KS X ISO IEC 18028-1-2007 Information technology-Security techniques-IT network security-Part 1:Network security management《信息技术 安全技术 IT网络安全 第1部分 网络安全管理》.pdf

上传人:livefirmly316 文档编号:822000 上传时间:2019-02-12 格式:PDF 页数:72 大小:915.89KB
下载 相关 举报
KS X ISO IEC 18028-1-2007 Information technology-Security techniques-IT network security-Part 1:Network security management《信息技术 安全技术 IT网络安全 第1部分 网络安全管理》.pdf_第1页
第1页 / 共72页
KS X ISO IEC 18028-1-2007 Information technology-Security techniques-IT network security-Part 1:Network security management《信息技术 安全技术 IT网络安全 第1部分 网络安全管理》.pdf_第2页
第2页 / 共72页
KS X ISO IEC 18028-1-2007 Information technology-Security techniques-IT network security-Part 1:Network security management《信息技术 安全技术 IT网络安全 第1部分 网络安全管理》.pdf_第3页
第3页 / 共72页
KS X ISO IEC 18028-1-2007 Information technology-Security techniques-IT network security-Part 1:Network security management《信息技术 安全技术 IT网络安全 第1部分 网络安全管理》.pdf_第4页
第4页 / 共72页
KS X ISO IEC 18028-1-2007 Information technology-Security techniques-IT network security-Part 1:Network security management《信息技术 安全技术 IT网络安全 第1部分 网络安全管理》.pdf_第5页
第5页 / 共72页
点击查看更多>>
资源描述

1、 KS X ISO/IEC 180281 KSKSKSKS SKSKSKS KSKSKS SKSKS KSKS SKS KS IT 1: KS X ISO/IEC 180281 : 2007 (2012 ) 2007 11 30 http:/www.kats.go.krKS X ISO/IEC 180281:2007 : e- ( ) ( ) () () ( ) : () ( ) () () JS ( ) KS X ISO/IEC 180281:2007 : (http:/www.standard.go.kr) : :2007 11 30 :2012 12 31 2012-0848 : e :

2、 e ( 02-509-7262) (http:/www.kats.go.kr). 10 5 , . KS X ISO/IEC 180281:2007 i 2006 1 ISO 180281, Information technologySecurity techniquesIT network securityPart 1:Network security management , . KS X ISO/IEC 18028:2007 . 1: 2: 3: 4: 5: KS X ISO/IEC 180281:2007 ii . i 1 2 2 2 3 .2 4 .8 5 .9 6 .10 7

3、.10 7.1 .10 7.2 .13 8 .14 9 15 9.1 15 9.2 .16 9.3 16 9.4 16 9.5 17 9.6 .18 10 .18 11 20 11.1 .20 11.2 21 12 .22 13 27 13.1 27 13.2 27 13.3 44 13.4 47 13.5 49 13.6 50 13.7 .52 13.8 53 KS X ISO/IEC 180281:2007 iii 13.9 54 13.10 55 13.11 .59 14 .59 15 59 A() 61 .62 KS X ISO/IEC 180281 : 2007 (2012 ) IT

4、 1: Information technology Security techniques IT network security Part 1 :Network security management . , , , , , , . . ( ) . , . . , KS X ISO/IEC 18028 , , . . (KS X ISO/IEC 18028 ) . KS X ISO/IEC 180282 , , . KS X ISO/IEC 180283 . KS X ISO/IEC 180284 . KS X ISO/IEC 180285 (VPNs, virtual private n

5、etworks) . , . / . KS X ISO/IEC 180282 , (: , , ) . KS X ISO/IEC 180281:2007 2 KS X ISO/IEC 180283 , (: , , ) . KS X ISO/IEC 180284 , (: , , ) . KS X ISO/IEC 180285 VPN , (: , , ) . 1 . . KS X ISO/IEC 180282 KS X ISO/IEC 180285 . 2 . . ( ) . KS X ISO/IEC 133351:2005, 1: KS X ISO/IEC 17799:2006, KS X

6、 ISO/IEC 180282:2007, IT 2: KS X ISO/IEC 180283:2007, IT 3: KS X ISO/IEC 180284:2006, IT 4: KS X ISO/IEC 180285:2007, IT 5: KS X ISO/IEC 18043:2007, , , KS X ISO/IEC 18044:2005, 3 3.1 KS X ISO/IEC 7498( ) KS X ISO/IEC 17799 KS X ISO/IEC 133351 . (accountability), (asset), (authenticity), (availabili

7、ty), (baseline controls), (confidentiality), (data integrity), (impact), (integrity), (security policy), (non-repudiation), (reliability), (risk), (risk analysis), (risk assessment), (risk management), (control), (threat) (vulnerability). KS X ISO/IEC 180281:2007 3 3.2 . 3.2.1 (alert) , 3.2.2 (attac

8、ker) 3.2.3 (audit) , 3.2.4 (audit logging) 3.2.5 (audit tools) 3.2.6 (business continuity management) . , , , , . 3.2.7 Comp1281 SIM 3.2.8 (DMZ, demilitarized zone) “ ” ( ) . 3.2.9 (DoS, denial of service) KS X ISO/IEC 180281:2007 4 3.2.10 (extranet) (Intranet) . 3.2.11 (filtering) 3.2.12 (firewall)

9、 . 3.2.13 (hub) OSI (KS X ISO/IEC 74981) 1 . . 3.2.14 (information security event) , KS X ISO/IEC 18044 3.2.15 (information security incident) . KS X ISO/IEC 18044 3.2.16 (information security incident management) KS X ISO/IEC 18044 3.2.17 (internet) KS X ISO/IEC 180281:2007 5 3.2.18 (intranet) 3.2.

