摘要
本文提出了基于可信平台的保护终端敏感信息的隔离交换方案,比传统的隔离装置在防护性能上有所提升,而且在隔离交换方式上也有所改进。通过采用可信计算技术,从物理层面提高了隔离交换装置的安全性以及完整性,通过使用改进的IPSec协议以及身份与位置分离等新技术,实现了内外网之间敏感数据的隔离交换。
In this paper we present an isolation exchange scheme based on trusted platform for protecting terminal sensitive information,which is better than traditional isolation equipment in protection quality and has some changes and improvements in the way of isolation exchange. We enhance security and integrity of the isolation exchange equipment from physical layer by utilizing trusted computing technology. We also realize isolation exchange of sensitive information between internal network and external network by exploiting some new technologies such as enhanced IPSec protocol and separation between identity and location.
出处
《北京电子科技学院学报》
2014年第4期43-47,共5页
Journal of Beijing Electronic Science And Technology Institute