作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2012, Vol. 38 ›› Issue (15): 128-133. doi: 10.3969/j.issn.1000-3428.2012.15.036

• 安全技术 • 上一篇    下一篇

基于移动信息化的安全接入平台建设

利业鞑1,刘 恒2   

  1. (1. 广东司法警官职业学院信息管理系,广州 510520;2. 中国电信广东分公司,广州 510000)
  • 收稿日期:2011-08-29 出版日期:2012-08-05 发布日期:2012-08-05
  • 作者简介:利业鞑(1969-),男,副教授、高级工程师,主研方向:网络信息系统;刘 恒,硕士
  • 基金资助:
    广东省政法网基金资助项目“监狱部门网络接入方式模拟对比测试”(ZFW2010016)

Construction of Security Access Platform Based on Mobile Informatization

LI Ye-da   1, LIU Heng   2   

  1. (1. Department of Information Management, Guangdong Justice Police Vocational College, Guangzhou 510520, China; 2. China Telecom Guangdong Corporation, Guangzhou 510000, China)
  • Received:2011-08-29 Online:2012-08-05 Published:2012-08-05

摘要: 为提高移动信息化接入的安全级别,保障组织内部业务的安全运作,在传统网络安全架构的基础上,使用第二层隧道协议和混合加密技术构建一个安全接入平台。根据平台的功能及其安全性,将移动信息化区域分为5类,并为每一类区域制定安全策略,使原本限制在内网中的业务系统可以安全地在移动终端上使用。实际应用结果表明,该平台可以保证用户身份的匿名性、数据机密性、数据完整性、数据新鲜性及不可抵赖性。

关键词: 移动安全接入平台, 移动信息化风险, 安全策略, 第二层隧道协议, 认证, 混合加密

Abstract: In order to enhance secure level of mobile informatization access and protect business of organization running securely, based on traditional network security architecture, this paper uses Layer 2 Tunneling Protocol(L2TP) and mixed encryption technology to construct a security access platform. According the functionality and security feature of the platform, the platform is classified to 5 parts. For each area, the different security policy is deployed, so that Internal business application with high security can be safely used on the mobile devices. Application result shows that the platform guarantees anonymity of user identification, confidentiality and integrity, availability and non-repudiation of data.

Key words: mobile security access platform, mobile informatization risk, security policy, Layer 2 Tunneling Protocol(L2TP), authentication, mixed encryption

中图分类号: