Engineering Papers⌕ Search

SEARCH · Engineering Papers

Results for “Grid Security”

Search indexed NASA NTRS and DOE OSTI research on propulsion, heat transfer, battery materials and energy systems. Follow report and document links to the original sources.

Quote a phrase for an exact phrase match. Source license links do not imply unrestricted reuse.

At least 289 records · Page 16

Clean Energy Cybersecurity Accelerator: Cohort 2 - Asimily Public Report

The U.S. Department of Energy (DOE) Office of Cybersecurity, Energy Security, and Emergency Response (CESER) sponsors the Clean Energy Cybersecurity Accelerator (TM) (CECA) to expedite the deployment of emerging security technologies that address the most urgent security concerns facing modern and future electric grids. CECA Cohort 2 assessed solutions focused on hidden risks due to incomplete system visibility and device security and configuration. Improving visibility can be achieved through operational technology (OT) asset identification solutions, including capabilities like automatic discovery, vulnerability reporting, and configuration monitoring. Solutions that monitor and identify assets in information technology (IT) networks in other domains are widely used; however, there is far less adoption of monitoring solutions for operational technology environments. Wider adoption may increase with increased confidence in the ability for these solutions to understand and respond to the specific requirements of OT environments. CECA Cohort 2 evaluated the active and passive asset discovery capabilities of market-ready solutions, documented and analyzed results, and identified gaps in functionality or capabilities. This report and describes how these results can help advance the adoption of these and similar solutions in the electric sector.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Cyber Physical Grid-Interactive Distributed Energy Resources Control for VPP Dispatch and Regulation: Preprint

This paper presents a cyber-physical algorithm for grid interactive DER control to enable two features of Virtual Power Plants (VPPs) dispatch and grid voltage regulation, considering the communication and security impacts. We first formulate the DER dispatch problem as a real-time, iterative, and grid-interactive DER control problem. Thereafter, we consider a probabilistic traffic model to characterize packet delays and loss in a communication network, and study how the delays enter the process of information exchange among the grid measurement units, local DER controllers and the grid control center that coordinately execute this dispatch algorithm. Finally, we propose a cyber-physical grid-interactive DER control algorithm using the previous message strategy. The tracking and regulation capabilities of this proposed algorithm can be made immune to the asynchrony resulting from the communications network traffic. We carry out simulations to show possible numerical instabilities and sensitivities of the tracking and regulation capabilities on the proposed strategy. Our results exhibit that the uncertainties of the underlying communications infrastructure must be considered in the control algorithm for the VPP tracking and regulation capabilities of any DER in a generic Cyber-Physical System (CPS).

co-simulation↗

Progress and prospects of thermo-mechanical energy storage – A critical review

The share of electricity generated by intermittent renewable energy sources is increasing (now at 26% of global electricity generation) and the requirements of affordable, reliable and secure energy supply designate grid-scale storage as an imperative component of most energy transition pathways. The most widely deployed bulk energy storage solution is pumped-hydro energy storage (PHES), however, this technology is geographically constrained. Alternatively, flow batteries are location independent and have higher energy densities than PHES, but remain associated with high costs and low lifetimes, which highlights the importance of developing and utilizing additional larger-scale, longer-duration and long-lifetime energy storage alternatives. Here, we review a class of promising bulk energy storage technologies based on thermo-mechanical principles, which includes: compressed-air energy storage (CAES), liquid-air energy storage (LAES) and pumped-thermal electricity storage (PTES). The thermodynamic principles upon which these thermo-mechanical energy storage (TMES) technologies are based are discussed and a synopsis of recent progress in their development is presented, assessing their ability to provide reliable and cost-effective solutions. The current performance and future prospects of TMES systems are examined within a unified framework and a thermoeconomic analysis is conducted to explore their competitiveness relative to each other as well as when compared to PHES and flow battery systems. This includes carefully selected thermodynamic and economic methodologies for estimating the component costs of each configuration in order to provide a detailed and fair comparison at various system sizes. The analysis reveals that the technical and economic characteristics of TMES systems are such that, especially at higher discharge power ratings and longer discharge durations, they can offer promising performance (round-trip efficiencies higher than 60%) along with high lifetimes (> 30 years), low specific costs (often below 100 $/kWh), low ecological footprints and unique sector-coupling features compared to other storage options. TMES systems have significant potential for further progress and the thermoeconomic comparisons in this paper can be used as a benchmark for their future evolution.

