信息安全研究 ›› 2017, Vol. 3 ›› Issue (4): 370-374.

• 技术应用 • 上一篇    下一篇

工控领域安全自主可信产品的应用

李亚楠   

  1. 成都卫士通信息产业股份有限公司北京100070
  • 收稿日期:2017-04-13 出版日期:2017-04-13 发布日期:2017-04-13
  • 通讯作者: 李亚楠
  • 作者简介:李亚楠 工程师,主要研究方向为工业控制系统信息安全.

Application of Safe Independent DecisionMaking and Controllable Product in ICS

  • Received:2017-04-13 Online:2017-04-13 Published:2017-04-13

摘要: 针对当前工控系统存在的网络互联、自身的通信网络、主机计算环境、集中管控等方面的风险,介绍了一种在安全防护上自主可控的安全防护体系.通过物理安全、边界安全、集中管控、网络及通信安全、主机安全、应用及数据安全角度的防护设计,全面、自主可控地保护工控系统安全.并介绍了自主可控的典型产品隔离交换产品的应用.该体系目标为实现工控系统在安全防护层面的自主可控,长期来看实现工控系统的可信计算技术应用,是解决工控系统安全的根本所在.

关键词: 工业控制系统, 自主可控, 安全防护体系, 隔离交换产品, 可信计算技术

Abstract: Based on the threats that exist in the ICS network interconnection and communication,host computing environment, centralized management,we introduced an independent decisionmaking and controllability protection system.By designing physical and environmental security, border protection, centralized management, network and communication security, application and data security, the ICS security can be protected comprehensively, and the system is independent decisionmaking and controllability. Also we introduced the application of the independent decisionmaking and controllability product: isolation exchange product. This system is aimed of autonomous controllable ICS security, In the long term, application of trusted computing technology in the ICS is the solution to ICS security.

Key words: industrial control system (ICS), independent decisionmaking and controllability, security protection architecture, isolation exchange products, trusted computing technology