摘要
为了消除网络在信息安全上存在的隐患,简述了城市基础地理信息的安全体系结构,分析若干易被忽视的协议漏洞,说明黑客由此入侵的特殊途径;通过具体给出IPv6环境下的IPSec协议的实现方法,如为终端服务通信创建IPSec筛选器列表、使用IPSec策略阻止特定网络端口的入侵及设置IPSec VPN等;提供有关城市基础信息系统信息安全的一种新的基于IPSec协议的升级解决方案,实践应用表明该方案是可行且有效的。
In order to eliminate the network information security hidden danger in modern net, the security architecture of city foundation geography information system is introduced, some slighting security hole of protocol are analyzed, several hackerintrusion approaches by way of such holes are described,and the realization approaches of IPSec protocol in IPv6, such as creating the list of IPSec filter for the terminal services communication, using the IPSec policy to prevent the specific network ports from the intrusion, setting up IPSec VPN etc,are provided in more details, then it presents a new kind of method to prevent intrusion of city foundation geography information system based on IPSec in this paper, the practice application indi cates that this plan is feasible and effective.
出处
《现代电子技术》
2008年第22期121-124,共4页
Modern Electronics Technique
基金
863计划项目子课题资助(2002AA134078)
关键词
城市基础地理信息
安全安全
网络入侵
IPSEC协议
city foundation geography information
information security
network intrusion
IPSec protocol