检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:杜彪[1] 程永新[1] 孟金桃 DU Biao;CHENG Yongxin;MENG Jintao(No.30 Institute of CETC,Chengdu Sichuan 610041,China)
机构地区:[1]中国电子科技集团公司第三十研究所,四川成都610041
出 处:《信息安全与通信保密》2024年第12期35-46,共12页Information Security and Communications Privacy
基 金:保密通信全国重点实验室稳定支持计划项目(M3023Y327);四川省科技厅重点研发项目(2023YFG0146)。
摘 要:不同网络信息系统之间相互隔离是保障网络信息系统安全的重要手段,并广泛应用于各重要行业领域,面对数据流动、融合等新发展需要,跨网数据安全实时交换是必然要达到的目标。抽取各行业领域典型内网与外网跨网需求,从应用、数据、网络、计算、运维5个维度全面剖析跨网数据安全实时交换存在的安全威胁,给出针对性的安全应对措施,设计融合各项安全应对措施的“双单向传输、分区递进式”跨网数据安全实时交换架构,解决外网网络渗透、恶意代码投送、内网敏感信息外泄等安全问题,并开展安全性、实时性效能分析,以支撑后续实际应用。The isolation between different network information systems is an important means to ensure the security of network information systems,and is widely used in various important industries.In the face of new development needs such as data flow and integration,the secure real-time exchange of cross-network data is an inevitable goal to achieve.This paper extracts the typical intranet and extranet crossnetwork requirements in various industries,and comprehensively analyzes the security threats existing in the secure real-time exchange of cross-network data from five dimensions of application,data,network,computing,operation and maintenance,provides targeted security countermeasures,designs a“two-way one-way transmission,partition progressive”secure real-time exchange architecture of cross-network data that integrates various security countermeasures,addresses the security problems such as extranet network penetration,malicious code delivery,and leakage of sensitive information from the intranet,and carries out security and real-time performance analysis to support the subsequent practical applications.
分 类 号:TP393.1[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.38