Bank inter-network file transfer secure exchange of how to build?

In general, banks internal office network, raw production network, network, and other three test domains network security, network isolation, in order to prevent data leaks, as the business continued to expand and develop, secure data exchange between the three networks to be transmitted an important part of its business chain. The main exchange information and data needs include:

1, production data exchange test

Production environment to a test environment to extract data for the construction of new UAT environment or test use year-end accounts. Data transmission test environment to a production environment, test scripts for some of the data uploaded to the production lab environment when testing is complete. After the deployment of the data exchange platform between the two networks, not to break the status quo production network isolation tests.

2, production to data exchange office

Data exchange platform, respectively, then the production of desktop office network segment segment and employees. Data center personnel can obtain logs from the production troubleshooting, inspection reports, you can also install media, software kit, vulnerability scanning IP lists, etc. uploaded from the office environment to a production environment. All operations after approval by the completion of cross inter-network data exchange.

3, across the inter-network automatic data exchange

Regular standardized exchange process, may be configured automated data exchange process, after approval of a plurality of times data can be exchanged within an effective period.

Banks with pictures .jpg 

Is there a platform that not only meets these needs by banks across the network for data exchange, but also to protect the security of the data it? Of course yes, here to introduce Ftrans secure exchange of inter-network file system that can solve all the above problems.

1, good compatibility does not affect the original network isolation

Gatekeeper support, firewall, the DMZ and other network isolation solution without changing users' existing network infrastructure equipment. After the approval of the swap file is passed, the data extraction and desensitization members upload files, sensitive information through data exchange platform filter, check antivirus, network transmission between the production area and the test area networks .

2, approving the policy flexibility to provide audit logs and query

Flexible approval policy settings, and data definitions to support different access rights management user rights. Antivirus desensitization support data, files, inspection and filtering features. Provide audit logs and queries. From the office to the direction of production after killing the virus, after the passage of the data center staff can share; direction from production to office after filtering and virus killing sensitive information, the data center may be a data center to share software development center.

3, automated data exchange audit log retention

Support cycle and real-time file synchronization, automatic call to the virus killing the engine, transmission task to provide notification policy, to support the setting task priority management, transport management to support multi-tasking , and retain audit logs.

4, file transfer encryption to ensure transport safety

Provide secure file exchange encrypted transmission and storage. Using proprietary file transfer protocol and SSL security protocol access. To provide file access passwords and expiration date control. Support cleared automatically destroyed.

Speeding transmission Ftrans inter-network security document exchange system provides "manageable, controllable, trial" data exchange process , to build a secure exchange of data transfer controlled process between networks.

 

Guess you like

Origin blog.51cto.com/14415391/2422705