簡易檢索 / 詳目顯示

研究生: 呂堃楠
Kun-Nan Lu
論文名稱: 金融業雙活資料中心設計與導入規劃
Design and Implementation Planning of Dual- Active Data Center for Financial Industry.
指導教授: 楊維寧
Wei-Ning Yang
口試委員: 吳宗成
Tzong-Chen Wu
何煒華
Wei-Hua He
學位類別: 碩士
Master
系所名稱: 管理學院 - 資訊管理系
Department of Information Management
論文出版年: 2023
畢業學年度: 111
語文別: 中文
論文頁數: 60
中文關鍵詞: 資料中心資訊韌性網路設計數位韌性高可用性
外文關鍵詞: Data Center, Information Resilience, Network Design, Digital Resilience, High Availability
相關次數: 點閱:237下載:1
分享至:
查詢本校圖書館目錄 查詢臺灣博碩士論文知識加值系統 勘誤回報

本研究重視金融產業對於國家經濟穩定性的關鍵角色,並由此切入,針對金管會所提,金管銀國字第 1110234138號公佈之「金融機構資通安全防護基準」確保應定期評估支持核心業務持續運作必要之系統或設備是否有單點故障風險 (Single Point of Failure),並導入高可用性及高可靠度的措施,由此概念下延伸,通過文獻討探分析研究,將資料中心底層常用協議進行分析研究並進一步探討底層協議對於導入雙活資料中心設計之影響,以及設計資料中心時相關限制條件。針對雙活資料中心關鍵硬體設備,如網路、儲存、服務主機、進行導入框架設計,提供金融業導入雙活資料中心時的評估考量點,及導入雙活料中心後續的維護。
本研究貢獻,提供金融業導入雙活資料中心之評估依據。強化資料韌性及數位韌性,將傳統單資料中心架構,延伸至雙活資料中心,提升金融業整體競爭力及提升客戶服務滿意。


This study underscores the crucial role of the financial industry in maintaining the stability of a country's economy. From this perspective, it addresses the Financial Supervisory Commission's announcement, No. 1110234138, regarding the "Cybersecurity Protection Standards for Financial Institutions", which stipulates that there should be regular assessments to ensure that systems or equipment essential for the continued operation of core business do not carry a single point of failure (SPOF) risk. This should be done while incorporating high availability and high reliability measures. Extending from this concept, through literature review and analytical research, we conduct a study on the underlying protocols commonly used in data centers. This research further explores how these underlying protocols affect the implementation of active-active data center designs, as well as the restrictions involved in designing a data center. For key hardware equipment in active-active data centers, such as networking, storage, and servers, an implementation framework design is proposed. This offers considerations for the financial industry when implementing an active-active data center, as well as its subsequent maintenance.
The contribution of this research is to provide a basis for the financial industry to assess the implementation of active-active data centers. This enhances data resilience and digital resilience, extending the traditional single data center architecture to active-active data center architecture, which ultimately boosts the overall competitiveness of the financial industry and improves customer satisfaction.

摘要 III ABSTRACT IV 誌謝 V 第1章 緒論 1 1.1 研究背景 1 1.2 研究動機 2 1.3 研究目的 3 1.4 研究流程與方法 4 第2章 文獻探討 7 2.1 雙活資料中心架構探討及底層運作協議之限制 7 2.2 單資料中心架構探討及底層運作協議之限制 10 第3章 雙活資料中心框架設計 13 3.1 基礎架構設計 13 3.2 技術架構設計框架 17 3.2.1 網路架構 17 3.2.2 儲存架構 19 3.2.3 安全架構 - 防火牆設計 20 3.3 安全性設計 21 3.4 高可用性和災難回復策略 24 3.4.1 高可用性方法與管理方式 25 3.4.2 驗證檢查程序 27 3.4.3 災難回復策略 28 第4章 雙活資料中心的導入 29 4.1 雙活資料中心導入規劃 29 4.1.1 需求分析 29 4.1.2 方案設計 33 4.1.3 實施計劃 35 4.1.4 部署及測試 35 4.1.5 維護和優化 36 4.2 雙活資料中心的導入及建置 38 4.2.1 雙活資料中心導入 38 4.2.2 雙活資料中心建置 43 第5章 結論與未來研究方向 46 5.1 研究結論 46 5.2 未來研究方向 46 參考文獻 48

中文文獻
金融監督管理委員會(2023)。金管銀國字第 1110234138 號公佈之「金融機構資
通安全防護基準」,檢自:
https://www.fsc.gov.tw/uploaddowndoc?file=newlaw/202302101422020.pdf&filedisp lay=金融機構資通安全防護基準修正案1120201.pdf&flag=doc
黃光明(2005)。多頻及多向傳輸模型下的三級式不阻塞克勞斯網路,國立交通大
學應用數學系所碩士論文
英文文獻
A. Sajassi, Ed., R. Aggarwal, N. Bitar, A. Isaac, J. Uttaro, J. Drake, W. Henderickx(2015), “BGP MPLS-Based Ethernet VPN ”, RFC, 7432, 4-5
Albert Greenberg ,James R. Hamilton ,Navendu Jain ,Srikanth Kandula ,Changhoon Kim,Parantap Lahiri ,David A. Maltz,Parveen Patel ,Sudipta Sengupta(2009), “VL2: a scalable and flexible data center network” , SIGCOMM '09: Proceedings of the ACM SIGCOMM 2009 conference on Data communication, Association for Computing Machinery, 10.1145 , 51-62
Donald E. Eastlake , Dinesh G. Dutt, Silvano Gai , Radia Perlman , Anoop Ghanwani (2011), “Routing Bridges (RBridges): Base Protocol Specification”, RFC ,6325, 32-33
M. Mahalingam, D. Dutt, K. Duda, P. Agarwal, L. Kreeger, T. Sridhar, M. Bursell, C. Wright(2014), “RFC 7348: Virtual eXtensible Local Area Network (VXLAN) ”, RFC,7348, 10-11
Mihailo Vesović , Aleksandra Smiljanić , Dušan Kostić (2022), “Fast and scalable routing protocols for data center networks”, Journal Pre-proof, Volume 9, 1-2
Nathan Farrington, Alexey Andreyev, “Facebook’s Data Center Network Architecture” , OCIS ,060.4250, 2-3
National Institute of Standards and Technology. (1995), An Introduction to Computer Security: The NIST Handbook (NIST Special Publication 800-12), U.S. Department of Commerce, NIST Special Publication, 800-12
National Institute of Standards and Technology. (2020). Zero Trust Architecture(NIST Special Publication 800-207). U.S. Department of Commerce , NIST Special Publication, 800-207
National Institute of Standards and Technology. (2022). Implementing a Zero ,Trust Architecture (2nd Preliminary Draft) (NIST SP 1800-35). National Institute of Standards and Technology, NIST Special Publication, 1800-35
Shan Lin, Shaojuan Zhang, Xuanjiang Chen, Xingzhong(2023), “Nong Software-defined networking enabled optical data center network with flexible QoS provisioning” , Optics Communications , Volume 530, 2-3

無法下載圖示
全文公開日期 2030/07/27 (校外網路)
全文公開日期 2030/07/27 (國家圖書館:臺灣博碩士論文系統)
QR CODE