期刊文献+

基于零信任的5G网络切片安全研究

Research on Zero-Trust-Based 5G Network Slicing Security
下载PDF
导出
摘要 随着5G网络的广泛部署和网络切片技术的出现,安全问题逐渐成为5G网络建设中不可忽视的一部分。在5G网络中,传统基于边界的安全防护架构无法满足更高安全需求的挑战,而不再划分信任区域、持续验证的零信任架构逐渐得到认可。分析切片现有安全技术缺陷,结合软件定义安全边界的思想,设计了基于零信任的切片安全架构。在信任评估中引入基于服务质量参数的可信度量方法,从可用性、可靠性和实时性角度建立可信度量过程,为持续验证用户是否可信、提供细粒度的访问控制决策奠定了基础。试验结果初步验证了可信度量方法的可行性。所设计的零信任网络安全架构和可信度量方法对信息安全防御相关研究和工程技术人员具有借鉴意义。 With the widespread deployment of 5G network and the emergence of network slicing technology,security has gradually become a part of 5G network construction that cannot be ignored.In 5G network,the traditional boundary-based security protection architecture cannot meet the challenge of higher security requirements,and the zero-trust architecture,which no longer divides the trust region and continuously verifies,is gradually recognized.Analyzing the existing security technology defects of slicing and combining the idea of software-defined security boundary,a zero-trust-based slicing security architecture is designed.The trust measurement method based on quality of service parameters is introduced in trust assessment,and the trust measurement process is established from the perspectives of availability,reliability,and real-time,which lays the foundation for continuously verifying whether the user is trustworthy or not and providing fine-grained access control decisions.The experimental results preliminarily verify the feasibility of the trustworthiness measurement method.The designed zero-trust network security architecture and trustworthiness measurement method are of great significance to researchers and engineers related to information security defense.
作者 项海波 鲍聪颖 孙健 吴昊 田亚伟 XIANG Haibo;BAO Congying;SUN Jian;WU Hao;TIAN Yawei(Ningbo Yongyao Power Investment Group Co.,Ltd.,Ningbo 315099,China;Ningbo Power Supply Company,State Grid Zhejiang Electric Power Co.,Ltd.,Ningbo 315016,China;Ningbo Artificial Intelligence Institute,Shanghai Jiao Tong University,Ningbo 315000,China;School of Electronic Information and Electrical Engineering,Shanghai Jiao Tong University,Shanghai 200240,China)
出处 《自动化仪表》 CAS 2024年第2期96-100,105,共6页 Process Automation Instrumentation
基金 国家重点研发计划基金资助项目(2019YFB1705703) 宁波市重大科技任务攻关基金资助项目(2021Z022) 宁波市永耀电力投资集团有限公司基金资助项目(NBGC21P05A-0926-41)。
关键词 5G 网络切片 网络安全 零信任 软件定义安全边界 服务质量 可信度量 5G Network slicing Network security Zero-trust Software-defined security boundariy Quality of service Trustworthiness measurement
  • 相关文献

参考文献6

二级参考文献54

共引文献35

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部