2013年5月21日星期二

Network equipment is active


In the network security and network security options,LS-S3328TP-EI-24S-DC network security is only a means or way, and the security of network is the ultimate goal of network builders. Following the view of the current network security in a passive protection, after various safety equipment providers offered security products and solutions, as the network equipment providers of Cisco and digital China also put forward the concept of active safety, from the network equipment, network security, network planning and network construction and so on, through the integration, the network the formation of a full security of interactive elements of the organic whole, so as to provide a safety net for the user.
Internal potential is much higher than that of external attack
Although the virus or not with good external attacks to the security of the network has brought many problems, but the practice has proved that the effect is far less than the internal security, network users is the biggest dangers.
According to the safety evaluation of numerous enterprise data shows, network security issues only 20% comes from outside the network, and the safety margin of 80% from the internal network. As Troy because Trojan events and fall, at present the enterprise in the network security, although the use of traditional antivirus server, firewall, IDS intrusion detection system for defense in network exit, but they still remain in the passive protection level.
Active safety network
Network security is to think of a way to solve the crisis, or take the initiative to ensure the security of the network, starting from the end users in the network, the security plan, has become the manufacturers and users is extremely urgent problem. In the "Cisco self-defending network planning" and "Digital China networks D2SMP (domain of security management policy of Distributed Technology)" concept, think more initiative need security network.
In the past, network security is the security equipment passive set in a node on the network, the device includes IDS server, firewall, anti-virus server etc.. They are passive safety protection equipment, wait for the illegal attack, as impregnable as main means, but with the emergence of a large number of virus, hacker tools flood, passive safety protection equipment that has been unable to guarantee the security of the network.
Such as Cisco in the launch since the defense network equipment, in cooperation with the trend of technology to create a combination of hardware and software security network for the customer, thereby substantially eliminating the virus in the backbone network communication. While China Network launched the security of D2SMP network technology concept and end to end the whole network solutions, combined with active safety and passive safety, to achieve full network security.
The combination of protection and defense
Network security is only a means, and the security of network is the ultimate goal of network builders. The "Cisco self-defending network plan" and the "D2SMP" digital technology concept provides a new concept of security network to network construction, based on the internal network of "self immunity", as well as the combination of traditional security a security protection system, so as to realize the security of network.
The "Cisco self-defending network" is an innovative, multiple aspects of network security strategy, the goal is to find, ability of defense security threat to improve network. Network access control is an important part of Cisco self-defending network plan. Its core idea is, control access, equipment and access does not meet the safety conditions to prevent access to the network, and placed it in a separate area, or only for limited access to computing resources.
While China's "D2SMP" focuses on internal security of Intranet, the target is active safety and passive protection network exit fusion internal to the network, the network to form a full security of interactive elements of the organic whole. The technology philosophy is composed of security authentication server, security features, IPS switch system, client software and a series of security products, according to the geographic location of the user,S3328TP-EI-24S  the user account properties, purpose of use and other characteristics of network was divided into different logical security domain.

more information about Huawei Switch, you can visit Huanetwork.com

没有评论:

发表评论