基于安全管控平台的“金库模式”分析及应用  

Treasury Pattern Analysis and Application Based on Security Control Platform

在线阅读下载全文

作  者:宁建创 谭彬 梁业裕 

机构地区:[1]中国移动通信集团广西壮族自治区有限公司网络运营中心,南宁530022

出  处:《电信科学》2013年第6期170-176,共7页Telecommunications Science

摘  要:为降低高权限账号被滥用引起违规操作和客户信息泄露的风险,借鉴银行金库管理中开关库房必须由两名管库员在场共同进行的方式,以多人制衡的手段对高权限的使用进行监督和控制。通过对广西移动网络运营中心"金库模式"的各种应用场景的调查和分析,对"金库模式"的触发模式、授权模式和工作效率优化进行了分析和实现设计。并在网运中心的语音交换网元、WAP、信令监测等系统进行了成功的实施和应用,敏感数据查询量显著下降,有效遏制了权限滥用的情况,降低了客户敏感信息泄露的风险。In order to reduce illegal operations and customer information disclosure of risk caused by the high privilege account abuse, drawing lessons from the way of the bank vault management in warehouse that must switch consist of two warehouse keepers who jointly conduct the warehouse, high authority for supervision and control was used in many means of checks and balances. Through the investigation and analysis of various application scenarios for Guangxi mobile network operation center treasury management, trigger mode, authorization model and working efficiency optimization of treasury management were analyzed, designed and implemented. And it was successfully implemented and applicated in the systems such as voice switching network, WAP and signaling monitoring in network operation center. The results show the query sensitive data volume decrease significantly, and it can effectively curb the abuse of authority of the customer and reduce the risks of disclosure of sensitive information.

关 键 词:金库管理 应用场景 触发模式 授权模式 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象