基于软件定义边界的电力物联网安全防护方法  

Security Protection Method of Power Internet of Things Based on Software Defined Perimeter

在线阅读下载全文

作  者:阎峻 李帅轩 李耕赜 张华朗 曹新立 曹旭 YAN Jun;LI Shuai-xuan;LI Geng-ze;ZHANG Hua-lang;CAO Xin-li;CAO Xu(State Grid Xinyuan Holding Co.,Ltd.,Beijing 100052 China;State Grid Xinyuan Hubei Bailianhe Pumped Storage Co.,Ltd.,Wuhan 430070 China;State Grid Xinyuan Holding Co.,Ltd.,Maintenance Branch,Beijing 100052 China)

机构地区:[1]国网新源控股有限公司,北京100052 [2]国网新源湖北白莲河抽水蓄能有限公司,湖北武汉430070 [3]国网新源控股有限公司检修分公司,北京100052

出  处:《自动化技术与应用》2025年第3期93-95,114,共4页Techniques of Automation and Applications

基  金:北京市科技计划项目(Z191100001217002)。

摘  要:为了提高电力物联网运行的安全性,在零信任机制的基础上,将数据平面和控制平面分离,采用单包授权方式进行PIoT安全认证,并在终端和业务之间进行双向加密,提出了一种基于软件定义边界技术的PIoT安全防护方法。采用仿真实验进行验证,并与其他防护方法对比,结果表明,基于软件定义边界技术的PIoT安全防护方法的终端处理时间更短,抓包分析时的资源消耗量更少,验证了本文所提PIoT安全防护方法的正确性和优越性。In order to improve the security of the operation of the power Internet of Things,this paper,based on the zero trust mechanism,separates the data plane from the control plane,uses a single packet authorization method for PIoT security authentication,and conducts two-way encryption between the terminal and the business.A PIoT security protection method based on software defined boundary technology is proposed.The simulation experiment is used to verify and compare with other protection methods.The results show that the PIoT security protection method based on software defined boundary technology has shorter terminal processing time and less resource consumption during packet capture analysis,which verifies the correctness and superiority of the PIoT security protection method proposed in this paper.

关 键 词:电力物联网 安全防护 软件定义边界 零信任机制 

分 类 号:TP393[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象