GB/T 39403-2020 in English
VALIDSecurity protection management requirements of cloud manufacturing service platform
- Issued on:2020-11-19
- Implemented on:2021-06-01
- File Format:PDF
- Delivery:Via email within 1~3 business days
Price(USD):
$250.00
$243.00
$243.00
| Standard No: | GB/T 39403-2020 |
| Document status: | VALID |
| Title in English: | Security protection management requirements of cloud manufacturing service platform |
| Title in Chinese: | 云制造服务平台安全防护管理要求 |
| Language: | English |
| File Format: | Electronic (PDF) |
| Delivery: | Via email within 1~3 business days |
| Issued on: | 2020-11-19 |
| Implemented on: | 2021-06-01 |
| ICS Classification: | 35.240.50-IT applications in industry |
| Chinese Classification: | J07-Computer application |
| Professional Classification: | GB-National Standard |
| Related Topics: | Service Platform
Service Platform Protection Standard Requirements Security global platform Sky Platform Requirements Testbed Services Taiwan GBT39403 GB/T 39403-2020 security Balance room management requirements Amgen xenoMouse platform Mine safety platform and cleaning platform Cloud platform execution Nursing platform cushion |
《GB/T 39403-2020云制造服务平台安全防护管理要求》由TC159(全国自动化系统与集成标准化技术委员会)归口,TC159SC5(全国自动化系统与集成标准化技术委员会体系结构、通信和集成框架分会)执行,主管部门为中国机械工业联合会。
Introduction
Analysis of the Standard Core Framework
| Security Level | Protection Dimension | Key Technology | Compliance Requirements |
|---|---|---|---|
| Resource Layer | Device Access Control | Authentication Gateway, Border Firewall | Clause 6.1-6.4 |
| IaaS Layer | Virtualization Security | Virtual Firewall, Host Isolation | Clause 7.1 |
| PaaS Layer | Data Security Management | Industrial data encryption, multi-tenant isolation | Clause 7.2 |
| SaaS layer | Application security audit | Session management, input verification | Clause 7.3 |
Detailed explanation of key technical requirements
1. Virtualization security protection
Clause 7.1.3 of the standard clearly requires:
- Virtual firewalls must implement ACL control and security detection functions
- Virtual host isolation must ensure CPU instruction isolation and memory isolation
- Virtual machine image files must undergo integrity verification
2. Industrial data protection
According to Clause 7.2.1:
Implementation case of an automobile manufacturing company:
- Use AES-256 to encrypt and store order data
- Establish a two-factor authentication mechanism to access production data
- Daily incremental backup + weekly full backup strategy
Implementation suggestions
Phase-by-phase construction path
| Phase | Key tasks | Period |
|---|---|---|
| Basic protection | Device authentication, network partitioning | 1-3 months |
| Defense in depth | Virtualization hardening, data encryption | 3-6 months |
| Continuous monitoring | Security audit, threat detection | Continuous operation |
Key points for compliance checks
- Security vulnerability scans at least twice per year (6.2.1)
- Audit log retention period ≥ 180 days (7.2.2.7)
- SSL/TLS must use the TLS1.2+ protocol (7.3.4.5)
Sample only — not a preview of GB/T 39403-2020

Loading PDF document...
Error loading PDF. Please make sure the file is valid and try again.
We also recommend
-

GB/T 29826-2013 in English
Cloud manufacturing—Terminology
2013-11-12 -

GB/T 45024-2024 in English
Evaluation requirements of cloud manufacturing service
2024-11-28 -

GB/T 25459-2010 in English
Specification of testing ASP platform for networked manufacturing
2010-12-01 -

GB/T 25103-2010 in English
Supply chain management business reference model
2010-09-02 -

GB/T 34045-2017 in English
Classification of service resources for service platform of manufacturing informatization
2017-07-31