GB/T 20279-2015 in English
SUPERSEDEDInformation security technology—Security technical requirements of network and terminal separation products
- Issued on:2015-05-15
- Implemented on:2016-01-01
- File Format:PDF
- Delivery:Via email within 1~3 business days
$127.00
《GB/T 20279-2015信息安全技术 网络和终端隔离产品安全技术要求》由TC260(全国网络安全标准化技术委员会)归口,主管部门为国家标准化管理委员会。
本标准规定了网络和终端隔离产品的安全功能要求、安全保证要求、环境适应性要求及性能要求。
本标准适用于网络和终端隔离产品的设计、开发与测试。
1 Scope
This standard specifies the security function requirements, security assurance requirements, environmental adaptation requirements and performance requirements of network and terminal separation products.
This standard is applicable to the design, development and test of network and terminal separation products.
2 Normative References
The following documents for the application of this document are essential. Any dated reference, just dated edition applies to this document. For undated references, the latest edition (including any amendments) applies to this document.
GB 17859-1999 Classified Criteria for Security Protection of Computer Information System
GB/T 18336.3-2008 Information Technology - Security Techniques - Evaluation Criteria For IT Security - Part 3: Security Assurance Requirements
GB/T 25069-2010 Information Security Technology - Glossary
3 Terminologies and Definitions
For the purpose of this standard, the following terms and definitions as well as those defined in GB 17859-1999 and GB/T 25069-2010 apply.
3.1
Security domain
The computer or network area with the same security protection demand and security policy.
3.2
Physical disconnection
The case that the networks in different security domains cannot be directly or indirectly connected.
Note: in one physical network environment, the physical disconnection of networks in different security domains shall technically ensure disconnection of information in physical transmission and physical storage.
3.3
Protocol conversion
The separation and reestablishment of protocol. Separate the application data in the network-based common protocol from one end of separation product in a certain security domain, package to transmit special system protocol to the other end of separation product in other security domain, then separate the special protocol and package it into the required format.
3.4
Protocol separation
The networks in different security domains are physically connected, it is ensured that the protected information is logically separated through protocol conversion, and only the information with limited content required by the system for transmission may pass through.
3.5
Information ferry
It is a mode of information exchange, physical transmission channel only exists during transmission.
Foreword i
1 Scope
2 Normative References
3 Terminologies and Definitions
4 Description of Network and Terminal Separation Products
5 Security Technical Requirements
5.1 Overall Description
5.1.1 Classification of Security Technical Requirements
5.1.2 Security Level
5.2 Security Function Requirements
5.2.1 Terminal Separation Products
5.2.2 Network Separation Product
5.2.3 Network Unilateral Transmission Product
5.3 Security Assurance Requirements
5.3.1 Requirements for Basic Level
5.3.2 Requirements for Enhanced Level
5.4 Environmental Adaptation Requirements
5.4.1 Next Generation of Internet Support (if any)
5.4.2 Support IPv6 Transition Network Environment (optional)
5.5 Property Requirements
5.5.1 Exchange Rate
5.5.2 Hardware Switching Time
Bibliography

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 45240-2025 in English
General requirements for device-independent quantum random number generators
2025-01-24 -

GB/T 17901.1-2020 in English
Information technology—Security techniques—Key management—Part 1: Framework
2020-03-06 -

GB/Z 24294.1-2018 in English
Information security technology—Guide of implementation for internet-basede-government information security—Part 1:General
2018-03-15 -

GB/T 15278-1994 in English
Information processing-Data encipherment-Physical layer interoperability requirements
1994-01-02 -

GB/T 32213-2015 in English
Information security technology―Public key infrastructure―Specification for remote password authentication and key establishment
2015-12-10 -

GB/T 25056-2018 in English
Information security technology—Specifications of cryptograph and related security technology for certificate authentication system
2018-06-07 -

GB/T 24363-2009 in English
Information security technology—Specifications of emergency response plan for information security
2009-09-30 -

GB/T 15843.1-2017 in English
Information technology―Security techniques―Entity authentication―Part 1:General
2017-12-29 -

GB/T 27422-2019 in English
Conformity assessment -- Requirements for bodies providing audit and certification of business continuity management systems
2019-12-10 -

GB/T 30269.601-2016 in English
Information technology-Sensor network-Part 601:Information security:General technical specifications
2016-04-25