摘要
电信云是基于网络功能虚拟化(network functions virtualization,NFV)和软件定义网络(software defined network,SDN)技术构建的云化网络基础设施,包括物理基础设施层、虚拟基础设施层、电信业务设施层,每层包括业务面和管理面。通过网络资源虚拟化打造弹性、高效、按需分配的业务网络。提出了电信云业务分层模型,分析了基础设施业务面及管理面六类主要的安全威胁及表现形式,从部署边界防火墙、部署入侵检测、密码算法协处理器等维度全方位提出了电信云基础设施系统化信息安全解决方案,从而有利于构建动态、主动、全网协同与智能运维的电信云平台纵深安全防护体系。
Telecom cloud is a cloud network infrastructure built based on NFV(Network Functions Virtualization)and SDN(Software Defined Network)technology,including physical infrastructure layer,virtual infrastructure layer and telecom service facility layer,each layer includes business surface and management surface.Create a flexible,efficient and on-demand business network through network resource virtualization.The telecom cloud business layered model,analyzes the infrastructure business and management of six kinds of main security threats and forms,from the deployment border firewall,intrusion detection,password algorithm assistant processor dimension proposed the telecom cloud infrastructure systematic information security solutions,to build dynamic,active,entire network synergy and intelligent operations of telecom cloud platform deep security protection system.
作者
陈舒
肖鸿耀
丁源
宋仕斌
Chen Shu;Xiao Hongyao;Ding Yuan;Song Shibin(China Mobile Internet of Things Co.,Ltd.,Chongqing 401336,China;Sichuan Public Project Consulting and Management Co.,Ltd.,Chengdu 610058,China)
出处
《现代计算机》
2024年第15期69-73,共5页
Modern Computer
关键词
电信云
业务分层模型
DDOS
安全风险
安全策略
telecom cloud
business stratification model
DDoS
security risk
security strategy