GB/T 35318-2017 in English
VALIDSecurity protection technology requirements for sensing terminals of IoTPS
- Issued on:2017-12-29
- Implemented on:2017-12-29
- File Format:PDF
- Delivery:Via email within 1~3 business days
$214.00
《GB/T 35318-2017公安物联网感知终端安全防护技术要求》由312(公安部)归口,主管部门为公安部。
Introduction
Interpretation of the technical requirements for security protection of public security IoT sensing terminals
1. Standard background and analysis of technological evolution
As an important part of the public security field, the security protection of the sensing terminals of the Public Security Internet of Things (IoTPS) is directly related to the overall security of the system. The formulation of the GB/T 35318-2017 standard is based on a deep understanding of current technical requirements and combines research results and practical experience in the field of IoT security at home and abroad.
With the rapid development of IoT technology, the functions of sensing terminals are becoming increasingly complex, and the security threats they face are also showing a trend of diversification. This standard ensures the reliability and anti-attack capability of the public security IoT system by standardizing hardware, software and data security requirements.
2. Perception Terminal Security Protection Technology Architecture
| Technical Dimensions | Hardware Security | Software Security | Data Security |
|---|---|---|---|
| Definition | Ability to resist physical attacks and environmental interference | System integrity and intrusion protection | Security of data transmission and storage |
| Core Requirements | IP devices must comply with the protection level requirements of GB/T 4208, and non-IP devices must have anti-tampering identification. | The operating system must install security enhancement software to support role-based access control (RBAC) and intrusion detection system (IDS). | Communication data must comply with GB/T 29768, GB/T 28181 and other standards to ensure data integrity and timeliness. |
Actual application case
Taking a wireless IP-based perception terminal with an operating system as an example, it must meet the following requirements:
- Hardware security: It must have a unique ID and digital certificate storage function.
- Software security: It must support two-way identity authentication and intrusion protection measures.
- Data security: Communication data must be encrypted for transmission, and sensitive information must be stored in a dedicated area with integrity protection.
3. Perception terminal types and security requirements
According to GB/T 35318-2017, perception terminals are mainly divided into the following categories:
- Wired IP type with operating system type
- Wireless IP type with operating system type
- Wired IP type without operating system type
- Wireless IP type without operating system type
- Wired non-IP type
- Wireless non-IP type
| Terminal type | Hardware security | Software security | Data security |
|---|---|---|---|
| Wired IP with operating system | Supports lightning protection and complies with GA267 requirements. | Requires installation of security enhancement software and supports attribute-based access control (ABAC). | Data transmission complies with GB/T 28181 and has timestamp protection function. |
| Wireless IP without operating system | Hardware with security functions and supports algorithms specified by the National Cryptography Administration. | Software runs in an authorized environment and application software must undergo anti-virus scanning tests. | Data storage is encrypted and sensitive information is only accessible to authorized users. |
4. Implementation Suggestions
In order to ensure the effective implementation of GB/T 35318-2017, it is recommended to take the following measures:
- Equipment selection: Select the type of sensing terminal that meets the standard requirements according to the actual application scenario.
- Security configuration: Strictly perform hardware, software and data security configuration in accordance with the standard.
- Staff training: Provide professional training on standard interpretation and security protection technology to relevant personnel.
- Regular evaluation: Establish a regular security evaluation mechanism to promptly discover and rectify safety hazards.

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 44297-2024 in English
Data items of video and image information for public security
2024-08-23 -

GB/T 42196-2022 in English
Technical requirements for video and image metadata analysis of internet of things of public security
2022-12-30