Purdue Model Flashcards

(32 cards)

1
Q

What is the Purdue Model?

A

A de facto representation of a large-scale automated environment

Formalised into ANSI/ISA-95 standard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What does the Purdue Model represent?

A

A logical representation of how an ICS should be architected

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Does the Purdue Model represent the reality of many ICS implementations?

A

No, it does not represent the reality of many ICS implementations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

How many discrete layers does the Purdue Model describe for equipment in an ICS?

A

Six discrete layers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What aspect does the Purdue Model not represent?

A

Safety systems

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What advantage does the Purdue Model provide?

A

Allows the functionality of an ICS to be considered within well-defined layers and scope

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How is a Purdue model network structured?

A

Split into 6 levels across 4 zones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What type of network does the Purdue Model idealize?

A

An OT network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

True or False: Reality often matches the idealized design of the Purdue Model.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What does Level 5 of the Purdue Model describe?

A

Describes the corporate network and systems

Based on IT hardware/software and IP protocol, contains centralized IT systems, internet access, and B2B and B2C services.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is the main purpose of Level 4 in the Purdue Model?

A

Allows a facility to plan and manage its industrial operations

Typically encompasses systems such as Enterprise Resource Planning (ERP) and has access to data from OT systems.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is a De-Militarised Zone (DMZ) in the context of the Purdue Model?

A

A layer that mediates between IT and OT systems

Houses systems required by enterprise and planning systems and restricts traffic flows through firewalls.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

True or False: Systems in Level 4 are critical to plant floor operations.

A

False

Systems in Level 4 are not critical to plant floor operations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What percentage of systems were found to be directly connected in the Kaspersky Labs audit?

A

85 percent

This was noted in an audit of a major energy company where it was believed IT and OT were isolated.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Fill in the blank: The DMZ should prevent direct communication between layers 4 and _______.

A

3

This is essential for maintaining security between different levels of the Purdue Model.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What misconception do many organizations have about their DMZ?

A

They think that they have a DMZ in place but don’t

Many organizations believe they have implemented a DMZ when they have not done so comprehensively.

17
Q

What type of services does Level 5 include?

A

Business-to-Business (B2B) and Business-to-Consumer (B2C) services

These services are part of the corporate network within the Purdue Model.

18
Q

What is the purpose of a ‘Historian’ database in Level 4?

A

To allow process efficiency and performance analysis

It contains local copies of data from OT systems.

19
Q

What are the characteristics of systems in Level 4?

A

Not critical to plant floor operations, has access to Level 5 systems

Typically includes planning and logistics capabilities.

20
Q

What does the Purdue Model emphasize about traffic flow?

A

Traffic flows should be restricted through firewalls

This is to ensure security between different levels of the control hierarchy.

21
Q

What is the highest level of process control in an ICS?

A

Level 3 – Site Manufacturing Operations and Control

This level manages end-to-end operational functions and processes.

22
Q

What services are typically included at Level 3?

A
  • Operational management
  • Detailed production scheduling
  • Plant Historian
  • Asset and material management
  • Control room workstations
  • Administration and control applications

Level 3 often communicates directly with Level 1 and 0 devices.

23
Q

What is a key characteristic of Level 3 in the Manufacturing Zone?

A

A mix of IT and OT, as well as associated protocols

This mix allows malware to traverse between platforms.

24
Q

True or False: IT security mechanisms are sufficient in isolation at Level 3.

A

False

IT security mechanisms, in isolation, are insufficient at this level.

25
What is the responsibility of Level 2 in the Purdue Model?
Supervision of processes under control ## Footnote Level 2 manages real-time process control and alerts.
26
What does Level 2 provide for operator management?
* Operator interfaces for alerts and alarms * Engineering interfaces for device configuration ## Footnote Level 2 is typically where Distributed Control Systems (DCS) are located.
27
What is the primary function of Level 1?
Basic control of elements of the process under control ## Footnote Level 1 includes functions for sensing and manipulating the physical process.
28
What devices are commonly found at Level 1?
* Programmable Logic Controllers (PLC) * Intelligent Electronic Devices (IED) * Remote Terminal Units (RTU) ## Footnote Level 1 executes algorithms and maintains process history.
29
What does Level 0 represent in the Purdue Model?
The actual process under control ## Footnote Level 0 includes Input/Output (I/O) devices interfacing with sensors and actuators.
30
Fill in the blank: Level 3 manages the process ______ using a mixture of IT and OT devices.
end-to-end ## Footnote This level is crucial for operational management.
31
What is the purpose of Safety Instrumented Systems (SIS) at Level 1?
To ensure safe operation ## Footnote SIS monitors processes and returns equipment to a known safe state if safety limits are exceeded.
32
What is the role of I/O devices at Level 0?
Interface with sensors and actuators connected to electromechanical equipment ## Footnote I/O devices provide process control feedback to Level 1.