奥克兰交通局利用 F5 解决方案增强公共交通体验

奥克兰交通局 (AT) 是负责该地区所有交通服务的组织,包括公共汽车、火车和渡轮,以及道路和相关设施,如步行道、自行车道和停车场。 AT 还在规划和资助公共交通、运营当地道路网络以及推广人们的替代出行方式方面发挥着重要作用。 AT 的运营原则基于“零愿景”,这是一种基于瑞典的方法,重点关注核心生命原则,即人的生命和健康永远不能换取其他利益,例如旅途时间。安全是 AT 业务的核心,其首要任务是开发一个对所有道路使用者都安全的交通生态系统。
奥克兰交通局(AT)负责该地区的交通服务,包括公共汽车、火车、渡轮、道路和相关设施。预计公共交通出行量将从 2012 年的每年 7000 万人次翻一番,到 2022 年达到 1.4 亿人次,AT 需要一个现代化的交通系统,能够无缝连接人员、设备和系统,提供更高的安全性,改善通勤者的出行体验,并减少运营成本。 AT 还希望应对快速变化的消费者环境,即通勤者和公民期望大幅提高服务水平、面向客户的平台的可用性、组织的加速响应以及与交通和运输时刻表相关的信息的高可用性。为了实现这一目标,AT 必须使用集成的单系统方法来改进其交通网络的集成,同时从其传统信息技术系统转向基于云的环境。不断发展的技术也改变了运输业务的性质,AT 积累了大量客户数据,特别是通过其移动应用程序:AT Mobile 和 AT Park。这意味着 AT 必须遵守监管框架,特别是《通用数据保护条例》(GDPR)。最后,AT 还认识到需要保护其系统免受日益复杂和危险的网络攻击,这些攻击有可能破坏其交通网络。
AT 选择 F5 来部署带有 F5 BIG-IP 访问策略管理器 (APM) 的现代化集成传输系统。借助 F5 BIG-IP APM,AT 能够为用户、设备、应用程序和应用程序编程接口 (API) 提供统一的全局访问控制。通过实施基于上下文的动态访问决策,BIG-IP APM 加强了 AT 公司对安全标准、公司控制和政府法规的遵守。它还通过单一管理界面提供改进的可见性,并确保用户配备适当的、经过身份验证的、安全的应用程序访问。为了解决数据加密的挑战和日益增长的隐私问题,AT 利用 F5 SSL Orchestrator 来了解加密流量并暴露隐藏的威胁。这使得 AT 能够对入站和出站 SSL/TLS 流量进行高性能解密,同时启用安全检查以暴露威胁并阻止攻击。为了提高互联网站点的上下文感知并保护所请求的应用程序免受带有已知恶意软件或病毒的 IP 地址的影响,AT 在 BIG-IP APM 中添加了 F5 IP 智能服务。通过消除处理不良流量所花费的时间,可以显着降低风险并提高数据中心效率。
  • With F5, AT established a platform that ensured resilience across all transport modes, providing intelligent transport and optimal experiences to its passengers. AT utilizes a number of APIs to ensure all parts of its transportation system are secure. To prevent exploitation of their APIs, AT leveraged F5’s BIG-IP APM’s proxy-based access controls deliver a zero-trust platform for both internal and external application access. This ensured that applications are protected while extending trusted access to users, devices and APIs. With trusted access ensured, AT can now expand beyond traditional security boundaries to unlock new business models and operational efficiencies—without sacrificing security or commuters’ experience. As the pace of attack methodologies change increases, AT needed a near real-time host protection to augment their security deployments to mitigate bad actors during attacks. Adding F5 IP Intelligence Services, AT was able to bolster their security infrastructure and effectively guard against malicious internet hosts. Positioned at the perimeter of the network, the F5 IP Intelligence service delivers a database of over 1 million malicious internet addresses to support a dynamic security perimeter with near real-time protection against phishing, attackers, and scanners. This database of addresses is refreshed every five minutes from the cloud to minimize the threat window and keep AT’s data—and its reputation—safe. In addition, F5 solutions are compliant with the GDPR framework, helping AT become more focused and efficient at protecting personal data from the most likely threats. This ensures the confidentiality, integrity, and available of users’ personal data while also improving AT’s overall security strategy.
  • AT can process 1.8 million Layer 7 requests and 12 million Layer 4 HTTP requests per second
  • F5 IP Intelligence service delivers a database of over 1 million malicious internet addresses
  • The database of addresses is refreshed every five minutes from the cloud to minimize the threat window

