Local area network system and method for maintaining safety thereof

A local area network and security terminal technology, applied in the field of network security, can solve problems such as single technology, safe and credible verification, and difficulty in obtaining security protection for legitimate users in plain text, so as to improve security and convenience, and prevent leakage

Inactive Publication Date: 2009-12-02
WUXI RES INST OF APPLIED TECH TSINGHUA UNIV +1
View PDF0 Cites 20 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0004] After analyzing the existing technologies, the inventors found that the characteristics of various existing solutions are that, firstly, autonomous access control strategies are usually adopted, which can prevent illegal users from accessing data, but often cannot prevent legal users from intentionally or Unintentional data leakage; second, most of them rely on cryptography technology, and the encryption protection of data information prevents information leakage to a certain extent, but it is difficult to obtain security protection for the plaintext held by legitimate users; third, the technology used is relatively single, For example, it is only for the prevention and control of internal information exchange in the LAN, or to prevent information leakage caused by mobile storage devices, and there are few considerations for the architecture of the LAN.
[0005] In addition, although the existing comprehensive solutions in the industry have been applied in practice, they have not formed a complete theoretical system and perfect solutions to guide the construction of LAN security systems
Different intranet security systems often adopt different architectures. On the one hand, they adapt to certain specific needs. On the other hand, it also makes the assessment of the security of these systems more complicated, and it is difficult to verify their security and credibility theoretically.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Local area network system and method for maintaining safety thereof
  • Local area network system and method for maintaining safety thereof
  • Local area network system and method for maintaining safety thereof

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0042] The embodiment of the present invention provides a local area network system, such as figure 1As shown, it includes: a network monitoring device 101 and a security terminal 102 respectively connected to the network monitoring device 101, a main control server 103, a protection server 104, a public secret-related resource server 105 and a private secret-related resource server 106,

[0043] The network monitoring device 101 is used to monitor the exchange and forwarding of data between the security terminals 102 and between the security terminal 102 and the external network according to the network security policy;

[0044] Security terminal 102 has an identity, including:

[0045] A division module, configured to divide the logical storage area of ​​the security terminal 102;

[0046] The authentication module is used to obtain the identity authentication information of the user and the login mode of the user; the identity authentication information and the login mode ...

Embodiment 2

[0096] On the basis of Embodiment 1, the embodiment of the present invention also provides a method for maintaining information security in a local area network, such as image 3 shown, including the following steps:

[0097] 310: The security terminal forwards the authentication information and login mode input by the user to the main control server.

[0098] This embodiment can be applied to the local area network system described in the first embodiment. The topology of the local area network system is a star local area network structure, with the network monitoring device 101 as the center of the star network, and other components are directly connected to the network monitoring unit, but not connected to each other. The security terminal 102 is an operation terminal provided by the system for the user, and the user can use the security terminal to perform various operations on a normal computer. The security terminal provides an interface for users to log in to the secu...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a local network system and a method for maintaining the safety thereof and belongs to the field of network safety. The system comprises network monitoring equipment, a safety terminal, a main control server, public / private secret-associated source servers and a protective server, wherein the safety terminal, the main control server, the public / private secret-associated source servers and the protective server are connected with the network monitoring equipment; the network monitoring equipment monitors data switching and forwarding; the safety terminal performs local monitoring; the main control server verifies identity and maintains safety policies; the public secret-associated source server monitors accesses to the public secret-associated sources; the private secret-associated source server monitors the accesses to private secret-associated sources; and the protective server provides data reduction protection. The method comprises the following steps that: the safety terminal inputs authentication data and input modes; and the main control server verifies the identity of a user; and if the user passes through the verification, the main control server, the network monitoring equipment, the public secret-associated source server, the private secret-associated source server, the protective server and the safety terminal jointly maintain the safety of the network. The system and the method improve network access safety.

Description

technical field [0001] The invention relates to the field of network security, in particular to a local area network system and a method for maintaining information security of the local area network. Background technique [0002] Information security issues in a network environment are much more complicated than those in a stand-alone environment. Most of the current network security problems do not come from outside the network, but are caused by malicious or illegal operators inside the LAN. The security and trustworthiness of the LAN has become the prerequisite and necessary condition for the security of the WAN. Only by solving the security problem of the LAN first, can the security problem of a larger-scale network be solved. [0003] Among many LAN security issues, the leakage of confidential information is extremely harmful. According to data records, more than 70% of most confidential and sensitive data are leaked by internal employees from the desktop terminal co...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L29/06H04L12/28H04L12/24H04L12/26
Inventor 戴一奇林劼谭智勇李晓哲臧美君薛海伟冯小平张云亮廖树仁张秋艳
Owner WUXI RES INST OF APPLIED TECH TSINGHUA UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products