基于可信计算环境的铁路通信网络主机安全防护技术研究  被引量:9

Research on Security Protection Technology of Railway Communication Network Host Based on Trusted Computing Environment

在线阅读下载全文

作  者:陈丹晖 张卫军[1] 周安冉 Chen Danhui;Zhang Weijun;Zhou Anran

机构地区:[1]北京铁路通信技术中心,北京100038

出  处:《铁道通信信号》2022年第7期74-78,共5页Railway Signalling & Communication

基  金:中国国家铁路集团有限公司科技研究开发计划软科学课题(2020F010)。

摘  要:针对传统主机安全防护技术在铁路通信网络运用中存在的现实问题,提出了基于可信计算环境的主机安全防护技术;重点研究了可信计算信任链、标记和强制访问控制、恶意代码防范、程序可信执行保护,以及数据安全保护等方面的关键技术;通过建立铁路通信网络可信计算环境和可信安全平台,形成了安全可信的系统框架,从源头上解决了传统主机安全防护不足的问题;构建了一套从预防、感知、响应再到处置的闭环安全防御机制,实现了铁路通信网络的安全免疫可信。To cope with the problems of applying traditional host security protection technology in railway communication network, the security protection technology based on trusted computing environment is proposed. Our study is focused on trusted computing trust chain, security label and mandatory access control, malicious code resistance and trusted execution protection of program,data security protection. Through the establishment of a trusted computing environment and trusted security platform for railway communication network, a safe and trusted system framework is formed, which solves the deficiencies of traditional host security protection technology from the source. And a closed-loop security defense mechanism ranging from prevention, perception,response and disposal is constructed so as to achieve trusted security immunity of railway communication network.

关 键 词:铁路通信 网络安全管理 可信计算 主机防护 主动防御 

分 类 号:U285.21[交通运输工程—交通信息工程及控制]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象