首页|临近空间网络零信任架构设计与应用前瞻

临近空间网络零信任架构设计与应用前瞻

扫码查看
临近空间位置特殊,临近空间网络以各类临近空间飞行器为核心节点,是"空天地"一体化网络的关键组成部分;临近空间网络进行大量高价值、高敏感数据的传输、处理、存储,其安全防护至关重要.本文阐述了临近空间网络构成、关联的其他节点、可开展的网络应用情况,在梳理临近空间网络薄弱环节的基础上,辨识出身份认证、数据安全、网络可用性、飞行器控制等方面的临近空间网络安全需求.零信任架构已成为网络安全领域的重要应用趋势,拓展应用至临近空间网络安全防护具有科学合理性,据此提出了临近空间网络零信任架构,详细讨论了总体架构、评估模型、访问控制模型、策略定义框架等层面的构成要素与应用特征.进一步探讨了临近空间网络零信任架构面临的初期信息汇集处理工作量大、策略制定与维护复杂度高、网络架构不明确加大部署难度等应用挑战,进而展望了临近空间网络零信任架构部署过程中的新技术应用价值、发展理念与实施要点等.
Design and Application Prospects of Zero-Trust Architecture for Near-Space Networks
The unique position of near space makes its network,centered around various near-space vehicles,a critical component of the integrated air-space-ground network.The near-space network transmits,processes,and stores a large amount of high-value,sensitive data,making its security protection crucial.This paper outlines the composition of the near-space network,its connections with other nodes,and potential network applications.Based on an analysis of its vulnerabilities,we identify security requirements in areas such as identity authentication,data security,network availability,and vehicle control.The zero-trust architecture,an important trend in network security,is scientifically and reasonably extended to near-space network protection.Accordingly,we propose a zero-trust architecture for near-space networks,discussing in detail its overall architecture,evaluation model,access control model,and policy definition framework.Furthermore,we address challenges such as the significant initial workload of information processing,the high complexity of policy formulation and maintenance,and the deployment difficulty due to unclear network architecture.Furthermore,we explore the application value of new technologies,development concepts,and implementation points in deploying the zero-trust architecture for near-space networks.

near-space networkzero-trust architecturecyber securitytrust assessmentaccess control

刘樵、吴昆隆、曹进、高子逸、李晖

展开 >

西安电子科技大学网络与信息安全学院,西安 710126

临近空间网络 零信任架构 网络安全 信任评估 访问控制

中国工程院咨询项目

2022-HY-18

2024

中国工程科学
中国工程院,高等教育出版社有限公司

中国工程科学

CSTPCD北大核心
影响因子:0.737
ISSN:1009-1742
年,卷(期):2024.26(5)
  • 3