Volume 48 Issue 7
Aug.  2022
Turn off MathJax
Article Contents
SUN Lei, SUN Shuxin, WANG Bowen, et al. Research on network security service chain technology of data center in coal mine enterprise[J]. Journal of Mine Automation,2022,48(7):149-154.  doi: 10.13272/j.issn.1671-251x.17926
Citation: SUN Lei, SUN Shuxin, WANG Bowen, et al. Research on network security service chain technology of data center in coal mine enterprise[J]. Journal of Mine Automation,2022,48(7):149-154.  doi: 10.13272/j.issn.1671-251x.17926

Research on network security service chain technology of data center in coal mine enterprise

doi: 10.13272/j.issn.1671-251x.17926
  • Received Date: 2022-04-08
  • Rev Recd Date: 2022-07-13
  • Available Online: 2022-08-09
  • At present, most of the network security equipment between the production network and data center of coal mine enterprises are deployed in serial mode. This mode has the problems of single point of failure, link bottleneck, and operation and maintenance coupling. In order to solve the above problems, the network security service chain technology of data center in coal mine enterprise based on software defined network (SDN) is studied. The parallel deployment mode of the security equipment of the data center in coal mine enterprise is designed as follows. A service function chain (SFC) switch is connected in series on the physical topology. All security equipment is connected to the SFC switch. The SDN controller is used to control security equipment and flow through the SFC switch. The SFC switch regularly sends detection messages to the security equipment to detect the health status of the security equipment. According to the configuration, the SDN security service chain in the case of security equipment failure, upgrade or increase is realized. This chain ensures that the security equipment is not aware of online and offline. The test results show that the technology supports the visual and flexible scheduling of security service resources. The technology can enable/disable security services on service chains or configure service chains with different priorities according to needs. The technology can automatically update security service paths in the case of security equipment failure. The technology has low packet loss rate and realizes unaware switching.

     

  • loading
  • [1]
    王国法,任怀伟,赵国瑞,等. 煤矿智能化十大“痛点”解析及对策[J]. 工矿自动化,2021,47(6):1-11.

    WANG Guofa,REN Huaiwei,ZHAO Guorui,et al. Analysis and countermeasures of ten 'pain points' of intelligent coal mine[J]. Industry and Mine Automation,2021,47(6):1-11.
    [2]
    张林杰,李倩,贾哲,等. 基于SDN/NFV的安全服务链构建技术[J]. 无线电工程,2018,48(11):938-943. doi: 10.3969/j.issn.1003-3106.2018.11.06

    ZHANG Linjie,LI Qian,JIA Zhe,et al. Technology of security service chain construction based on SDN/NFV[J]. Radio Engineering,2018,48(11):938-943. doi: 10.3969/j.issn.1003-3106.2018.11.06
    [3]
    张奇. 基于SDN/NFV的安全服务链自动编排部署框架[J]. 计算机系统应用,2018,27(3):198-204. doi: 10.15888/j.cnki.csa.006090

    ZHANG Qi. Automatic scheduling deployment framework for security service chain based on SDN/NFV[J]. Computer Systems & Applications,2018,27(3):198-204. doi: 10.15888/j.cnki.csa.006090
    [4]
    周凯. 基于SDN安全服务链的研究与设计[J]. 网络安全技术与应用,2020(7):13-14. doi: 10.3969/j.issn.1009-6833.2020.07.010

    ZHOU Kai. Research and design of security service chain based on SDN[J]. Network Security Technology & Application,2020(7):13-14. doi: 10.3969/j.issn.1009-6833.2020.07.010
    [5]
    裘国星. 基于SDN服务链的云技术数据中心安全防护[J]. 科学技术创新,2020(16):76-77. doi: 10.3969/j.issn.1673-1328.2020.16.041

    QIU Guoxing. Security protection of cloud technology data center based on SDN service chain[J]. Scientific and Technological Innovation,2020(16):76-77. doi: 10.3969/j.issn.1673-1328.2020.16.041
    [6]
    陈子建. 软件定义光网络及OpenFlow扩展研究[D]. 南京: 南京邮电大学, 2019.

    CHEN Zijian. Research on software defined optical network and OpenFlow extension[D]. Nanjing: Nanjing University of Posts and Telecommunications, 2019.
    [7]
    刘艺. 面向SDN网络的安全服务链映射与调整方法研究[D]. 郑州: 中国人民解放军战略支援部队信息工程大学, 2019.

    LIU Yi. Research on security service chain embedding and adjusting methods oriented to SDN network[D]. Zhengzhou: Information Engineering University, 2019.
    [8]
    团哲恒. 基于FPGA的SDN交换机设计实现[D]. 南京: 东南大学, 2019.

    TUAN Zheheng. Design and implementation of SDN switch based on FPGA[D]. Nanjing: Southeast University, 2019.
    [9]
    孟庆月. SDN网络南向安全防护系统研究与实现[D]. 北京: 北京邮电大学, 2019.

    MENG Qingyue. Research and implementation of SDN southbound security protection system[D]. Beijing: Beijing University of Posts and Telecommunications, 2019.
    [10]
    常甫. OpenFlow交换机的远程配置与管理系统设计与实现[D]. 北京: 北京邮电大学, 2019.

    CHANG Fu. The design and implementation of a remote configuration and management system for OpenFlow switches[D]. Beijing: Beijing University of Posts and Telecommunications, 2019.
    [11]
    徐俭. 基于SDN服务链的云平台数据中心安全技术探究[C]//第17届全国互联网与音视频广播发展研讨会暨第26届中国数字广播电视与网络发展年会论文集, 济南, 2018: 153-159.

    XU Jian. Research on security technology of cloud platform data center based on SDN service chain[C]//The 17th National Symposium on the Development of Internet and Audio and Video Broadcasting and the 26th China Digital Radio, Television and Network Development Annual Conference, Jinan, 2018: 153-159.
    [12]
    蒋华,闫一凡,鞠磊. 可信服务链安全架构研究[J]. 计算机应用研究,2018,35(4):1159-1164. doi: 10.3969/j.issn.1001-3695.2018.04.042

    JIANG Hua,YAN Yifan,JU Lei. Research on secure framework for trusted service chain[J]. Application Research of Computers,2018,35(4):1159-1164. doi: 10.3969/j.issn.1001-3695.2018.04.042
  • 加载中

Catalog

    通讯作者: 陈斌, bchen63@163.com
    • 1. 

      沈阳化工大学材料科学与工程学院 沈阳 110142

    1. 本站搜索
    2. 百度学术搜索
    3. 万方数据库搜索
    4. CNKI搜索

    Figures(11)

    Article Metrics

    Article views (157) PDF downloads(19) Cited by()
    Proportional views
    Related

    /

    DownLoad:  Full-Size Img  PowerPoint
    Return
    Return