Check Point Advisories

SCADA DNP3 unauthorized client

Check Point Reference: CPAI-2012-769
Date Published: 18 Nov 2012
Severity: High
Last Updated:
Protection Provided by:

Security Gateway

Who is Vulnerable? SCADA DNP3 Outstation
Vulnerability Description

Protection Overview

This protection will monitor DNP3 commands.

Security Gateway R75 / R71 / R70

  1. In the IPS tab, click Protections and find the SCADA DNP3 unauthorized client protection using the Search tool and Edit the protection's settings.
  2. Install policy on all modules.

SmartView Tracker will log the following entries:
Attack Name: SCADA Protection Violation
Attack Information: SCADA DNP3 unauthorized client