CN111371750A - Intrusion prevention system and intrusion prevention method based on computer network - Google Patents

Intrusion prevention system and intrusion prevention method based on computer network Download PDF

Info

Publication number
CN111371750A
CN111371750A CN202010109028.4A CN202010109028A CN111371750A CN 111371750 A CN111371750 A CN 111371750A CN 202010109028 A CN202010109028 A CN 202010109028A CN 111371750 A CN111371750 A CN 111371750A
Authority
CN
China
Prior art keywords
unit
module
network
information
intrusion
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202010109028.4A
Other languages
Chinese (zh)
Inventor
林勇
叶德望
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Zhejiang Dexun Network Security Technology Co ltd
Original Assignee
Zhejiang Dexun Network Security Technology Co ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Zhejiang Dexun Network Security Technology Co ltd filed Critical Zhejiang Dexun Network Security Technology Co ltd
Priority to CN202010109028.4A priority Critical patent/CN111371750A/en
Publication of CN111371750A publication Critical patent/CN111371750A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0227Filtering policies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1408Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
    • H04L63/1416Event detection, e.g. attack signature detection

Abstract

The invention discloses a computer network-based intrusion prevention system and an intrusion prevention method, which comprise a network disconnection system and an information extraction system, wherein the network disconnection system comprises an intrusion information unit, a network control center, an active identification unit, a data feedback unit, a network disconnection unit and an alarm display unit, the output end of the intrusion information unit is connected with the input end of the network control center, and the output end of the network control center is connected with the input ends of the active identification unit and the network disconnection unit. According to the computer network-based intrusion prevention system and the intrusion prevention method, the information of external intrusion is analyzed and processed through the network control center, the information of the external intrusion is actively identified by the active identification unit, passive intrusion receiving is avoided, and meanwhile, the computer network is disconnected at the first time when the network disconnection unit identifies the information of the external intrusion, so that further intrusion is prevented.

