论文部分内容阅读
网络应用的进步,改变了安全建设的体系。特别是当众多数据集中之后,不仅要服务于范围相对较小的内部用户,还要通过Internet和外联网,将服务提供给地理位置比较分散的其他外部用户。为了保证用户能够正常访问关键应用和数据,并保护这些资源的机密性、完整性及可用性,必须采用有效的安全措施,方法有很多,比如防火墙、入侵检测和3A等,但是,最为基本,最为首要的办法是采用网络分段和访问控制技术。
The progress of network application has changed the system of security construction. Especially when so many data sets are available, not only to serve a relatively small range of internal users, but also through the Internet and extranet, the service is provided to geographically dispersed other external users. In order to ensure that users can access critical applications and data and protect the confidentiality, integrity and availability of these resources, effective security measures must be adopted, such as firewall, intrusion detection and 3A, but the most basic and most The primary method is to use network segmentation and access control techniques.