通過一個平臺、統一框架、數據(ju)集(ji)中(zhong),實現更(geng)強更(geng)智(zhi)能的安(an)全保護
Industry status
2022年(nian)7月1日,國(guo)家(jia)電子政(zheng)(zheng)務外(wai)網(wang)(wang)管(guan)(guan)(guan)(guan)理(li)(li)(li)中心印發《政(zheng)(zheng)務外(wai)網(wang)(wang)終(zhong)(zhong)(zhong)端(duan)(duan)一機(ji)兩用安(an)(an)(an)全(quan)(quan)(quan)(quan)管(guan)(guan)(guan)(guan)控技術指南》(GW0015—2022),明(ming)確(que)了(le)政(zheng)(zheng)務外(wai)網(wang)(wang)終(zhong)(zhong)(zhong)端(duan)(duan)安(an)(an)(an)全(quan)(quan)(quan)(quan)防(fang)(fang)護(hu)技術要求,指出(chu)局域網(wang)(wang)終(zhong)(zhong)(zhong)端(duan)(duan)安(an)(an)(an)全(quan)(quan)(quan)(quan)防(fang)(fang)護(hu)應(ying)當在(zai)遵(zun)守等保等安(an)(an)(an)全(quan)(quan)(quan)(quan)規范要求基(ji)(ji)礎上,執行(xing)實施終(zhong)(zhong)(zhong)端(duan)(duan)安(an)(an)(an)全(quan)(quan)(quan)(quan)“十項”安(an)(an)(an)全(quan)(quan)(quan)(quan)能力(li),原則上應(ying)對終(zhong)(zhong)(zhong)端(duan)(duan)進行(xing)惡意代碼(ma)防(fang)(fang)范、終(zhong)(zhong)(zhong)端(duan)(duan)入(ru)侵防(fang)(fang)護(hu)、非法外(wai)聯控制(zhi)、安(an)(an)(an)全(quan)(quan)(quan)(quan)基(ji)(ji)線檢查、漏洞檢測(ce)(ce)修復、數(shu)據安(an)(an)(an)全(quan)(quan)(quan)(quan)防(fang)(fang)護(hu)、終(zhong)(zhong)(zhong)端(duan)(duan)軟件管(guan)(guan)(guan)(guan)理(li)(li)(li)、終(zhong)(zhong)(zhong)端(duan)(duan)補丁(ding)管(guan)(guan)(guan)(guan)理(li)(li)(li)、終(zhong)(zhong)(zhong)端(duan)(duan)資(zi)產(chan)管(guan)(guan)(guan)(guan)理(li)(li)(li)及終(zhong)(zhong)(zhong)端(duan)(duan)精準阻(zu)斷(duan)。 隨著(zhu)(zhu)各級政(zheng)(zheng)府(fu)電子政(zheng)(zheng)務信(xin)息(xi)(xi)化(hua)的(de)深入(ru)發展(zhan)(zhan),信(xin)息(xi)(xi)網(wang)(wang)絡(luo)已經成為(wei)(wei)國(guo)家(jia)各級政(zheng)(zheng)府(fu)單位運(yun)行(xing)的(de)基(ji)(ji)礎。近些年(nian)政(zheng)(zheng)府(fu)部門開展(zhan)(zhan)的(de)信(xin)息(xi)(xi)安(an)(an)(an)全(quan)(quan)(quan)(quan)大檢查中,發生了(le)多起重(zhong)大信(xin)息(xi)(xi)安(an)(an)(an)全(quan)(quan)(quan)(quan)事件,主要是由(you)于計算機(ji)終(zhong)(zhong)(zhong)端(duan)(duan)引起。 隨著(zhu)(zhu)信(xin)息(xi)(xi)安(an)(an)(an)全(quan)(quan)(quan)(quan)的(de)建設,各政(zheng)(zheng)府(fu)部門對終(zhong)(zhong)(zhong)端(duan)(duan)進行(xing)網(wang)(wang)絡(luo)準入(ru)控制(zhi)、補丁(ding)管(guan)(guan)(guan)(guan)理(li)(li)(li)、桌面(mian)管(guan)(guan)(guan)(guan)理(li)(li)(li)、安(an)(an)(an)全(quan)(quan)(quan)(quan)加固、U盤(pan)管(guan)(guan)(guan)(guan)理(li)(li)(li)、網(wang)(wang)絡(luo)行(xing)為(wei)(wei)審(shen)計、敏感(gan)數(shu)據管(guan)(guan)(guan)(guan)理(li)(li)(li)、數(shu)據防(fang)(fang)泄漏管(guan)(guan)(guan)(guan)理(li)(li)(li)、病毒防(fang)(fang)護(hu)、終(zhong)(zhong)(zhong)端(duan)(duan)檢測(ce)(ce)與響(xiang)應(ying)、加密等措施,導致一個終(zhong)(zhong)(zhong)端(duan)(duan)安(an)(an)(an)裝多個管(guan)(guan)(guan)(guan)理(li)(li)(li)客戶(hu)端(duan)(duan),嚴重(zhong)影(ying)響(xiang)終(zhong)(zhong)(zhong)端(duan)(duan)運(yun)行(xing)速(su)度和用戶(hu)體驗。