摘要
为了更好地检测电力行业造成的巨大安全隐患,在分析已有电力移动应用安全架构的基础上,提出了一种基于安全机制的电力系统移动测试技术,引入等级保护测评理念对移动客户端应用安全性实施了系统性测评,并给出了用户身份鉴别机制和数据通信机制。通过案例分析得到:该电力系统移动测试方案可以测试得到更多安全漏洞,提高了现有移动应用的稳定安全运行,提升了移动应用的安全性和健壮性,有效保护各类应用,避免受到开发团队人员水平差异的影响,促进整体安全水平的明显提升。
In order to better detect the power industry caused great security hidden danger,on the basis of analyzing the existing power mobile application security architecture,this paper proposes a security mechanism based mobile testing technology in power system,introducing level protection evaluation idea implemented a systemic evaluation on the safety of mobile client application,and gives the user authentication and data communication mechanism.Through case analysis:the mobile power system test scheme can get more security vulnerability testing,improve the stability of the mobile application now safe operation,improve the security and robustness of mobile applications,effective protection of various kinds of applications,avoid is affected by the development team personnel level differences,promote the overall safety level improved significantly.
作者
陈铭
王昆
徐晓峰
刘仲
宗绍磊
CHEN Ming;WANG Kun;XU Xiaofeng;LIU Zhong;ZONG Shaolei(State Grid Wuxi Power Supply Company,Jiangsu Wuxi 214061,China)
出处
《工业仪表与自动化装置》
2019年第3期91-94,共4页
Industrial Instrumentation & Automation
关键词
电力移动应用
风险分析
安全测试
power mobile application
risk analysis
security testing