Universities are still weak in unified identity authentication and access control,which makes them unable to cope with network security threats.Therefore,this paper proposes a digital identity security platform solution based on zero trust sys-tem.The zero trust SDP technology is introduced to build zero-trust security architecture in universities,and a unified identity authentication and access authorization platform is reconstructed.The DMZ micro-isolation zone is divided according to func-tions to achieve unified user identity management,multi-factor and multi-dimensional authentication of the platform,dynamic hiding of service ports and device information,and dynamic authorization of access links.The access mode of 5G users,Wi-Fi users,campus network users and Internet users outside the campus to access the digital identity security platform is analyzed in combination with the four networks convergence scenario.The research results greatly enrich the content of smart campus re-search,and also provide a new solution for universities to reconstruct and upgrade the unified identity authentication and access authorization platform.
关键词
零信任体系/数字身份/统一认证/访问控制/网络安全
Key words
zero trust system/digital identity/unified authentication/access control/network security