另一方(fang)面(mian),從2016年(nian)提(ti)出(chu)安(an)(an)(an)全(quan)(quan)(quan)(quan)可(ke)控體系(xi)以來,國(guo)家(jia)提(ti)出(chu)了(le)“2+8+N”體系(xi), 逐(zhu)步實現國(guo)產(chan)化(hua)替代,“2”是指黨(dang)、政(zheng)(zheng)。隨著(zhu)(zhu)國(guo)產(chan)化(hua)建設的(de)不斷(duan)深入(ru)發展(zhan)(zhan),國(guo)產(chan)終(zhong)(zhong)(zhong)端(duan)(duan)安(an)(an)(an)全(quan)(quan)(quan)(quan)也面(mian)臨著(zhu)(zhu)日益(yi)嚴峻的(de)考(kao)驗。
Solution
以聯軟ESPP企業安全(quan)(quan)(quan)監測(ce)保護(hu)(hu)平臺為基(ji)礎(chu)的(de)《政(zheng)府終端(duan)一(yi)(yi)體(ti)化(hua)平臺解(jie)決方案(an)(an)》,通過(guo)一(yi)(yi)個(ge)平臺、統一(yi)(yi)框(kuang)架、數(shu)據集中,實現更強更智(zhi)(zhi)能(neng)的(de)安全(quan)(quan)(quan)保護(hu)(hu),涉及網(wang)絡(luo)(luo)準(zhun)入控制(zhi)、網(wang)絡(luo)(luo)智(zhi)(zhi)能(neng)防御、桌面(mian)安全(quan)(quan)(quan)管理、數(shu)據防泄(xie)露、病毒防護(hu)(hu)、檢測(ce)與(yu)(yu)響應、終端(duan)安全(quan)(quan)(quan)運營等方面(mian),為用戶提供一(yi)(yi)體(ti)化(hua)、全(quan)(quan)(quan)方位的(de)政(zheng)務外(wai)網(wang)網(wang)絡(luo)(luo)與(yu)(yu)信息安全(quan)(quan)(quan)解(jie)決方案(an)(an)。
該方案包括:
統一客戶(hu)端(duan):一個客戶(hu)端(duan)Agent從網(wang)絡準入控制、桌面運維管理(li)、終端(duan)安全管理(li)、到(dao)補丁加固、外設管控、終端(duan)行為審計、數據防泄(xie)密、文檔安全、終端(duan)檢測及響應等全場景端(duan)點安全功能覆蓋(gai);
全網資產(chan)可視(shi)化:對網內PC、移動終端、IOT設備(bei)進(jin)行(xing)自(zi)動發(fa)現、設備(bei)類(lei)型識別(bie),確保資產(chan)“可視(shi)”;
統(tong)一(yi)(yi)(yi)權限(xian):統(tong)一(yi)(yi)(yi)管控用(yong)戶的網(wang)絡資源訪問權限(xian)、終端(duan)操作權限(xian)、數據外(wai)發權限(xian),實現以人(ren)為中(zhong)心的統(tong)一(yi)(yi)(yi)安(an)全管理;
終(zhong)端桌面管(guan)控(kong):涵蓋終(zhong)端安全(quan)基(ji)線完善與加(jia)固(gu)、終(zhong)端標準化(hua)(hua)管(guan)理、運維簡(jian)化(hua)(hua)管(guan)理、軟件正版化(hua)(hua)和標準化(hua)(hua)管(guan)理;
終端數據(ju)(ju)防泄密:對政(zheng)務外網數據(ju)(ju)在創(chuang)建(jian)、流轉(zhuan)、存儲(chu)、使用、外發、互(hu)聯網傳(chuan)輸等(deng)階段進行(xing)場景化的數據(ju)(ju)防泄露(lu)(lu),通過敏感檢測(ce)、水印、文檔加密、文檔追(zhui)蹤等(deng)技(ji)術進行(xing)泄露(lu)(lu)數據(ju)(ju)的快速追(zhui)溯(su)定(ding)位,自動發現(xian)、自動收集(ji)、智能分類(lei)、統一管控、風險分析、流轉(zhuan)追(zhui)溯(su);
終端(duan)防(fang)病毒(du)(du):除了(le)防(fang)范常見(jian)木(mu)馬(ma)、病毒(du)(du),還提供文(wen)件防(fang)勒索、釣魚行為檢測等能(neng)力(li)避免終端(duan)文(wen)件遭(zao)受勒索病毒(du)(du)的入侵。
終端(duan)檢測與響(xiang)應:多維的(de)終端(duan)行為數據類型采集,快速(su)分析(xi)海量數據,快速(su)識別(bie)告警安全風險,深(shen)度發現威(wei)脅(xie)事(shi)件,并快速(su)調查(cha)取證,威(wei)脅(xie)響(xiang)應,處置(zhi)修復。
Customer value