Description

Intrusion prevention system and intrusion prevention method based on computer network
Technical Field
The invention relates to the technical field of intrusion prevention systems, in particular to an intrusion prevention system and an intrusion prevention method based on a computer network.
Background
The computer network is a computer system which connects a plurality of computers with independent functions and external equipment thereof at different geographic positions through communication lines and realizes resource sharing and information transmission under the management and coordination of a network operating system, network management software and a network communication protocol. The classification of computer networks, like the general object classification method, can be classified according to different characteristics (i.e. the attributes of objects) of objects. Computer networks are traditionally made up of multiple computers (or other computer network devices) physically (or logically) connected together through transmission media and software. The composition of a computer network in general basically comprises: the system comprises a computer, a network operating system, a transmission medium (which can be tangible or intangible, such as a transmission medium of a wireless network is a space), and corresponding application software.
The existing computer network intrusion prevention system mostly adopts network security facilities such as a firewall, an intrusion detection system and the like, and adopts a preset strategy to protect the network security, so that the network intrusion prevention mode is too mechanized, the prevention effect is not ideal enough, the actual effect of a new attack mode is often high in false alarm rate, and therefore, the computer network intrusion prevention system and the intrusion prevention method are provided.
Disclosure of Invention
Technical problem to be solved
Aiming at the defects of the prior art, the invention provides a computer network-based intrusion prevention system and an intrusion prevention method, which solve the problems that the existing computer network intrusion prevention system adopts a preset strategy to protect a network, the intrusion prevention mode is too mechanized, and the prevention effect is not ideal enough.
(II) technical scheme
In order to achieve the purpose, the invention is realized by the following technical scheme: a computer network-based intrusion prevention system comprises a network disconnection system and an information extraction system, the network disconnection system comprises an intrusion information unit, a network control center, an active identification unit, a data feedback unit, a network disconnection unit and an alarm display unit, the output end of the intrusion information unit is connected with the input end of the network control center, the output ends of the network control center are connected with the input ends of the active identification unit and the network disconnection unit, the output end of the active identification unit is connected with the input ends of the data feedback unit and the alarm display unit, the output end of the data feedback unit is connected with the input end of the network control center, the output end of the network disconnection unit is connected with the input end of the active identification unit, and the output end of the alarm display unit is connected with the input end of the information extraction system.
Preferably, the information extraction system comprises an information extraction module, a central processing module, a firewall, a log analysis module, a data comparison module, a virus detection unit and a antivirus software unit.
Preferably, the output end of the information extraction module is connected with the input end of the central processing module, and the output end of the central processing module is connected with the input ends of the firewall and the virus detection unit.
Preferably, the output end of the firewall is connected with the input ends of the log analysis module and the virus detection unit, and the output end of the log analysis module is connected with the input end of the data comparison module.
Preferably, the output end of the data comparison module is connected with the input end of the central processing module, and the output end of the virus detection unit is connected with the input end of the antivirus software unit.
Preferably, the network disconnection unit includes an automatic network disconnection module, an automatic network connection module, and a wireless connection module, and the wireless connection module is connected to the information extraction system.
Preferably, the alarm display unit comprises a pop-up window prompting module, an alarm lamp module and a buzzer module, and the pop-up window prompting module, the alarm lamp module and the buzzer module alarm simultaneously.
The invention also discloses an intrusion prevention method based on the computer network, which specifically comprises the following steps:
s1, firstly, the intrusion information unit is the intrusion of the external information, after the intrusion information is analyzed and processed by the network control center, the active identification unit actively identifies the information of the external intrusion, and then the information is fed back to the network control center through the data feedback unit, at the moment, the network control center controls the automatic network disconnection module in the network disconnection unit to automatically disconnect the computer network, and the alarm display unit is used for alarming;
s2, extracting the information of the external invasion through an information extraction module, analyzing and processing the information through a central processing module, processing the information through a firewall, analyzing the information through a log analysis module, and comparing the analyzed result through a data comparison module;
s3, when the information of the external invasion has virus danger, the virus detection unit detects the information of the external invasion, and the virus is sterilized by the antivirus software unit after the virus is detected;
s4, after the defense is completed by the external invasion information, the wireless connection module in the network disconnection unit completes the acceptance of the wireless signal, at this time, the automatic network connection module in the network disconnection unit automatically connects the network, and at this time, the computer network can be normally used.
(III) advantageous effects
The invention provides an intrusion prevention system and an intrusion prevention method based on a computer network. Compared with the prior art, the method has the following beneficial effects:
(1) the computer network-based intrusion prevention system and the intrusion prevention method are characterized in that the output end of an intrusion information unit is connected with the input end of a network control center, the output end of the network control center is connected with the input ends of an active identification unit and a network disconnection unit, the output end of the active identification unit is connected with the input ends of a data feedback unit and an alarm display unit, the output end of the data feedback unit is connected with the input end of the network control center, the output end of the network disconnection unit is connected with the input end of the active identification unit, the output end of the alarm display unit is connected with the input end of an information extraction system, S1, firstly, the intrusion information unit is the intrusion of the external information, after the intrusion information is analyzed and processed by the network control center, then, the active identification unit actively identifies the information of the external intrusion, and further feeds the information back, at the moment, the network control center controls an automatic network disconnection module in the network disconnection unit to automatically disconnect the computer network, the alarm display unit is used for alarming, the network control center analyzes and processes the information of the external invasion, the active identification unit is used for actively identifying the information of the external invasion, passive invasion receiving is avoided, and meanwhile, when the network disconnection unit identifies the information of the external invasion, the computer network is disconnected at the first time to prevent further invasion.
