当前位置:网站首页>Case analysis of terminal data leakage prevention
Case analysis of terminal data leakage prevention
2022-06-22 06:02:00 【cnsinda_ sdc】
I met a client recently , They have a research and development department. Originally, they used to use diskless workstation for development , There are drawings , Active code . Use diskless , The main purpose is to prevent leakage . initial stage 20-30 Human time , It should be said that the effect is very satisfactory , But now this department has 100 A person , Relevant departments are also fast 500 A person , The R & D personnel make a drawing , Debugging software is as slow as some kind of bull , The reason is , When the concurrency number is large , The network load and server load are too high . They are engaged in drawing design and industrial control source code development , Almost every designer must use AutoCAD,Pro.E and SolidWoks Software that consumes a lot of resources . When debugging industrial control source code , The local serial port must also be used , Parallel port or network , As a result, I had to buy some notebooks that were separated from the diskless system .
The problem of slow speed , Originally, I wanted to expand the capacity of the diskless workstation , But the cost is too high , And the Department is still expanding , It's not the way to go on like this , In the words of their leaders : Everyone has a workstation , There must be no speed problem , But where is the value of no disk ? in addition , Diskless although the file is no longer retained locally , But because the Internet will leak secrets , Cause a lot of inconvenience . By mail , The Internet can still leak secrets . Notebook for local debugging , It can still be leaked .
Finally, it was replaced by ours SDC Sandbox ( Sandbox is also a cloud concept ) programme , Realization :
1) The number of terminals is not directly related to the server load (SDC Sandbox support 5000 Users are online at the same time );
2) There is no speed problem when the client runs the design software that accounts for a large amount of resources ( And the single machine running loss is 5% within );
3) Design results and drawings , Source code and documents can only exist on the server , Files on the server , establish , Edit , Save as and wait ( Cannot save locally ); Including notebooks .
4) Non client or foreign PC Unable to access the server and other clients , Make it an isolated island ;
5) At the same time of R & D and design , Allow access to the Internet ( Web browsing , Data download ,QQ,MSN Use ), However, the data on the server should not be transmitted to cause leakage ;
6) Laptop peripherals ,U disc , Compact disc , Floppy disks are read-only ;
7)WinPE CD boot local client ( Including notebooks ), Or remove the local hard disk , No data leakage .( There is no drawing data locally );
8) Any files on the server should be taken out of the classified environment , All need to go through the approval process ;
边栏推荐
- Vscode remote connection error: server status check failed - waiting and retrying
- 性能优化最佳实践之缩减游戏大小
- Machine learning note 8: octave for handwritten digit recognition based on Neural Network
- printf becomes puts
- Conversion between gray code and binary
- 电脑卡顿怎么办?
- 以太网UDP帧发包设计
- Le contrôle MFC tabctrl modifie la taille de l'étiquette
- 虚职、架空、拖后腿,大厂开源办公室到底什么样?
- I2C interface
猜你喜欢

The first week of wechat applet development: page setup, page Jump and data binding

401 string (344. reverse string, 541. reverse string II, Title: Sword finger offer 05. replace spaces, 151. reverse words in string)

Go language uses zap log Library

Unity app提高设备可用性

微信小程序开发 第一周:页面设置、页面跳转、数据绑定

TCP连接细节问题

MinGW download and installation

D3D10 screenshot function saves texture to local

TiDB 社区线下交流会,天津 & 石家庄的小伙伴看过来~

I2C接口
随机推荐
Improve your game‘s performance
tmux -- ssh terminal can be closed without impact the server process
Go language uses zap log Library
BinaryFormatter 保存和加载游戏数据 For Unity
Vulkan 预旋转处理设备方向
Hide symbol of dynamic library
Vscode minimalist installation tutorial
MFC Tab 控件添加 icon 图标
EPP (enhanced parallel port)
Gerrit Code Review Setup
MATLAB系统辨识
爬虫初始及项目
Introduction to golang Viper Library
Reptile initial and project
以太网通信协议
D3D10 screenshot function saves texture to local
Write optimized DSP code for cortex-m4
Understanding of C pointer
常用CMOS模拟开关功能和原理
错误:note: module requires Go 1.17