可定制的5G+工业互联网安全能力

作者:王继刚, 王庆, 滕志猛 阅读量:

 

可定制的5G+工业互联网安全能力
 
王继刚, 王庆, 滕志猛
(中兴通讯股份有限公司,中国 深圳518057)
 
摘要:5G+工业互联网安全以5G自身安全能力为基础,结合工业互联网的实际应用场景,参考网络安全等级保护相关指导,通过融合创新,将零信任、内生安全、微分段等前沿安全技术融入5G工业互联网场景安全方案中,以定制化的安全能力来满足工业互联网整体的安全防护需求。这些定制化的安全能力包括:差异化切片满足企业网络安全隔离需求,用户面功能(UPF)下沉+灵活以太网(FlexE)可靠地支持企业低时延业务需求,多重机制提供企业端到端数据安全保障,零信任架构增强企业自主控制接入安全策略,以及态势感知保障网络整体安全能力。  

关键词:5G;工业互联网;可定制安全能力;零信任网络;内生安全


Customizable 5G+ Industrial Internet Security Capabilities
 
WANG Jigang, WANG Qin, TENG Zhimeng
(ZTE Cooperation, Shenzhen 518057, China)
 
Abstract: Based on the security capability of 5G network, 5G+industrial Internet security is deeply combined with the actual application scenarios of industrial Internet. At the same time, it also complies with the relevant requirements of network security level protection. Zero trust networks, endogenous security, differential segment and other cutting-edge security technologies are integrated into the 5G industrial Internet scenario security scheme. Through customized security capabilities, security researchers can meet the overall security protection needs of the industrial Internet. These customized security capabilities include: differentiated slices to meet the needs of enterprise network security isolation; user port function (UPF) sinking + FlexE reliably supports low latency business requirements; multiple mechanisms provide enterprise end-to-end data security guarantee; zero trust architecture enhances enterprise independent control access security strategy; and situation awareness ensures the overall network security capability. 

Keywords: 5G; industrial Internet; customizable security capabilities; zero trust networks; endogenous security

 

在线PDF浏览: PDF