25 ENERGY STORAGE↗

Data-Enhanced Hierarchical Control to Improve Distribution Voltage with Extremely High PV Penetration

Dynamic, scalable, and interoperable control paradigms are required to enable efficient, secure, reliable, and resilient distribution grid operations with widespread grid integration of renewable energy resources. This paper presents our recent research on developing a novel, holistic, data-enhanced hierarchical control architecture that addresses the formidable challenges faced by emerging distribution grids with increasing penetrations of distributed energy resources. The proposed architecture integrates centralized monitoring and control with distributed grid-edge control and thus effectively deals with multi-spatiotemporal dynamics existing in the grid. Simulation results are provided to demonstrate the effectiveness of the proposed control architecture.

14 SOLAR ENERGY↗

Modeling Failure of Electrical Transformers due to Effects of a HEMP Event

Understanding the effect of a high-altitude electromagnetic pulse (HEMP) on the equipment in the United States electrical power grid is important to national security. A present challenge to this understanding is evaluating the vulnerability of transformers to a HEMP. Evaluating vulnerability by direct testing is cost-prohibitive, due to the wide variation in transformers, their high cost, and the large number of tests required to establish vulnerability with confidence. Alternatively, material and component testing can be performed to quantify a model for transformer failure, and the model can be used to assess vulnerability of a wide variety of transformers. This project develops a model of the probability of equipment failure due to effects of a HEMP. Potential failure modes are cataloged, and a model structure is presented which can be quantified by the results of small-scale coupon tests.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Universal Utility Data Exchange (UUDEX) Functional Design Requirements - Rev 1

This document provides a set of high-level functional design requirements for Universal Utility Data Exchange (UUDEX). These requirements include a set of use cases, data exchanges supported by UUDEX, both for grid operations and for cyber security data, functional requirements for data exchange, data models used by UUDEX, data exchange architectures, and security considerations. These functional design requirements are intended to be used in more detailed design documents.

97 MATHEMATICS AND COMPUTING↗

Evaluation of the Feasibility of Utilizing a Low-Cost UWB Radar for Hardware Implant & Counterfeit Device Detection

Hardware implants & counterfeit devices in the US power grid pose a significant national security threat. Asset owners currently have few options for detecting the presence of such devices “in the wild”. The goal of this work is to develop a non-invasive sensing method to solve this problem. In this work we evaluate the feasibility of implementing a nonlinear UWB radar tomography system to differentiate between electronic internals of externally-similar devices using low-cost off-the-shelf hardware.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Hydropower Cybersecurity Value-at-Risk Framework

Hydropower remains one of the strongest forms of renewable energy generation methods. It is crucial to address the increasing risks associated with the rapid digitization. The push towards decarbonization also factors in the need to ensure security and resilience for grid-connected renewable energy resources. This report summarizes the U.S. Department of Energy's Water Power Technologies Office's effort to develop a cybersecurity valuation methodology that assists hydropower stakeholders in assessing risks associated with plan operations and gathers valuation guidance through a web-based application. The Hydropower Cybersecurity Value-at-Risk Framework delivers a platform for industry members to perform self-assessments and make informed decisions on their cybersecurity investments.

13 HYDRO ENERGY↗

Quantitative risk assessment examples for underground hydrogen storage facilities

Hydrogen energy storage can be used to achieve goals of national energy security, renewable energy integration, and grid resilience. Adapting underground natural gas storage facility (UNGSF) infrastructure for underground hydrogen storage (UHS) is one method of storing large quantities of hydrogen that has already largely been proven to work for natural gas. There are currently some underground salt caverns in the United States that are being used for hydrogen storage by commercial entities, but it is still a fairly new concept in that it has not been widely deployed nor has it been done with other geologic formations like depleted hydrocarbon reservoirs. Assessments of UHS systems can help identify and evaluate risks to people both working within the facility and residing nearby. This report provides example risk assessment methodologies and analyses for generic wellhead and processing facility configurations, specifically in the context of the risks of unintentional hydrogen releases into the air. Assessment of the hydrogen containment in the subsurface is also critically important for a safety assessment for a UHS facility, but those geomechanical assessments are not included in this report.

08 HYDROGEN↗

Specimen Holder for Analytical Electron Microscopes

Reduces spectral contamination by spurious X-ray. Specimen holder made of compressed carbon, securely retains standard electron microscope grid (disk) 3 mm in diameter and absorbs backscattered electrons that otherwise generate spurious X-rays. Since holder inexpensive, dedicated to single specimen when numerous samples examined.

