| With the rapid development of the Internet this years,all kinds of private networks have been established. Intranets have been built in governments,campuses,enterprises and armies using internet technology. Because of the complexity of control process and the sensitivity of data,private office network need higher security and reliability than the public network.In this paper we analyzed the structure,function and characteristics of the private office network,discussed the primary threats to the office network security and common attack methods,Based on the P2DR model,we distributed the office network security policy across three layers:network layer,system layer and application layer. The security principle,implement solution and the relationship among these three layers were illustrated in this paper,including physical access control,logical access control,VPN,data encryption,authentication,authorization,audit,IDS(Intrusion Detection Systems),system leak test and anti-virus protection. |