Composable security network construction method and device for multi-level security services

A security network and security service technology, applied in the field of computer network security, can solve problems such as excessive separation of business and network, rigid structure, low efficiency, etc., and achieve the effects of dynamic configuration, increased usability, and good adaptability

Active Publication Date: 2016-02-03
THE PLA INFORMATION ENG UNIV
View PDF2 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0002] At the beginning of its design, TCP / IP did not consider the security threats of an open and untrusted environment, which led to various security problems encountered in its development process. On the other hand, the methods used to solve security problems are scattered repairs. In this way, different protocols introduce their own security extensions. After a long period of accumulation, the entire system becomes more and more complex, and more new problems need to be solved.
The current TCP / IP security architecture is rigid and inefficient, with a single network layer function, excessive separation of business and network, and inability to meet diverse security requirements. There are still serious problems in providing flexible, secure, trustworthy and manageable services and scalability. defect

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Composable security network construction method and device for multi-level security services
  • Composable security network construction method and device for multi-level security services
  • Composable security network construction method and device for multi-level security services

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0051]First, explain the technical terms or terms that appear in this article, so that those skilled in the art can understand the technical solution of this article:

[0052] Reconfigurable routing node: a node device that can dynamically combine resources for a composable security network, and can dynamically increase or decrease the type and size of security resources;

[0053] Security resources: refers to the collection of all software and hardware instances required for the actual operation of security services. Each instance is a program entity with certain security service processing capabilities and its related descriptions. Security resources can be clearly identified, reused and refactored;

[0054] Security service level: A division of security services according to the requirements of security services, which is the reference basis for resource allocation in composable security networks.

[0055] The following will clearly and completely describe the technical so...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a multi-class safety service combinable safety network construction method and device. The method includes conducting inductive analysis on safety business to obtain the safety business class; searching a safety resource database to obtain the quantity of corresponding network safety resources; searching a network topological graph to obtain candidate node sets meeting the requirement; building a network topological structure according to the connection relation and the construction rule of the candidate node sets; distributing and combining the safety resources according to a node resource distribution and combination function and building a combinable safety network; detecting safety business requirement change, evaluating the surplus condition of the safety resources and marking nodes not meeting the changed resource requirement as key nodes; recombining and reconstructing the safety network containing the key nodes. The method and device can improve supporting flexibility and adaptability of network safety service to the safety application business, effectively and reasonably utilizes the network safety resources to achieve multi-class safety and meets the requirement of the combinable safety network.

Description

technical field [0001] The invention relates to the field of computer network security, in particular to a multi-level security service composable security network construction method and a device thereof. Background technique [0002] At the beginning of its design, TCP / IP did not consider the security threats of an open and untrusted environment, which led to various security problems encountered in its development process. On the other hand, the methods used to solve security problems are all fragmented repairs In this way, different protocols introduce their own security extensions. After a long period of accumulation, the entire system becomes more and more complex, and more new problems need to be solved. The current TCP / IP security architecture is rigid and inefficient, with a single network layer function, excessive separation of business and network, unable to meet diverse security requirements, and there are still serious problems in providing flexible, secure, tru...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06
Inventor 胡宇翔邢池强熊刚李印海申涓王晶王雨张风雨
Owner THE PLA INFORMATION ENG UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products