信息安全研究 ›› 2021, Vol. 7 ›› Issue (1): 53-58.

• 学术论文 • 上一篇    下一篇

新形势下云安全建设探讨

赵立农,曹莉,邓秘密   

  1. 中国移动通信集团重庆有限公司
  • 收稿日期:2021-01-10 出版日期:2021-01-05 发布日期:2021-01-10
  • 通讯作者: 赵立农
  • 作者简介:赵立农,1977.12 本科,通信工程师(中级),主要研究方向为网络信息安全、云计算安全 zhaolinong@cq.chinamobile.com 曹莉,1982.4 本科,通信工程师(中级),主要研究方向为网络信息安全、云计算安全 caoli2@cq.chinamobile.com 邓秘密,1990.11 硕士研究生,通信工程师(中级),主要研究方向为网络信息安全、加解密算法 dengmimi@cq.chinamobile.com

Discussion on Cloud Security Construction under the new situation

  • Received:2021-01-10 Online:2021-01-05 Published:2021-01-10

摘要: 在云计算应用越发推广和普及的发展过程中,虚拟化作为其中的关键技术也得到了飞速发展,文章从云计算特点分析当前的网络安全现状和存在主要网络安全问题,根据云计算特点、租户个性化需求等,结合等保2.0要求,探讨安全组件资源池化、SDN分流技术、流量编排技术使用,设计一套符合新环境、新技术、新监管要求的综合解决方案,完善虚拟化环境自身安全防御体系,降低安全建设成本。向云内的租户提供相对应的安全服务能力,并且安全能力的使用能够实现安全运营。

关键词: 云技术, 云安全管理平台, 安全资源池, 租户, 安全组件, 兼容开放

Abstract: Discussion on Cloud Security Construction under the new situation, in the development process of cloud computing application becoming more and more popular, virtualization, as a key technology, has also developed rapidly, This paper analyzes the current network security status and the main network security problems from the characteristics of cloud computing. According to the characteristics of cloud computing and the personalized needs of tenants, combined with the requirements of equal security 2.0, it discusses the use of security component resource pooling, SDN streaming technology and traffic scheduling technology, designs a set of comprehensive solutions that meet the new environment, new technology and new regulatory requirements, and improves the virtualization environment Its own security defense system can reduce the cost of security construction. Provide the corresponding security service capabilities to the tenants in the cloud, and the use of the security capabilities can achieve safe operation..

Key words: Cloud technology, cloud security management platform, security resource pool, tenant, Security components, Compatible and open