(2) The computer network-based intrusion prevention system and the computer network-based intrusion prevention method are characterized in that the output end of an information extraction module is connected with the input end of a central processing module, the output end of the central processing module is connected with the input ends of a firewall and a virus detection unit, the output end of the firewall is connected with the input ends of a log analysis module and a virus detection unit, the output end of the log analysis module is connected with the input end of a data comparison module, the output end of the data comparison module is connected with the input end of the central processing module, the output end of the virus detection unit is connected with the input end of a antivirus software unit, S2, meanwhile, the information of external intrusion is extracted through the information extraction module and then is analyzed and processed through the central processing module, then the data is processed through a firewall and analyzed through a log analysis module, and the analyzed result is compared through a data comparison module; s3, when the information of the external invasion has virus danger, the virus detection unit detects the information of the external invasion, the virus killing software unit is used for killing virus after the virus is detected, the external information is extracted by the information extraction module, the firewall and the log analysis module are used for filtering after the analysis and the processing of the central processing module, and then the detected virus is searched and killed by matching with the virus detection unit and the virus killing software unit, thereby greatly improving the invasion defense performance of the computer network.
Drawings
FIG. 1 is a schematic block diagram of a network disconnect system of the present invention;
FIG. 2 is a schematic block diagram of an information extraction system of the present invention;
FIG. 3 is a functional block diagram of a network disconnect unit of the present invention;
FIG. 4 is a schematic block diagram of an alarm display unit of the present invention.
In the figure, 1-network disconnection system, 11-intrusion information unit, 12-network control center, 13-active identification unit, 14-data feedback unit, 15-network disconnection unit, 16-alarm display unit, 2-information extraction system, 21-information extraction module, 22-central processing module, 23-firewall, 24-log analysis module, 25-data comparison module, 26-virus detection unit and 27-antivirus software unit.
Detailed Description
The technical solutions in the embodiments of the present invention will be clearly and completely described below with reference to the drawings in the embodiments of the present invention, and it is obvious that the described embodiments are only a part of the embodiments of the present invention, and not all of the embodiments. All other embodiments, which can be derived by a person skilled in the art from the embodiments given herein without making any creative effort, shall fall within the protection scope of the present invention.
Referring to fig. 1-4, an embodiment of the present invention provides a technical solution: an intrusion prevention system based on a computer network comprises a network disconnection system 1 and an information extraction system 2, wherein the information extraction system 2 comprises an information extraction module 21, a central processing module 22, a firewall 23, a log analysis module 24, a data comparison module 25, a virus detection unit 26 and an antivirus software unit 27, the central processing module 22 is an ARM9 series microprocessor, the output end of the data comparison module 25 is connected with the input end of the central processing module 22, the output end of the virus detection unit 26 is connected with the input end of the antivirus software unit 27, the output ends of the firewall 23 are connected with the input ends of the log analysis module 24 and the virus detection unit 26, the output end of the log analysis module 24 is connected with the input end of the data comparison module 25, the output end of the information extraction module 21 is connected with the input end of the central processing module 22, the output end of the central processing module 22 is connected with the input ends of the firewall 23 and the virus detection unit, the network disconnection system 1 comprises an intrusion information unit 11, a network control center 12, an active identification unit 13, a data feedback unit 14, a network disconnection unit 15 and an alarm display unit 16, wherein the alarm display unit 16 comprises a pop-up window prompt module, an alarm lamp module and a buzzer module, the pop-up window prompt module, the alarm lamp module and the buzzer module alarm at the same time, the network disconnection unit 15 comprises an automatic network disconnection module, an automatic network connection module and a wireless connection module, the wireless connection module is connected with the information extraction system 2, the output end of the intrusion information unit 11 is connected with the input end of the network control center 12, the output end of the network control center 12 is connected with the input ends of the active identification unit 13 and the network disconnection unit 15, the output end of the active identification unit 13 is connected with the input ends of the data feedback unit 14 and the alarm display unit 16, the output end of the data feedback unit 14 is connected with the input end of the network control center, the output of the network disconnection unit 15 is connected to the input of the active identification unit 13, and the output of the alarm display unit 16 is connected to the input of the information extraction system 2, while those not described in detail in this specification are well known to those skilled in the art.
The invention also discloses an intrusion prevention method based on the computer network, which specifically comprises the following steps:
s1, firstly, the intrusion information unit 11 is the intrusion of the external information, after the intrusion is analyzed and processed by the network control center 12, the active identification unit 13 actively identifies the information of the external intrusion, and then the information is fed back to the network control center 12 through the data feedback unit 14, at this time, the network control center 12 controls the automatic network disconnection module in the network disconnection unit 15 to automatically disconnect the computer network, and the alarm display unit 16 is used for alarming;
s2, extracting the information of the external invasion through the information extraction module 21, analyzing and processing through the central processing module 22, processing through the firewall 23, analyzing through the log analysis module 24, and comparing the analyzed result through the data comparison module 25;
s3, when the information of the external invasion has virus danger, the virus detection unit 26 detects the information of the external invasion, and the antivirus software unit 27 is used for killing virus after the virus is detected;
s4, after the defense is completed by the external invasion information, the wireless connection module in the network disconnection unit 15 completes the acceptance of the wireless signal, at this time, the automatic network connection module in the network disconnection unit 15 automatically connects the network, and at this time, the computer network can be normally used.
In summary, the network control center 12 analyzes and processes the information of the external intrusion, the active identification unit 13 is used to actively identify the information of the external intrusion, so as to avoid passive receiving of the intrusion, and the network disconnection unit 15 disconnects the computer network at the first time when identifying the information of the external intrusion, prevents the computer network from further intrusion, extracts the external information through the information extraction module 21, performs analysis and processing through the central processing module 22, performs filtering processing through the firewall 23 and the log analysis module 24, and then performs searching and killing on the detected viruses by matching with the virus detection unit 26 and the antivirus software unit 27, thereby greatly improving the intrusion prevention performance of the computer network.
It is noted that, herein, relational terms such as first and second, and the like may be used solely to distinguish one entity or action from another entity or action without necessarily requiring or implying any actual such relationship or order between such entities or actions. Also, the terms "comprises," "comprising," or any other variation thereof, are intended to cover a non-exclusive inclusion, such that a process, method, article, or apparatus that comprises a list of elements does not include only those elements but may include other elements not expressly listed or inherent to such process, method, article, or apparatus.
Although embodiments of the present invention have been shown and described, it will be appreciated by those skilled in the art that changes, modifications, substitutions and alterations can be made in these embodiments without departing from the principles and spirit of the invention, the scope of which is defined in the appended claims and their equivalents.

