The content of the invention
Present invention is primarily targeted at providing a kind of data digging system and its implementation, it is intended to solve prior art
In each tissue the running of autologous tissue and the technology of decision-making management all can not be carried out using the inside related data of its hetero-organization
Problem.
For achieving the above object, the present invention provides a kind of data digging system, and the data digging system includes:Cloud platform
With some clients, wherein, independently with cloud platform carry out data interaction between each client;
The client, for when client place network participates in data sharing, collecting the client and being located
The shared data corresponding with preset shared strategy in network, and by the relevant policy information in the sharing policy and collection
The shared data report the cloud platform;
The cloud platform, for receiving the relevant policy information of each client upload and the shared number on network
According to, and Macro or mass analysis process is carried out to the shared data, the mining data of several type is obtained, and according to the related plan
Slightly information, by the mining data of corresponding types correspondence client is pushed to, wherein, the type of the mining data at least includes:
Data results, the focus security classes data result of same industry concern;
The client is additionally operable to:Receive the mining data that the cloud platform is pushed.
Preferably, the client includes gateway device, client place network at least by the gateway device and
The some network equipments composition being connected with the gateway device, wherein, the type of the gateway device at least sets including hardware gateway
Standby, virtualized gateway device, the security classes software or equipment that carry out end points protection.
Preferably, the data digging system also includes:
End is safeguarded, for the cloud platform to be safeguarded and monitored, the maintenance at least includes updating the cloud platform
On relative program.
Preferably, the client is additionally operable to:Configure the client data in a network sharing policy;The phase
Closing policy information at least includes:The type of the required mining data of client place network, the mining data connect
Debit's formula.
Preferably, the cloud platform is built in public cloud trusty, and the cloud platform is completed by program
The Macro or mass analysis of the shared data are processed, and all data to processing in processing procedure are encrypted, and the cloud
Provider's information not comprising data in the mining data that platform is pushed.
Further, for achieving the above object, the present invention also provides a kind of implementation method of data digging system, the number
Include according to the implementation method of digging system:
When client place network participates in data sharing, the client collect the client institute in a network with advance
The corresponding shared data of sharing policy is put, and the relevant policy information in the sharing policy and the described of collection are shared
Data report cloud platform;
The cloud platform receives the relevant policy information and the shared data of each client upload on network, and
Macro or mass analysis process is carried out to the shared data, the mining data of several type is obtained, and is believed according to the corresponding strategies
Breath, by the mining data of corresponding types correspondence client is pushed to, wherein, the type of the mining data at least includes:Colleague
Data results, the focus security classes data result of industry concern;
The client receives the mining data that the cloud platform is pushed.
Preferably, the client includes gateway device, client place network at least by the gateway device and
The some network equipments composition being connected with the gateway device, wherein, the type of the gateway device at least sets including hardware gateway
Standby, virtualized gateway device, the security classes software or equipment that carry out end points protection.
Preferably, the implementation method of the data digging system also includes:
Safeguard that end is safeguarded and monitored to the cloud platform, the maintenance at least includes updating the phase in the cloud platform
Pass program.
Preferably, the client collect the client before shared data in a network, the data mining
The implementation method of system also includes:The client configure the client data in a network sharing policy;The phase
Closing policy information at least includes:The type of the required mining data of client place network, the mining data connect
Debit's formula.
Preferably, the cloud platform is built in public cloud trusty, and the cloud platform is completed by program
The Macro or mass analysis of the shared data are processed, and all data to processing in processing procedure are encrypted, and the cloud
Provider's information not comprising data in the mining data that platform is pushed.
In the present invention, each tissue completes the configuration of the sharing policy of data in tissue network by respective client, and
Collect the shared data in tissue network and the shared data is uploaded to into third party cloud platform by client and collected
Analyzing and processing, and then by the cloud platform, the mining data excavated in the shared data provided from each tissue is obtained, and will
Mining data is pushed to the tissue of each participation data sharing, and then can realize the shared of network data between different tissues, so as to
So that each tissue can utilize the shared data that its hetero-organization is provided, the running organized and decision-making management.
Specific embodiment
It should be appreciated that specific embodiment described herein is not intended to limit the present invention only to explain the present invention.
With reference to Fig. 1, Fig. 1 is the high-level schematic functional block diagram of data digging system first embodiment of the present invention.The present embodiment converges
Always, the data digging system includes:Some clients 10 and cloud platform 20, wherein, between each client 10 independently with
Cloud platform 20 carries out data interaction, and the connected mode between each client 10 and cloud platform 20 is not limited, with specific reference to being actually needed
Be configured, such as using wired connection, or can also be using wireless connection.
