Ship network boundary security protection mechanism

The invention relates to a ship network boundary security protection mechanism. A a data exchange network is set at a ship network boundary to be responsible for exchanging service data between an internal security network and an external non-security network, and is also used for resisting external...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: WANG LEI, ZHU TONG, DONG ZHAOSHENG, XIAN YUNFEI, CHEN LIYA, ZUO ZHENBO, LI JIANHUA, WU MAOCHUAN, WU PENG, WU MAOPU, JIANG HAO, ZHU JUN, ZHANG LU, SUN RUI, WU BAISHENG
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention relates to a ship network boundary security protection mechanism. A a data exchange network is set at a ship network boundary to be responsible for exchanging service data between an internal security network and an external non-security network, and is also used for resisting external attacks, preventing invasion and viruses from passing through, isolating direct access through a service agent, and verifying service security through auditing. The data exchange network comprises an access buffer area and a service buffer area; an intermediate firewall is further arranged betweenthe access buffer area and the service buffer area, and the access buffer area is used for being responsible for application agency of services and completing user access in an unsafe network; and theservice buffer area is used for auditing the service application and completing data exchange. The mechanism is based on the idea of buffer area isolation, and a 'land-to-safety' strategy is adopted,so that a 'data transactio