The invention provides a
software defined network cross-domain security agent method and a
software defined network cross-domain security agent
system. Unified
access control and management are performed on cross-domain shared resources,
security policy conflict is eliminated, and strategy synthetic efficiency is improved. The
software defined network cross-domain security agent
system comprises at least two integrated controllers, at least one multi-domain
processing module and at least two inter-domain agent modules, wherein the inter-domain agent modules transmit cross-domain business requests to the multi-domain
processing modules after performing
semantic translation; each multi-domain
processing module comprises a resource
database and a strategy synthesis unit; and after the strategy synthesis units receive the cross-domain business requests, the resource databases are queried, the strategy synthesis is carried out, and cross-domain strategy configuration commands are transmitted to the inter-domain agent modules. The software defined network cross-domain security agent method comprises the following steps of transferred meaning requesting,
authentication requesting,
strategy analysis and synthesis, strategy distribution, strategy
authentication,
strategy execution and the like. By the software defined network cross-domain security agent method and the software defined network cross-domain security agent
system,
information exchange of a
heterogeneous network is simplified,
information integration and synchronization difficulty of the
heterogeneous network are reduced,
resource scheduling safety is guaranteed, multi-domain resource sharing is realized, and business load of the centralized controllers in various domains can be adjusted.