In the present embodiment, for the type of client is not limited, such as gateway device, such as network log-in management equipment, fire prevention
Wall equipment etc., or software gateway platform, or the network equipment of information, or the safety for carrying out end points protection can be carried out
Software etc..Optionally, client 10 includes gateway device, meanwhile, the place network of client 10 at least by the gateway device and
The some network equipments composition being connected with the gateway device.
In the present embodiment, organizing user by client 10 configure client 10 data in a network shared plan
Slightly, such as the config option for providing sharing policy for organizing user in the controlling interface of gateway device such as provides client
Whether 10 place networks participate in the config option of data sharing, if participated in, further provide for other correlations of data sharing
The configuration of strategy, such as which kind of data configured in collection network carry out data sharing, are such as operated the correlation of efficiency comparative
The sharing of the related data for sharing, carrying out Game Market contrast of data, carry out receiving the dependency number that Botnet attacks contrast
According to it is shared, the related data of student interests trend shared etc..
Additionally, the mining data issued by cloud platform that can also be further to receiving in the present embodiment carries out related plan
Configuration slightly, such as configure type, reception mode of mining data of the required mining data of client place network etc., enters
And enable cloud platform 20 according to the corresponding strategies of above-mentioned configuration, corresponding mining data is pushed to into corresponding client
10, such as the mining data of type-A is pushed to and participates in the A clients of data sharing, and the mining data of B types is pushed to
Participate in B clients of data sharing etc..
In the present embodiment, when organizing user have selected the place network of client 10 in client 10 matching somebody with somebody for data sharing is participated in
When putting policing option, client 10 will collect client 10 institute shared data corresponding with sharing policy in a network, and general
The shared data of relevant policy information and collection in sharing policy reports cloud platform 20.For example, what organizing user was configured is total to
Strategy is enjoyed to collect the related data for carrying out work efficiency contrast, then client 10 will be collected in tissue network and be operated effect
The related data of rate contrast.
Additionally, to ensure that cloud platform 20 can push mining data according to the configuration strategy of organizing user, therefore, client
10 by the shared data of collection while cloud platform 20 are uploaded to, and also the relevant policy information of configuration are together uploaded to into cloud and are put down
Platform 20.
In the present embodiment, cloud platform 20 receives the relevant policy information that each client 10 is uploaded on network and shared number
According to, and Macro or mass analysis process is carried out to shared data, the mining data of several type is obtained, and according to relevant policy information,
The mining data of corresponding types is pushed to into correspondence client 10.Wherein, in the present embodiment, cloud platform 20 is for being total to for receiving
The Macro or mass analysis processing mode for enjoying data is not limited.Additionally, in the present embodiment, cloud platform 20 both can be pushed according to the set time and dug
Pick data, it is also possible to which the special time according to setting pushes again mining data, wherein, cloud platform 20 is only pushed to mining data
Participate in the corresponding client 10 of data sharing.
Optionally, relevant policy information at least includes:The type of the required mining data of the place network of client 10, digging
The reception mode of pick data.
Additionally, client 10 will also receive the mining data that pushed of cloud platform, so can according to mining data (namely
The shared data provided by its hetero-organization network), the running organized and decision-making management.For example, with by Botnet
Attack and contrast as a example by this shared data, notebook data digging system can achieve the effect that as follows:One tissue map network passes through
Client 10 is added after Information Sharing analysis mechanisms, and cloud platform 20 will regularly push linked groups' (group such as mutually of the same trade
Knit) the average Botnet that is subject to of map network attack the distribution situation of number and this type flaw attack in each dimension, so
Afterwards tissue can judge oneself tissue in this respect in which kind of level according to the mining data for receiving, and further sentence
It is disconnected whether to need to do further protective treatment.In addition, some safety analysis numbers of versatility can also be included in mining data
According to so as to oneself tissue is by these safety analysis data, being collected, contrasted, the organization and administration work such as decision-making.
In the present embodiment, each tissue completes the configuration of the sharing policy of data in tissue network by respective client,
And the shared data in tissue network collected by client and the shared data is uploaded to into third party cloud platform is converged
Bulk analysis is processed, and then by the cloud platform, obtains the mining data excavated in the shared data provided from each tissue, and
Mining data is pushed to into the tissue of each participation data sharing, and then the shared of network data between different tissues can be realized, from
And cause each tissue to utilize the shared data that be provided of its hetero-organization, the running organized and decision-making management.
With reference to Fig. 2, Fig. 2 is the high-level schematic functional block diagram of data digging system second embodiment of the present invention, it is characterised in that
Data digging system also includes:
End 30 is safeguarded, for cloud platform 20 to be safeguarded and monitored, the maintenance at least includes updating in cloud platform 20
Relative program, for the type and set-up mode of safeguarding end 30 are not limited in the present embodiment, data digging system as shown in Figure 3
Configuration diagram.
