Netinfo Security ›› 2019, Vol. 19 ›› Issue (9): 134-138.doi: 10.3969/j.issn.1671-1122.2019.09.028

• Orginal Article • Previous Articles     Next Articles

Research and Implementation of Scientific DMZ Based on SDN

Yaqiu ZHOU1,2, Yongmao REN1, Zhuo LI1,2, Xu ZHOU1   

  1. 1. Computer Network Information Center, Chinese Academy of Sciences, Beijing 100190, China
    2. University of Chinese Academy of Sciences, Beijing 100049, China
  • Received:2019-07-15 Online:2019-09-10 Published:2020-05-11

Abstract:

The transmission of scientific big data usually has high requirements for network transmission performance different from ordinary Internet applications. In actual production networks, especially in LANs, many network security devices such as firewalls and IDS are usually deployed, these devices provide security for the transmission of traffic, but also affect network transmission performance. This paper uses the new software-defined networking technology, proposed a scientific DMZ network architecture based on software-defined networking. While protecting the security of common business flows, it handles the trusted scientific data stream flexibly to ensure the transmission performance of scientific data.

Key words: scientific data transmission, software-defined networking, scientific DMZ

CLC Number: