智能防御的私有云打印系统
作者:
作者单位:

作者简介:

通讯作者:

中图分类号:

基金项目:

福建省高校产学合作项目(2018H6007);福建省中青年教师教育科研项目(JAT170126);福建省海洋经济发展补助资金(ZHHY-2020-3)


Private Cloud Printing System Based on Intelligent Defense Mechanism
Author:
Affiliation:

Fund Project:

  • 摘要
  • |
  • 图/表
  • |
  • 访问统计
  • |
  • 参考文献
  • |
  • 相似文献
  • |
  • 引证文献
  • |
  • 资源附件
  • |
  • 文章评论
    摘要:

    针对打印服务中普遍存在的易受攻击、数据泄密等安全风险以及它的安全等级完全依赖外部环境的信息安全建设的特点, 提出一种基于智能防御的私有云的安全打印架构. 该架构以私有云技术为基础采用虚拟打印技术为打印服务提供统一的透明的访问接口, 并结合身份验证和打印安全策略对打印业务流进行监控管理, 同时应用一种端末的网络访问控制策略实现打印输出端在网内的安全隔离, 以达到按需访问和智能防御的目的. Jmeter进行系统压测和hping3进行安全性测试的结果表明, 在没有遭受攻击时, 提交作业和作业输出这2个业务流分别在400并发用户连续发起100次的请求下, 系统执行无误的响应时间仍在2 s以内; 在遭受5000 SYN包/s攻击时, 系统在上述请求下执行作业输出的异常率也只有3.62%. 在防范打印风险的同时, 仍具有良好的用户体验和健壮性.

    Abstract:

    The current print service is faced with many security challenges, such as network attack and data leakage, and its security level completely depends on the information security of the external environment. As such, a secure printing architecture based on private cloud and intelligent defense is introduced in this paper. The architecture with private cloud as the core provides a unified and transparent access interface for print service by virtual printing. It monitors and manages the printing business flow on the basis of authentication and printing security policies. Meanwhile, it securely isolates the printing output device from the client network and the data center network with an access control mechanism for the end point, realizing the on-demand access to print service and intelligent defense against network exceptions. The Jmeter-based stress testing and the hping3-based security testing demonstrate that the system with this architecture has good user experience and strong robustness. To be specific, it spends less than 2 s successfully handling 100 consecutive requests from 400 concurrent clients respectively for submitting and outputting print jobs when it is not attacked, and the exception rate of outputting print jobs for the same requests is only 3.62% when the system is attacked by 5000 SYN packets/s.

    参考文献
    相似文献
    引证文献
引用本文

林潇,吴怡.智能防御的私有云打印系统.计算机系统应用,2021,30(7):102-109

复制
分享
文章指标
  • 点击次数:
  • 下载次数:
  • HTML阅读次数:
  • 引用次数:
历史
  • 收稿日期:2020-11-02
  • 最后修改日期:2020-12-02
  • 录用日期:
  • 在线发布日期: 2021-07-02
  • 出版日期:
文章二维码
您是第位访问者
版权所有:中国科学院软件研究所 京ICP备05046678号-3
地址:北京海淀区中关村南四街4号 中科院软件园区 7号楼305房间,邮政编码:100190
电话:010-62661041 传真: Email:csa (a) iscas.ac.cn
技术支持:北京勤云科技发展有限公司

京公网安备 11040202500063号