For example, " automatically analyzing and supplying system for shared data " program, the system program are installed in cloud platform 20
Can be developed and maintenance by the equipment manufacturer corresponding to client 10, the Main Function of the system program is to each client
10 shared datas for being reported carry out Macro or mass analysis process, then form the required mining data of tissue that client 10 is located simultaneously
It is pushed to client 10.And safeguard that end 30 is then used to that cloud platform 20 to be safeguarded and monitored, it is main to include updating cloud platform 20
On relative program, such as " automatically analyzing and supplying system for shared data " program.Additionally, also to the whole fortune of cloud platform 20
Row process carries out security monitoring.
It is further alternative, in the embodiment of data digging system of the present invention, to avoid each tissue by client 10
The shared data of upload is got by the manager of cloud platform 20 and its hetero-organization, therefore, in the present embodiment, especially by following
The measure of three aspects is solved:
(1) building in the enterprising platform 20 that racks of public cloud trusty, such as by conventional telecommunications operator infrastructure,
Including the public cloud that China Mobile, CHINAUNICOM and China Telecom are provided;Or put down by cloud computing where under Government-Leading
Platform;Or including Ali's cloud, Tengxun's cloud etc..
(2) cloud platform 20 completes the Macro or mass analysis process to shared data by program, and then avoids anthropic factor and lead
Leaking data is caused, meanwhile, all data to processing in processing procedure are encrypted, even if so as to leaking data, also cannot
Decrypt easily, so as to assuring data security;Additionally, also need to further illustrate, for the attendant of cloud platform also needs
To adopt related data safety privacy mechanism, and then the data that attendant to be touched and the number being not readily accessible to
According to corresponding safe handling is carried out respectively, concrete processing mode is not done and is excessively repeated.
(3) the provider's information not comprising data in the mining data that cloud platform 20 is pushed, even and if then its hetero-organization
Related data is got, also causes its hetero-organization to determine the provider of the data, so as to further reduce after leaking data
Tissue harmful effect to participating in data sharing.
Additionally, being considered based on Information Security, the shared data uploaded from each client 10 can be in each correspondence tissue
Show on network data management equipment, so that shared data provider can directly have a clear understanding of shared data, it is complete
The shared supervision of paired data.
With reference to Fig. 4, Fig. 4 is the schematic flow sheet of the embodiment of implementation method one of data digging system of the present invention.This enforcement
In example, the implementation method of data digging system includes:
Step S10, when client place network participate in data sharing when, client collect client institute in a network with advance
The corresponding shared data of sharing policy is put, and the shared data of the relevant policy information in sharing policy and collection is reported
Cloud platform;
When sharing policy is preconfigured to client place network participates in data sharing, client is collected client and is located
The shared data corresponding with sharing policy in network, such as the related data for being operated efficiency comparative is shared, is swum
The sharing of related data of play market contrast, carry out receiving Botnet attack contrast related data it is shared etc..
In the present embodiment, when organizing user have selected the configuration plan that client place network participates in data sharing in client
Slightly option when, client will collect client shared data corresponding with sharing policy in a network, and by sharing policy
In relevant policy information and the shared data of collection report cloud platform 20.For example, the sharing policy of organizing user configuration is
Collection carries out the related data of work efficiency contrast, then client will collect the phase for being operated efficiency comparative in tissue network
Close data.
Additionally, to ensure that cloud platform can push mining data according to the configuration strategy of organizing user, therefore, client exists
While the shared data of collection is uploaded to into cloud platform, also the relevant policy information of configuration is together uploaded to into cloud platform.
Step S20, cloud platform receives the relevant policy information and shared data of each client upload, and to shared data
Macro or mass analysis process is carried out, the mining data of several type is obtained, and according to relevant policy information, by the excavation of corresponding types
Data-pushing gives correspondence client;
Step S30, client receives the mining data that cloud platform is pushed.
In the present embodiment, cloud platform receives the relevant policy information and shared data of each client upload, and to shared
Data carry out Macro or mass analysis process, obtain the mining data of several type, and according to relevant policy information, by corresponding types
Mining data is pushed to correspondence client.Wherein, in the present embodiment, cloud platform is for the Macro or mass analysis of the shared data for receiving
Processing mode is not limited, such as excavate data type, focus security classes data type of concern of the same trade etc..Additionally, the present embodiment
In, cloud platform both can push mining data according to the set time, it is also possible to which the special time according to setting pushes again excavation number
According to, wherein, mining data is only pushed to cloud platform the corresponding client for participating in data sharing.
Optionally, relevant policy information at least includes:The type of the required mining data of client place network, excavation
The reception mode of data.
