Research and Application of Network Security Isolation Technology for Data Center Based on Micro-segmentation
With the increase in internal applications and data storage in data centers,as well as the increase in internal network traffic,the security risks are also constantly increasing.In traditional network security protection technologies,isolation between services can be achieved by dividing business subnets,configuring ACL and other strategies,and it is unable to meet the isolation between different business virtual machines.New network security requirements have emerged in the data center cloud computing environment under in the context of zero-trust security.In the SDN network environment,micro-segmentation technology can be used to create more refined security zones within the data center,so as to deploy more flexible security strategies to enhance network security.