Claims (8)

1. A computer network-based intrusion prevention system comprises a network disconnection system (1) and an information extraction system (2), and is characterized in that: the network disconnection system (1) comprises an intrusion information unit (11), a network control center (12), an active identification unit (13), a data feedback unit (14), a network disconnection unit (15) and an alarm display unit (16), the output end of the intrusion information unit (11) is connected with the input end of the network control center (12), the output end of the network control center (12) is connected with the input ends of the active identification unit (13) and the network disconnection unit (15), the output end of the active identification unit (13) is connected with the input ends of the data feedback unit (14) and the alarm display unit (16), the output end of the data feedback unit (14) is connected with the input end of the network control center (12), the output end of the network disconnection unit (15) is connected with the input end of the active identification unit (13), the output end of the alarm display unit (16) is connected with the input end of the information extraction system (2).
2. The computer network based intrusion prevention system of claim 1, wherein: the information extraction system (2) comprises an information extraction module (21), a central processing module (22), a firewall (23), a log analysis module (24), a data comparison module (25), a virus detection unit (26) and a antivirus software unit (27).
3. The computer network based intrusion prevention system of claim 2, wherein: the output end of the information extraction module (21) is connected with the input end of the central processing module (22), and the output end of the central processing module (22) is connected with the input ends of the firewall (23) and the virus detection unit (26).
4. The computer network based intrusion prevention system of claim 2, wherein: the output end of the firewall (23) is connected with the input ends of the log analysis module (24) and the virus detection unit (26), and the output end of the log analysis module (24) is connected with the input end of the data comparison module (25).
5. The computer network based intrusion prevention system of claim 2, wherein: the output end of the data comparison module (25) is connected with the input end of the central processing module (22), and the output end of the virus detection unit (26) is connected with the input end of the antivirus software unit (27).
6. The computer network based intrusion prevention system of claim 1, wherein: the network disconnection unit (15) comprises an automatic network disconnection module, an automatic network connection module and a wireless connection module, and the wireless connection module is connected with the information extraction system (2).
7. The computer network based intrusion prevention system of claim 1, wherein: the alarm display unit (16) comprises a pop-up window prompting module, an alarm lamp module and a buzzer module, and the pop-up window prompting module, the alarm lamp module and the buzzer module alarm simultaneously.
8. An intrusion prevention method based on a computer network is characterized in that: the method specifically comprises the following steps:
s1, firstly, the intrusion information unit (11) is the intrusion of the external information, after the intrusion is analyzed and processed by the network control center (12), the active identification unit (13) actively identifies the information of the external intrusion, and then the information is fed back to the network control center (12) through the data feedback unit (14), at the moment, the network control center (12) controls the automatic network disconnection module in the network disconnection unit (15) to automatically disconnect the computer network, and the alarm display unit (16) is used for alarming;
s2, extracting the information of the external invasion through an information extraction module (21), analyzing and processing through a central processing module (22), processing through a firewall (23), analyzing through a log analysis module (24), and comparing the analyzed result through a data comparison module (25);
s3, when the information of the external invasion has virus danger, the virus detection unit (26) detects the information of the external invasion, and the antivirus software unit (27) is used for killing virus after the virus is detected;
s4, after the information of the external invasion is defended, the wireless connection module in the network disconnection unit (15) completes the acceptance of the wireless signal, at the moment, the automatic network connection module in the network disconnection unit (15) automatically connects the network, and at the moment, the computer network can be normally used.
CN202010109028.4A 2020-02-21 2020-02-21 Intrusion prevention system and intrusion prevention method based on computer network Pending CN111371750A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202010109028.4A CN111371750A (en) 2020-02-21 2020-02-21 Intrusion prevention system and intrusion prevention method based on computer network

