GB/T 28451-2023 in English
VALIDInformation security technology—Technical specification for network intrusion prevention system
- Issued on:2023-05-23
- Implemented on:2023-12-01
- File Format:PDF
- Delivery:Via email within 5 business days
$592.00
| Standard No: | GB/T 28451-2023 |
| Document status: | VALID |
| Title in English: | Information security technology—Technical specification for network intrusion prevention system |
| Title in Chinese: | 信息安全技术 网络入侵防御产品技术规范 |
| Language: | English |
| File Format: | Electronic (PDF) |
| Delivery: | Via email within 5 business days |
| Issued on: | 2023-05-23 |
| Implemented on: | 2023-12-01 |
| Superseding: |
GB/T 28451-2012 Information security technology—Technical requirements and testing and evaluation approaches for network-based intrusion prevention system products
|
| Chinese Classification: | L80-Data encryption |
| Professional Classification: | GB-National Standard |
| Related Topics: | Network non-intrusive
non-invasive measurement technique Network security technical specifications and GBT28451 GB/T 28451-2012 Information technology products (safety performance) Information security products revolve around Dust filter product technology Xinchuang Product Testing Technical Specification gb/t 28451-2023 |
《GB/T 28451-2023信息安全技术 网络入侵防御产品技术规范》由TC260(全国网络安全标准化技术委员会)归口,主管部门为国家标准委。
Introduction
Standard Evolution and Technology Upgrade
Compared with the 2012 version, the main technical changes of GB/T 28451-2023 include:
| New content | Deleted content | Modified content |
|---|---|---|
| Load balancing requirements |
|
Core security technology requirements
Functional Architecture Comparison
| Functional Modules | Basic Level Requirements | Enhanced Level New Features |
|---|---|---|
| Intrusion Analysis | Basic Protocol Identification | Flow Control, Event Merging |
| Audit Function | Event Recording | Attack Message Retention, Customized Reports |
Key Performance Indicators
| Indicator Type | 100M Device | 10G High-Performance Device |
|---|---|---|
| Network layer throughput | ≥85% line speed | ≥80Gbps |
| Number of concurrent TCP connections | 50,000/port | 5 million/device |
Implementation recommendations
- During the development phase, focus on 6.5.1 Security architecture design to ensure traceability between representation and product design
- Test verification A mixed traffic test environment should be built in accordance with the objectives of Section 7.5
- Deployment plan The appropriate feature set should be selected based on the level classification standards in Appendix A
Typical deployment architecture
Network edge deployment→ Traffic Analysis Engine → Policy Execution Module → Management Console↓ Log Audit System

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 17902.1-2023 in English
Information technology―Security techniques―Digital signatures with appendix―Part 1:General
2023-03-17 -

GB/Z 41288-2022 in English
Information security technology—Guidelines of cyber security protection for important industrial control system
2022-03-08 -

GB/T 39204-2022 in English
Information security technology—Cybersecurity requirements for critical information infrastructure protection
2022-10-12 -

GB/T 40813-2021 in English
Information security technology—Security protection technical requirements and testing evaluation methods of industrial control systems
2021-10-11 -

GB/T 29246-2023 in English
Information security technology—Information security management systems—Overview and vocabulary
2023-12-28 -

GB/T 35274-2023 in English
Information security technology—Security capability requirements for big data services
2023-08-06 -

GB/T 24364-2023 in English
Information security technology—Implementation guide for information security risk management
2023-05-23 -

GB/T 20274.1-2023 in English
Information security technology - Evaluation framework for information systems security assurance - Part 1: Introduction and general model
2023-03-17