Přístupnostní navigace
E-application
Search Search Close
Doctoral Thesis
Author of thesis: Ing. Ondřej Pospíšil, Ph.D.
Acad. year: 2025/2026
Supervisor: doc. Ing. Radek Fujdiak, Ph.D.
Reviewers: Ing. Pavel Praks, PhD., doc. Ing. Vladimír Soběslav, Ph.D.
In operational technology environments, reliable device identification is essential for security management. However, active information gathering may introduce operational risks. This dissertation therefore addresses passive PLC identification at the model level based exclusively on the observation of regular network communication, while also quantifying the risks associated with active querying in an environment designed according to the ISA-95 reference architecture. The aim is to design and evaluate a modular approach that enables the identification of PLC models across multiple layers while simultaneously providing an audit trail. The dissertation thus presents a framework in which the selection of a module is driven by data availability and the confidence of the output. To this end, three mutually complementary methods of passive identification are employed. These include methods based on network interface layer identifiers, statistical fingerprints of the application-layer payload, and information derived from temporal behavior. The results show that active querying may increase response times and induce communication losses, whereas passive identification remains achievable even when performed as part of an independent test and under changing operational profiles. Based on these findings, it is concluded that a multilayer passive approach increases the robustness of identification and supports safe deployment in OT.
Passive PLC identification, industrial control systems, ICS, operational technology, OT, device identification, network traffic analysis, device fingerprints.
Date of defence
17.06.2026
Result of the defence
Defended (thesis was successfully defended)
Process of defence
Disertant stručně a jasně hovořil o vědeckých výsledcích své disertační práce. Komise byla s odpověďmi v diskusi spokojena, byly položeny doplňující otázky, na všechny správně odpověděl.
Language of thesis
Czech
Faculty
Fakulta elektrotechniky a komunikačních technologií
Department
Department of Telecommunications
Study programme
Teleinformatics (DKC-TLI)
Composition of Committee
prof. Ing. Zdeněk Smékal, CSc. (předseda) doc. Ing. Petr Mlýnek, Ph.D. (člen) doc. Ing. Zdeněk Martinásek, Ph.D. (člen) Ing. Tereza Otčenášková, Ph.D., BA (člen) doc. Mgr. Josef Horálek, Ph.D. (člen) doc. Ing. Vladimír Soběslav, Ph.D. (člen) Ing. Pavel Praks, PhD. (člen)
Supervisor’s reportdoc. Ing. Radek Fujdiak, Ph.D.
Reviewer’s reportIng. Pavel Praks, PhD.
Reviewer’s reportdoc. Ing. Vladimír Soběslav, Ph.D.
Responsibility: Mgr. et Mgr. Hana Odstrčilová