检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:吴庆华 WU Qinghua
机构地区:[1]中国铁路南昌局集团有限公司电务部,南昌331000
出 处:《铁道通信信号》2024年第12期61-70,共10页Railway Signalling & Communication
摘 要:针对当前列控系统网络安全防护薄弱,不满足信息安全等级保护四级要求的问题,对列控系统网络安全防护体系的构建与运维管理展开研究。首先,引入等级保护“一个中心,三重防护”的理念,阐述列控系统中网络安全设备的结构与组成,主要包括安全通信网络、安全区域边界、安全计算环境和安全管理中心;其次,从现场调研、仿真测试、施工方案编制、硬件设备安装、软件部署、边界隔离设备配置、安全策略制定、竣工收尾等关键环节,论述列控系统网络安全体系的建设过程;最后,通过强调安全策略配置与特征库更新的动态管理,以及巡检故障处理和等级保护测评工作的重要性,探讨网络安全体系的运营管理模式。验证结果表明:该列控系统网络安全防护体系和运营管理模式在实际场景中行之有效。In view of the problem that the current train control system's network security protection is weak and does not meet the requirements of the four-level information security protection,the construction and operation and maintenance management of the train control system's network security protection system is studied.Firstly,the concept of“one center,triple protections”of graded protection is introduced,and the structure and composition of network security equipment in the train control system are explained,mainly including secure communication networks,secure area boundaries,secure computing environments and security management centers.Secondly,the construction process of the train control system's network security system is discussed from key links such as on-site investigation,simulation testing,construction plan preparation,hardware equipment installation,software deployment,boundary isolation equipment configuration,security policy formulation,and completion and closing.Finally,by emphasizing the importance of dynamic management of security policy configuration and feature library updates,as well as inspection fault handling and graded protection evaluation work,the operation and management of the network security system are discussed.The verification results show that the network security protection system and operation management mode of the train control system are feasible and effective in actual scenarios.
关 键 词:列控系统 网络安全 信息安全等级保护 运营管理模式 施工维护 边界隔离
分 类 号:U284.48[交通运输工程—交通信息工程及控制]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.185