10、19 (intrusion) , 3.2.20 (intrusion detection) , . KS X ISO/IEC 18043 3.2.21 (IDS, intrusion detection system) , KS X ISO/IEC 18043 3.2.22 (IPS, intrusion prevention system) KS X ISO/IEC 18043 3.2.23 (jitter) 3.2.24 (malware) 3.2.25 (MPLS, multi protocol label switching) . . 3.2.26 (network administr

11、ation) KS X ISO/IEC 180281:2007 6 3.2.27 (network analyzer) 3.2.28 (network element) KS X ISO/IEC 180282 . 3.2.29 (network management) , , , , 3.2.30 (network monitoring) 3.2.31 (network security policy) , . 3.2.32 (port) TCP UDP . TCP UDP . , HTTP 80 3.2.33 (privacy) , . . , , . 3.2.34 (remote acce

12、ss) , 3.2.35 (remote user) KS X ISO/IEC 180281:2007 7 3.2.36 (router) . . 3.2.37 (security dimension) KS X ISO/IEC 18028-2 . 3.2.38 (security domain) 3.2.39 (security gateway) KS X ISO/IEC 180283 . 3.2.40 (security layers) . KS X ISO/IEC 180282 . 3.2.41 (security plane) . KS X ISO/IEC 180282 . 3.2.4

13、2 (spamming) . 3.2.43 (spoofing) . 3.2.44 (switch) KS X ISO/IEC 180281:2007 8 (:) . . OSI 2 3 (KS X ISO/IEC 74981). 3.2.45 (tunnel) , 3.2.46 (virtual private network) / 4 KS X ISO/IEC 18028 . 3G Third Generation mobile telephone system AAA Authentication, Authorization and Accounting ACL Access Cont

14、rol List ADSL Asymmetric Digital Subscriber Line AES Advanced Encryption Standard ATM Asynchronous Transfer Mode CDPD Cellular Digital Packet Data CDMA Code Division Multiple Access CLID Calling Line Identifier CLNP Connectionless Network Protocol CoS Class of Service CRM Customer Relationship Manag

15、ement DEL Direct Exchange Line DES Data Encryption Standard DMZ Demilitarized Zone DNS Domain Name Service DoS Denial of Service DSL Digital Subscriber Line EDGE Enhanced Data-Rates for GSM Evolution EDI Electronic Data Interchange EGPRS Enhanced General Packet Radio Service EIS Enterprise Informati

16、on System FTP File Transfer Protocol GPRS General Packet Radio Service GSM Global System for Mobile communications HIDS Host based Intrusion Detection System HTTP Hypertext Transfer Protocol IDS Intrusion Detection System IP Internet Protocol ISP Internet Service Provider IT Information Technology L

17、AN Local Area Network MPLS Multi-Protocol Label Switching MRP Manufacturing Resource Planning KS X ISO/IEC 180281:2007 9 NAT Network Address Translation NIDS Network Intrusion Detection System NTP Network Time Protocol OOB Out of Band PC Personal Computer PDA Personal Data Assistant PIN Personal Ide

18、ntification Number PKI Public Key Infrastructure PSTN Public Switched Telephone Network QoS Quality of Service RAID Redundant Array of Inexpensive Disks RAS Remote Access Service RTP Real Time Protocol SDSL Symmetric Digital Subscriber Line SecOPs Security Operating Procedures SIM Subscriber Identit

19、y Module SNMP Simple Network Management Protocol SSH Secure Shell TCP Transmission Control Protocol TDMA Time Division Multiple Access Telnet Terminal emulation program to work on-line on a remote computer TETRA TErrestial Trunked RAdio TKIP Temporal Key Integrity Protocol UDP User Datagram Protocol

20、 UMTS Universal Mobile Telecommunications System UPS Uninterruptible Power Supply USB Universal Serial Bus VHF Very High Frequency VoIP Voice over IP VPN Virtual Private Network WAN Wide Area Network WAP Wireless Application Protocol WEP Wired Equivalent Privacy WLAN Wireless Local Area Network WORM Write Once Read Many 5 . . . ISO/IEC 133351 KS X ISO/IEC 17799 KS X ISO/IEC 180282 KS X ISO/IEC 180285 . 3 . . KS X ISO/IEC 180281:2007 10 ( ) . , . . (Network Security Architecture) (KS X ISO/IEC 180283 ) (KS X ISO/IEC 180284 ) (KS X ISO/IEC 180285 ) IP (, ) ( )

展开阅读全文
相关资源
猜你喜欢
相关搜索

当前位置:首页 > 标准规范 > 国际标准 > 其他

copyright@ 2008-2019 麦多课文库(www.mydoc123.com)网站版权所有
备案/许可证编号:苏ICP备17064731号-1