论文部分内容阅读
通过基于网络系统的应用,能够大幅提升业务能力,但是如何有效的控制网络设备的接入,防止违规设备,从而确保网络中数据安全成为一个迫切需要解决的问题。针对传统方式主要依靠手工和管理措施的弊端,通过SNMP(Simple Network Manage Protocol)实现对于接入主机的自动发现,结合安全管理软件进行主机的合法性识别,合法设备自动放行,违规设备自动予以网络接口层阻断,从而确保网络数据安全。该系统管理方式简便,扩充性和兼容性好,能够实现在极少量管理人员的情况下实现大规模网络管理。该系统推荐在涉密网络及对于商业秘密较为敏感的网络使用。
However, how to effectively control the access of network devices and prevent unauthorized devices so as to ensure the data security in the network becomes an urgent problem to be solved. Aiming at the disadvantages of manual and management measures in the traditional way, automatic discovery of access hosts through SNMP and security of host computer with security management software are performed, legitimate devices are automatically released, and unauthorized devices are automatically taken to the network Interface layer blocking, to ensure network data security. The system management is simple, scalable and compatible, enabling large-scale network management with very few managers. The system is recommended for use in classified networks and in networks that are more sensitive to trade secrets.