当前位置>主页 > 期刊在线 > 信息安全 >

信息安全2018年5期

六安市供电系统视频监控专用VPN 网络设计
马清华,李军
(国网安徽省电力公司六安市叶集供电公司,安徽 叶集 237431)

摘  要:市级平台宜采用服务器集群的方式实现平台的安全稳定运行,通过交换机来实现平台内服务单元网络的构建,同时,在平台与III/IV 内网之间通过架设防火墙与NAT 来实现视频监控平台与电力III/IV 区内网的安全隔离;在前端接入侧,通过架设协议转换网关,一方面实现了对所有变电站前端设备的接入,另一方面通过该网关起到了对视频监控平台与站端的数据过滤的作用,保证站端系统与本视频监层控平台之间的安全隔离;使用MIS 传送视频数据的前端站点需要加防火墙,以保证MIS 网络与视频监控专用网络的安全隔离;通过外网接入的外网平台或前端需加设防火墙及纵向加密认证装置,保证电力专网与公共网络的安全隔离。


关键词:供电系统;视频监控;VPN



中图分类号:TP277         文献标识码:A         文章编号:2096-4706(2018)05-0157-02


Design of Dedicated VPN Network for Video Monitoring in Lu’an Power Supply System
MA Qinghua,LI Jun
(State Grid Anhui Electric Power Company Lu’an Yeji Power Supply Company,Yeji 237431,China)

Abstract:The municipal platform should use the server cluster to realize the safe and stable operation of the platform,and realize the construction of the service unit network in the platform through the switch. At the same time,the security isolation between the video monitoring platform and the power III/IV inner network is realized between the platform and the III/IV inner network to achieve the security isolation between the video monitoring platform and the power III/IV inner network. Through the erection protocol conversion gateway, on the one hand the realization of all substation front-end equipment access,on the other hand,through the gateway to realize the video monitoring platform and the station end of the data filtering function,to ensure the station end system and the video surveillance platform between the security isolation;use MIS to transmit video data front end station It is necessary to add a firewall to ensure the security isolation of the MIS network and the special network for video surveillance. The external network platform or front end of the external network needs to add a firewall and a vertical encryption authentication device to ensure the safe isolation of the power network and the public network.

Keywords:power supply system;video surveillance;VPN


参考文献:

[1] 朱圣. 基于MPLS 技术的政府城域网体系结构的设计与探讨 [D]. 上海:华东师范大学,2008.

[2] 刘向东,李志洁,王德高,等. 网络地址转换原理实验的设计与实现 [J]. 实验科学与技术,2012,10(4):106-109+164.

[3] 孙秀娟. 浅谈网络地址转换(NAT)技术 [J]. 北京工业职业技术学院学报,2006(1):53-56.


作者简介:马清华(1976-),男,安徽六安人,助理工程师,本科,研究方向:电力技术。