铁路数据网高危端口屏蔽控制研究
Research on shielding control of high-risk ports in railway data network
李铭煜 1常根 1刘勇 1雷欣雅 1符静雯1
作者信息
- 1. 中国铁路广州局集团有限公司,广东广州 510080
- 折叠
摘要
通过研究铁路数据网存在的常见高危端口,提出了基于ACL、Traffic-filter和防火墙的屏蔽控制方案,在接入设备相应端口部署基于ACL和Traffic-filter的安全策略或设置防火墙部署安全访问控制策略,屏蔽高危端口,对铁路数据网业务终端及业务服务器进行有效的防护.
Abstract
This paper proposes a shielding control scheme based on ACL,Traffic-filter and firewall by studying the common high-risk ports in the railway data network.It deploys security policies based on ACL and Traffic-filter at the corresponding ports of the access equipment or sets firewall deployment security access control policies to shield high-risk ports and effectively protect the business terminals and business servers of the railway data network.
关键词
数据网/ACL/Traffic-filter/防火墙Key words
Data network/ACL/Traffic-filter/Fire Wall引用本文复制引用
出版年
2024