Clanton, U. S.↗

The Cybersecurity Value-at-Risk Framework

Hydropower remains one of the strongest forms of renewable energy generation methods. It is crucial to address the increasing risks associated with the rapid digitization. The push towards decarbonization also factors in the need to ensure security and resilience for grid-connected renewable energy resources. This report summarizes the U.S. Department of Energy's Water Power Technologies Office's effort to develop a cybersecurity valuation methodology that assists hydropower stakeholders in assessing risks associated with plan operations and gathers valuation guidance through a web-based applicaiton. The Hydropower Cybersecurity Value-at-Risk Framework delivers a platform for industry members to perform self assessments and make informed decisions on their cybersecurity investments.

CVF↗

Enhanced Large-Signal Stability Method for Grid-Forming Inverters During Current Limiting: Preprint

Grid-forming (GFM) inverters are a promising technology for the widespread integration of renewable energy sources in future power systems. As a key element of GFM inverter control, the primary controller governs the internal reference voltage and angle. During contingencies in the grid---such as faults, voltage drops, or frequency and phase jumps---an inverter can be forced into a current-limiting mode of operation modulating inverter dynamics, and, as a result, it is prone to losing synchronism with the grid. In this paper, we propose a novel GFM primary control method with an additional synchronization term that naturally activates during contingencies to improve the dynamic response. The method allows the inverter to remain synchronized with the grid, which improves the inverter's dynamic behavior both during and after current-limiting grid conditions and enhances grid support, including voltage support using full current capacity. The method is demonstrated for voltage, frequency, and phase jumps both in a single-machine-to-infinite-bus and a network-wide electromagnetic transient simulation of the IEEE 14-bus system with 5 GFM inverters. The simulations provide insights into the proposed synchronization method and confirm the high potential of the method, which robustly secures synchronism under severe contingencies.

current limiting↗

Securing Digital Energy Infrastructure: Procurement, Contracting, and Supply Chain Risk Management Guidance

Recognizing the scale of this industry challenge, the United States (U.S.) Department of Energy (DOE) Grid Deployment Office (GDO) and Cybersecurity Energy Security & Emergency Response office have launched a multi-year BESS supply chain security initiative to identify consequence-driven approaches to addressing BESS supply chain security and provide resources to support prioritization of supply chain security efforts associated with the procurement of BESS equipment and services. This guide is one element of the supporting resources to be provided and sets forth a framework and guidance for procurement bidding, selection, risk analysis, and agreements stakeholders can implement to mitigate cybersecurity risks across the entirety of battery system component ecosystem, including the interconnected software and hardware required for control and monitoring BESSs.

25 ENERGY STORAGE↗

Developing a Distributed Trust Model for Distributed Energy Resources

Electric power system operators can manage distribution system reliability by coordinating end customer usage of distributed energy resources. The end customers in this regard are Service Provisioning Customers, who provide their energy resources to a Grid Service Provider, which in turn dispatches large aggregations of distributed energy resources to provide reliable service to the power system.The security of this system relies upon information protection mechanisms, as described in IEEE 2030.5. However, in addition to preventive security measures, a monitoring function is required to ensure trustworthiness. Trust models are a method to detect and respond to both expected and unexpected behavior. Different trust models are required for various types and characteristics of each situation. This paper will describe the topics that must be considered when developing a trust model as it applies to distributed energy resources. The major contribution of this paper is the creation and application of a Distributed Trust Model applied to distributed energy resources.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Oak Ridge National Laboratory Pilot Demonstration of an Attestation and Anomaly Detection Framework using Distributed Ledger Technology for Power Grid Infrastructure

