电局 Shared storage-based GOOSE message dual-network inhibition method
CN111817889A (en) * 2020-07-02 2020-10-23 中国南方电网有限责任公司 Method for positioning connection error of process layer port of intelligent substation
CN113965889B (en) * 2020-07-03 2023-03-31 阿里巴巴集团控股有限公司 Data processing, filtering information quantity determining and configuring method, equipment and medium
CN112073326B (en) * 2020-07-30 2023-05-12 许继集团有限公司 Intelligent substation process layer network data flow control method
CN111901356A (en) * 2020-08-05 2020-11-06 湖南能创科技有限责任公司 Intelligent substation process layer network storm suppression method and device and electronic equipment
CN113743106A (en) * 2021-09-23 2021-12-03 贵州电网有限责任公司 SV message repeated filtering method, device, computer equipment and storage medium
CN114900350B (en) * 2022-04-29 2024-02-20 北京元数智联技术有限公司 Message transmission method, device, equipment, storage medium and program product
CN115333965A (en) * 2022-07-19 2022-11-11 广西电网有限责任公司电力科学研究院 SV data processing method and system of high-voltage switch

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1773952A (en) * 2004-11-10 2006-05-17 华为技术有限公司 Bandwidth gurantee method for communication equipment or high-priority messaging during network at fault
CN101719694A (en) * 2009-12-16 2010-06-02 北京四方继保自动化股份有限公司 Device for analyzing network communication record of digital transformer substation
CN102404179A (en) * 2010-09-19 2012-04-04 杭州华三通信技术有限公司 Method and device for processing message

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
ATE514256T1 (en) * 2008-08-18 2011-07-15 Abb Technology Ag CONFIGURATION OF A PROCESS CONTROL SYSTEM

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1773952A (en) * 2004-11-10 2006-05-17 华为技术有限公司 Bandwidth gurantee method for communication equipment or high-priority messaging during network at fault
CN101719694A (en) * 2009-12-16 2010-06-02 北京四方继保自动化股份有限公司 Device for analyzing network communication record of digital transformer substation
CN102404179A (en) * 2010-09-19 2012-04-04 杭州华三通信技术有限公司 Method and device for processing message

Also Published As

Publication number Publication date
CN103378654A (en) 2013-10-30

Similar Documents

Publication Publication Date Title
CN103378654B (en) Method for filtering network messages of process level of intelligent substation
CN112119616B (en) Packet replication method, apparatus and computer readable storage medium related to in-place operation implementation and management (IOAM)
EP1465368B1 (en) Traffic monitoring system in a packet switched network with wireless connected data aggregation node
US7898984B2 (en) Enhanced communication network tap port aggregator arrangement and methods thereof
CN103095603B (en) A kind of Ethernet storm suppressing method
WO2016107210A1 (en) Redundant industrial ethernet system with multistage packet filtering and service classification control
CN104917705A (en) Network message management method of intelligent substation process layer switch
CN103026664A (en) Determining vlan-ids for a switched-based communication network of a process control system
CN104486153B (en) A kind of transformer station process layer network transmission performance monitoring method based on FPGA
RU2526836C1 (en) Utility communication method and apparatus therefor
Wester et al. Practical applications of Ethernet in substations and industrial facilities
CN106341296A (en) Method of avoiding data message collision in communication network within transformer substation
CN114338542A (en) Acquisition method and device for reducing network flow in power system
Gao et al. Study on communication service strategy for congestion issue in smart substation communication network
CN103475093B (en) A kind of intelligent substation data monitoring method and system thereof
Apostolov To GOOSE or not to GOOSE?-that is the question
CN112073326A (en) Intelligent substation process layer network data flow control method
Ingalalli et al. SCD based IEC 61850 traffic estimation for substation automation networks
Li et al. Performance testing on GOOSE and MSV transmission in one network
CN103051549B (en) The filter method of multicast data message and device in a kind of substation network
CN107579770B (en) Communication network system, shunt device and method for accessing unidirectional transmission network
Apostolov Communications in IEC 61850 based substation automation systems
CN104078945A (en) Busbar differential protection optimization method and busbar differential protection system for intelligent transformer substation
Goltz Investigating the Filter Capacity of Linecouplers in KNX regarding network security
Kondradi et al. Convergence of Industrial Networks for OT and IT within the Industry 4.0 Concept-a Survey

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20150617

CF01 Termination of patent right due to non-payment of annual fee