<?xml version="1.0" encoding="utf-8"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.3 20210610//EN" "https://jats.nlm.nih.gov/publishing/1.3/JATS-journalpublishing1-3.dtd">
<article article-type="research-article" dtd-version="1.3" xml:lang="ru">
  <front xmlns:xlink="http://www.w3.org/1999/xlink">
    <journal-meta>
      <journal-id journal-id-type="elibrary">9004</journal-id>
      <journal-title-group>
        <journal-title>Problems of information security. Computer systems</journal-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Проблемы информационной безопасности. Компьютерные системы</trans-title>
        </trans-title-group>
      </journal-title-group>
      <issn pub-type="epub">2071-8217</issn>
    </journal-meta>
    <article-meta xmlns:xlink="http://www.w3.org/1999/xlink">
      <article-id pub-id-type="publisher-id">8</article-id>
      <article-id pub-id-type="doi">10.48612/jisp/mr9d-5tum-xmdp</article-id>
      <title-group>
        <article-title>A network access definition method to ensure network infrastructure security based on removal of excessive network connectivity</article-title>
        <trans-title-group xml:lang="ru">
          <trans-title>Метод разграничения сетевого доступа для обеспечения безопасности сетевой инфраструктуры на основе устранения избыточной сетевой связности</trans-title>
        </trans-title-group>
      </title-group>
      <contrib-group>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0001-7271-8343</contrib-id>
          <name>
            <surname>Shilova</surname>
            <given-names>Anastasiya</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>Bondareva.AD@yandex.ru</email>
        </contrib>
        <contrib contrib-type="author">
          <contrib-id contrib-id-type="orcid">0000-0001-6691-6167</contrib-id>
          <name>
            <surname>Vorobeva</surname>
            <given-names>Alisa</given-names>
          </name>
          <xref ref-type="aff" rid="aff1"/>
          <email>alice_w@mail.ru</email>
        </contrib>
      </contrib-group>
      <aff id="aff1">ITMO University</aff>
      <pub-date publication-format="electronic" date-type="pub" iso-8601-date="2023-09-29">
        <day>29</day>
        <month>09</month>
        <year>2023</year>
      </pub-date>
      <issue>3</issue>
      <fpage>103</fpage>
      <lpage>116</lpage>
      <self-uri xmlns:xlink="http://www.w3.org/1999/xlink" content-type="pdf" xlink:href="https://jisp.spbstu.ru/userfiles/files/soderzhaniya/2023_3-5-6.pdf"/>
      <abstract xml:lang="en">
        <p>The purpose of this work is to increase the security of the network infrastructure. A network infrastructure model has been developed, an access control method based on the elimination of excessive network connectivity between subjects and objects of access has been proposed and evaluated, the directions of its development have been described. The method can be used for network segmentation</p>
      </abstract>
      <kwd-group xml:lang="en">
        <kwd>information security</kwd>
        <kwd>access control</kwd>
        <kwd>network infrastructure</kwd>
        <kwd>firewall</kwd>
      </kwd-group>
    </article-meta>
  </front>
</article>
