电信科学 ›› 2015, Vol. 31 ›› Issue (1): 171-175.doi: 10.11959/j.issn.1000-0801.2015020

• 运营技术广角 • 上一篇    下一篇

网络安全域自动核查分析技术及应用

刘晓峰,谭彬,邱岚,王焕如   

  1. 中国移动通信集团广西有限公司信息安全管理中心 南宁 530022
  • 出版日期:2015-01-15 发布日期:2017-02-21

Automatic Verification Analysis Technology of Network Security Domain

Xiaofeng Liu,Bin Tan,Lan Qiu,Huanru Wang   

  1. Information Security Management Center, China Mobile Group Guangxi Co., Ltd., Nanning 530022, China
  • Online:2015-01-15 Published:2017-02-21

摘要:

通过对网络安全域自动核查分析技术的研究与应用,实现了安全域拓扑自动还原以及安全域设备互联关系、安全域边界及边界访问控制策略的自动核查。通过自动化、常态化和流程固化的方式,及时发现违反安全域规定的行为,确保边界访问控制策略最小化,确保网络安全域划分的持续合规,降低安全域管理的相关风险。

关键词: 安全域, 合规, 访问控制策略

Abstract:

By studying the automatic verification analysis techniques of network security domain, a secure domain topology automatically restore and security domains devices interconnected relations, security domain boundaries and border access control policy automatic verification were achieved. Through automation, normalization and processes curing methods, violations of the security domain provisions of the act were detected. It ensures border access control policy is minimized and network security domain is divided continued compliance, reduces the risks associated with the security domain management.

Key words: security domain, compliance, access control policy

No Suggested Reading articles found!