基于隔离网闸的双网分离方案研究与实现  

Research and Implementation of Dual Network Separation Scheme Based on Isolated Gatekeeper

在线阅读下载全文

作  者:李永超 周丽丽 Li Yong-chao;Zhou Li-li(Dalian Meteorological Information Center,Dalian 116001,Liaoning Province,China)

机构地区:[1]大连市气象信息中心,辽宁大连116001

出  处:《科学与信息化》2022年第3期107-109,共3页Technology and Information

摘  要:在对整体网络状况和结构进行详细梳理后,技术人员提出采用隔离网闸(GAP)设备实现双网分离后的部分业务的双向数据通信和管控,满足业务中文件访问和数据交换的要求。分离方案中主要采用了隔离网闸的透明代理和普通访问模式匹配TCP/UDP协议完成多端口的访问控制。应用实践证明,在内网杀毒软件安装基础上,结合GAP的接入应用能够在很大程度上降低互联网黑客对内网进行恶意攻击的风险。After combing the overall network status and structure in detail,the technicians propose to use isolated gatekeeper(GAP)equipment to realize the two-way data communication and management of some services after the dual network separation,to meet the requirements of file access and data exchange in the business.The separation scheme mainly uses the transparent proxy of the isolated gatekeeper and the common access mode matching TCP/UDP protocol to complete the multi-port access control.Application practice has proved that on the basis of the installation of anti-virus software on the intranet,combined with the access application of GAP,it can greatly reduce the risk of malicious attacks on the intranet by Internet hackers.

关 键 词:网络安全 GAP 双网分离 访问控制 

分 类 号:TP3[自动化与计算机技术—计算机科学与技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象