Additionally, client will also receive the mining data that pushed of cloud platform, so can according to mining data (namely by
The shared data that its hetero-organization network is provided), the running organized and decision-making management.For example, being attacked by Botnet
Hit and contrast as a example by this shared data, notebook data digging system can achieve the effect that as follows:One tissue map network is by visitor
Family end is added after Information Sharing analysis mechanisms, and cloud platform will regularly push the right of linked groups' (tissue such as mutually of the same trade)
The average Botnet that network is subject to is answered to attack the distribution situation of number and this type flaw attack in each dimension, then tissue can
Which kind of according to the mining data for receiving, to judge oneself tissue in this respect in level, and further determine whether to need
Do further protective treatment.In addition, some safety analysis data of versatility can also be included in mining data, so as to certainly
Oneself tissue is collected, is contrasted, the organization and administration work such as decision-making by these safety analysis data.
In the present embodiment, each tissue completes the configuration of the sharing policy of data in tissue network by respective client,
And the shared data in tissue network collected by client and the shared data is uploaded to into third party cloud platform is converged
Bulk analysis is processed, and then by the cloud platform, obtains the mining data excavated in the shared data provided from each tissue, and
Mining data is pushed to into the tissue of each participation data sharing, and then the shared of network data between different tissues can be realized, from
And cause each tissue to utilize the shared data that be provided of its hetero-organization, the running organized and decision-making management.
Optionally, in another embodiment of implementation method of data digging system of the present invention, client collects the client institute
Before shared data in a network, the implementation method of data digging system also includes:Client configures the client place net
The sharing policy of data in network.
In the present embodiment, for the type of client is not limited, such as gateway device, such as network log-in management equipment, fire prevention
Wall equipment etc., or software gateway platform, or network equipment of information etc. can be carried out.Optionally, client includes net
Pass equipment, meanwhile, client place network is at least by the gateway device and some network equipments being connected with the gateway device
Composition.
In the present embodiment, organizing user by client configure client data in a network sharing policy, than
The config option for such as providing sharing policy for organizing user in the controlling interface of gateway device, in the config option of sharing policy
Appearance is not limited.The config option whether client place network participates in data sharing is such as provided, if participated in, is further provided for
The configuration of other corresponding strategies of data sharing.
Additionally, the mining data issued by cloud platform that can also be further to receiving in the present embodiment carries out related plan
Configuration slightly, such as configure type, reception mode of mining data of the required mining data of client place network etc., enters
And cloud platform is enabled according to the corresponding strategies of above-mentioned configuration, corresponding mining data is pushed to into corresponding client, than
Such as the mining data of type-A is pushed to and participates in the A clients of data sharing, and the mining data of B types is pushed to into participation
B clients of data sharing etc..
It is further alternative, in the embodiment of implementation method one of data digging system of the present invention, data digging system
Implementation method also includes:
Safeguard that end is safeguarded to cloud platform and monitored, wherein, the maintenance at least includes updating the correlation in cloud platform
Program.
For example, " automatically analyzing and supplying system for shared data " program is installed in cloud platform, the system program can
Equipment manufacturer by corresponding to client develops and maintenance, and the Main Function of the system program is in each client institute
The shared data of report carries out Macro or mass analysis process, then forms the mining data required for tissue that client is located and is pushed to visitor
Family end.And safeguard that end is then used to safeguard cloud platform and be monitored, it is main to include updating the relative program in cloud platform, such as
" automatically analyzing and supplying system for shared data " program.Additionally, also carrying out security monitoring to the whole service process of cloud platform.
It is further alternative, in the embodiment of implementation method one of data digging system of the present invention, to avoid each tissue logical
The shared data for crossing client upload is got by cloud platform manager and its hetero-organization, therefore, it is concrete logical in the present embodiment
Cross the measure in terms of three below to solve:
(1) building in the enterprising platform that racks of public cloud trusty, such as by conventional telecommunications operator infrastructure, bag
Include the public cloud that China Mobile, CHINAUNICOM and China Telecom are provided;Or by cloud computing platform where under Government-Leading
Deng.
(2) cloud platform completes the Macro or mass analysis process to shared data by program, and then avoids anthropic factor and cause
Leaking data, meanwhile, all data to processing in processing procedure are encrypted, even if so as to leaking data, also cannot be light
Easily decryption, so as to assuring data security;
(3) in the mining data that cloud platform is pushed not comprising data provider's information, even and if then its hetero-organization obtain
Related data is got, also causes its hetero-organization to determine the provider of the data, it is right after leaking data so as to further reduce
Participate in the tissue harmful effect of data sharing.
Additionally, considered based on Information Security, can be in the net of each correspondence tissue from the shared data of each client upload
Show on network data management apparatus, so that shared data provider can directly have a clear understanding of shared data, complete
Supervision to data sharing.
The preferred embodiments of the present invention are these are only, the scope of the claims of the present invention is not thereby limited, it is every using this
Equivalent structure or equivalent flow conversion that bright description and accompanying drawing content are made, or directly or indirectly it is used in other related skills
Art field, is included within the scope of the present invention.