This report summarizes the design and pilot demonstration of a framework called Grid Guard that was created to provide increased data and device trustworthiness to electric grid devices by leveraging distributed ledger technology (DLT), specifically blockchain. Grid Guard contains a combination of core cryptographic methods such as the secure hash algorithm (SHA), and asymmetric cryptography, private permissioned blockchain, baselining configuration data, consensus algorithm (Raft) and the Hyperledger Fabric (HLF) framework. The system implements a low energy, fast, and robust enhancement to system trustworthiness within and across electric grid systems such as substations, control centers and metering infrastructures. Blockchain is a distributed database structured that provides a practically unalterable (immutable) timeline of stored transactions. By relying on hashing and the Raft consensus algorithm, if an entity tries to illegitimately alter a record at one instance of the database the other ledger nodes are not altered. They work to cross-reference each other and easily locate any incorrectly added data and remove it. The bulk raw data is stored in an off-chain storage (outside of the blockchain ledger) and a hash of this baseline data is stored in the Blockchain ledger via hashing windows of time-series and configuration data, after aggregation and filtering. The bulk off-chain data repository is then considered to be trust-anchored using the hashes stored in the blockchain. To secure the electric grid testbed devices and data, device configuration baselines were compared to those baselines that had been previously stored in the ledger. Statistical baselines for device configurations, network communication patterns, and high-speed sensor data are calculated and then stored off-chain and hashes stored in the ledger. Measurements such as three-phase voltage and current, frequency, breaker status, protection scheme settings, network configuration settings (and other device configuration artifacts) and network traffic features (packet interarrival times) are compared every minute or other selected time windows. During phase 1 of the Grid Guard DLT project different DLT technologies were studies, and an assessment was performed on DLT technology vulnerabilities, uses, and key characteristics. DLT consensus protocols were studies (e.g., RAFT, named after Reliable, Replicated, Redundant, And Fault-Tolerant). Also, cryptography, public, private and permissioned or permissionless systems were assessed. Grid Guard implements a permissioned private DLT. Consensus algorithm selection and choice of DLT implementation depended heavily on the use-case. For this use-case, parameters were selected to measure performance and existing tools for assessment. Benchmarking was performed theoretically and practically. During phase 2 hashed transactions/blocks were inserted into the ledger every second. During phase 2 of the Grid Guard DLT project, a prototype framework was developed and demonstrated for attestation of critical substation devices and data using precision timing systems that use PTP and IRIG-B protocols) on a testbed of operational devices that emulated a distribution substation, control center, and power metering infrastructure using real Operational Technology (OT). The testbed includes OT devices such as protective relays, human machine interfaces (HMI), and power meters. To determine when to collect and compare system and network baselines, an initial examination of an anomaly detection capability to identify malicious manipulation of data streams was conducted. The resulting anomaly detection was demonstrated in a set of experiments and leveraged to trigger device artifact attestation checks. Attestation checks occur against device configuration baselines when compared with the immutable blockchain-stored baselines, which provided a cryptographically supported means by which to store baselines. The electrical substation-grid testbed was created to test the Grid Guard framework. The testbed emulates the operations of a portion of a power grid and SCADA systems as closely as possible. The testbed integrates real protocols, mainly IEC 61850 standard protocols, such as the Sampled Value (SV) and the GOOSE protocols. The testbed also supports DNP3 and other layer 2 and layer 3 protocols such as Telnet, SSH, SFTP/FTP and other proprietary protocols needed to connect to industrial control system equipment. The testbed emulates real power conditions using the OpalRT hardware-in-the-loop (HIL) device which can create fault situations that cannot be easily tested on real systems. The electrical substation-grid testbed was created using real measurement, communication, and protection devices that electrical utilities commonly use.

24 POWER TRANSMISSION AND DISTRIBUTION↗

Resilient Information Architecture Platform for Smart Grid (RIAPS)

A number of emerging trends will substantially alter the operation and control of the electric grid over the next several decades. These trends include ensuring resiliency under severe weather events, increasing integration of renewable electricity generation, supporting changing electricity demand patterns, and the improving cost effectiveness of distributed energy resources. To address these challenges, the future “Smart Grid” management will need to transition from centralized to coordinated distributed control paradigm. Reliable operation of the Smart Grid depends on distributed intelligence realized through software applications that run on distributed computing devices attached to the power system to collect data and collaboratively manage resources. However, much of the existing software for Smart Grid-enabled devices is either proprietary or developed with custom solutions, which limits interoperability among the heterogeneous devices and hinders the ability to manage system-level reliability, security, and resiliency requirements. Additionally, this approach makes Smart Grid applications hard to maintain, evolve, verify, and replace; resulting in high development and deployment costs. Further development of the Smart Grid requires a reusable software base-layer to move from hard-coded functionality to a plug-and-play architecture capable of managing system-level objectives and constraints in addition to providing consistent common services across heterogeneous devices and applications. Vanderbilt University, in collaboration with North Carolina State University and Washington State University has developed a foundation ‘software platform’ for developing and deploying robust, reliable, effective and secure software applications for the Smart Grid. The Resilient Information Architecture Platform for the Smart Grid (RIAPS) provides core services for building effective and powerful smart grid applications. It offers unique services for real-time data dissemination, fault tolerance, and coordination across apps distributed over the network.

24 POWER TRANSMISSION AND DISTRIBUTION↗