远程在线实验平台的安全性分析与改进

    The Security Analysis and Improvement of Remote Online Network Racks

    • 摘要: 为了促进远程教育的发展,推动远程在线实验平台的建设,分析了现有远程在线实验平台的安全性问题,将一次性登录密码策略和动态访问控制策略与认证、授权、记帐安全框架相结合,提出了一种远程在线实验平台的改进方案.改进后的方案有效地解决了Telnet协议引起的通信中用户密码被监听和攻击者占用全部VTY端口导致合法用户无法连接访问控制服务器的问题,从而提高了远程在线实验平台的安全性.

       

      Abstract: To stimulate the development of Distance Education and the construction of Remote Online Network Racks, the present security problems were analyzed and an improved scheme of Remote Online Network Racks was proposed in this paper. In the improved scheme, One-Time Password Policy and Dynamic Access Control Policy were integrated with AAA Framework, and the following problems were solved: the password was compromised because of the Telnet protocol which was not encrypted; and users were unable to connect to Access Servers led by Attackers connecting to all VTY ports. Therefore, the security level of the Remote Online Network Racks was raised.

       

    /

    返回文章
    返回