With the rapid development of the Internet and information technology,traditional industrial manufacturing has begun to integrate with emerging information technology and internet technology.The"Industrial Internet"has gradually emerged and is widely used in important industries related to national security,national economy,and people's livelihood,such as energy,electricity,transportation,military industry,aerospace,and healthcare.The industrial internet involves many key infrastructure in countries,so its security will affect social security,public security,and even national security.We analyze the network security risks in the industrial internet and propose a boundary protection scheme based on the"zero trust"mechanism,which provides overall security protection capabilities for the entire production intranet while being compatible with a large number and variety of industrial equipment,operating systems,and production applications.The industrial internet boundary protection scheme based on zero trust mechanism is different from traditional protection ideas,using whitelist mechanism instead of blacklist mechanism,applying stealth instead of technical confrontation,and dynamic verification instead of static detection.Finally,we present an application case of industrial internet boundary protection based on zero trust mechanism,and analyze the technical advantages of this solution in combination with system functions.
关键词
工业互联网/零信任/边界防护/关键信息基础设施/白名单机制
Key words
Industrial Internet/zero trust/boundary protection/critical information infrastructure/whitelist mechanism