首页|基于微分段的数据中心网络安全隔离技术研究与运用

基于微分段的数据中心网络安全隔离技术研究与运用

扫码查看
随着数据中心内部应用及数据存储增多、网络内部流量的增大,所面临的安全性风险也在不断增加,传统网络安全防护技术中可以通过划分业务子网、配置防火墙策略等方式,来实现业务之间的隔离,无法满足不同业务虚拟机之间的隔离。在零信任安全背景下,数据中心云计算环境中产生了新的网络安全需求,SDN网络环境下通过微分段技术可以在数据中心内创建更加精细的安全区域,进而部署更加灵活的安全策略,提升网络安全性。
Research and Application of Network Security Isolation Technology for Data Center Based on Micro-segmentation
With the increase in internal applications and data storage in data centers,as well as the increase in internal network traffic,the security risks are also constantly increasing.In traditional network security protection technologies,isolation between services can be achieved by dividing business subnets,configuring ACL and other strategies,and it is unable to meet the isolation between different business virtual machines.New network security requirements have emerged in the data center cloud computing environment under in the context of zero-trust security.In the SDN network environment,micro-segmentation technology can be used to create more refined security zones within the data center,so as to deploy more flexible security strategies to enhance network security.

data centersecurity isolationmicro-segmentation

左一男

展开 >

中国铁路信息科技集团有限公司,北京 100038

数据中心 安全隔离 微分段

中国国家铁路集团有限公司科研项目

P2021S005

2024

现代信息科技
广东省电子学会

现代信息科技

ISSN:2096-4706
年,卷(期):2024.8(1)
  • 1
  • 12