发明名称 SYSTEM AND METHOD FOR SEPARATING NETWORK BASED VIRTUAL ENVIRONMENT
摘要 PURPOSE: A virtualization based network separation system and a method are provided to reduce risk such as an intended information leakage by an insider or hacking by enabling network separation with only a minimum of change. CONSTITUTION: A virtualization based network separation system comprises a client terminal (210), an internal network (228), and an external network (232). The client terminal distinguishes a process attempting network connection by generating virtual environment logically separated from an actual operation system and by confirming the attempt at the network connection of the process when a predetermined process is performed. The client terminal routes the distinguished process with a selection control signal according to the process performed in the actual operation system or the generated virtual environment. The terminal is controlled in order to be connected to predetermined network interface through TCP/IP and determines the network connection according to a network type of an IP address allocated to the process. [Reference numerals] (212) Operation management unit; (214) Virtual environment; (216) Actual environment; (218) Control unit; (220) NIC selector; (222) TCP/IP; (224) Virtual NIC; (226) Physical NIC; (228) Internal network; (230) VPN server; (232) External network; (AA) Client terminal; (BB) Virtual process; (CC) Actual process; (DD) Client terminals
申请公布号 KR101290963(B1) 申请公布日期 2013.07.30
申请号 KR20120030703 申请日期 2012.03.26
申请人 JEJU NATIONAL UNIVERSITY INDUSTRY-ACADEMIC COOPERATION FOUNDATION 发明人 HONG, YOUNG GEE;KIM, SUNG YUN;KIM, NAM HOON;KIM, JUNG HUN;SHIN, YOUNG SIK;KO, BONG SOO;YANG, SEONG UK;NAM, KANG HYUN;HAN, JAE YOON;KO, SUNG TAEK
分类号 H04L29/06;H04L12/28;H04L29/10 主分类号 H04L29/06
代理机构 代理人
主权项
地址