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202010109028.4A CN111371750A (en) 2020-02-21 2020-02-21 Intrusion prevention system and intrusion prevention method based on computer network

Publications (1)

Publication Number Publication Date
CN111371750A true CN111371750A (en) 2020-07-03

Family

ID=71211554

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202010109028.4A Pending CN111371750A (en) 2020-02-21 2020-02-21 Intrusion prevention system and intrusion prevention method based on computer network

Country Status (1)

Country Link
CN (1) CN111371750A (en)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112583813A (en) * 2020-12-09 2021-03-30 南京拟态智能技术研究院有限公司 Network security early warning system
CN112887288A (en) * 2021-01-19 2021-06-01 青岛简屿传媒有限公司 Internet-based E-commerce platform intrusion detection front-end computer scanning system

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2008040223A1 (en) * 2006-09-18 2008-04-10 Jie Bai Method for filtering harmfulness data transferred between terminal and destination host in network
US20090178140A1 (en) * 2008-01-09 2009-07-09 Inventec Corporation Network intrusion detection system
CN102857486A (en) * 2012-04-01 2013-01-02 深信服网络科技(深圳)有限公司 Next-generation application firewall system and defense method
CN204669399U (en) * 2015-04-23 2015-09-23 广州万方计算机科技有限公司 Based on internet worm and the threat monitoring system of Hadoop framework
CN107277070A (en) * 2017-08-15 2017-10-20 山东华诺网络科技有限公司 A kind of computer network instrument system of defense and intrusion prevention method
CN109150900A (en) * 2018-09-18 2019-01-04 温州职业技术学院 A kind of information security of computer network system

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2008040223A1 (en) * 2006-09-18 2008-04-10 Jie Bai Method for filtering harmfulness data transferred between terminal and destination host in network
US20090178140A1 (en) * 2008-01-09 2009-07-09 Inventec Corporation Network intrusion detection system
CN102857486A (en) * 2012-04-01 2013-01-02 深信服网络科技(深圳)有限公司 Next-generation application firewall system and defense method
CN204669399U (en) * 2015-04-23 2015-09-23 广州万方计算机科技有限公司 Based on internet worm and the threat monitoring system of Hadoop framework
CN107277070A (en) * 2017-08-15 2017-10-20 山东华诺网络科技有限公司 A kind of computer network instrument system of defense and intrusion prevention method
CN109150900A (en) * 2018-09-18 2019-01-04 温州职业技术学院 A kind of information security of computer network system

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
闵锐等: "防火墙协同防御技术研究", 《计算机安全》 *

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112583813A (en) * 2020-12-09 2021-03-30 南京拟态智能技术研究院有限公司 Network security early warning system
CN112887288A (en) * 2021-01-19 2021-06-01 青岛简屿传媒有限公司 Internet-based E-commerce platform intrusion detection front-end computer scanning system
CN112887288B (en) * 2021-01-19 2022-09-13 重庆葵海数字科技有限公司 Internet-based E-commerce platform intrusion detection front-end computer scanning system

Similar Documents

Publication Publication Date Title
CN110881049B (en) Computer network safety intelligent control system
US9860278B2 (en) Log analyzing device, information processing method, and program
KR100468232B1 (en) Network-based Attack Tracing System and Method Using Distributed Agent and Manager Systems
CN108931968B (en) Network security protection system applied to industrial control system and protection method thereof
US20150200956A1 (en) Information processing apparatus, method for determining unauthorized activity and computer-readable medium
US20100325685A1 (en) Security Integration System and Device
CN101136922A (en) Service stream recognizing method, device and distributed refusal service attack defending method, system
US10652259B2 (en) Information processing apparatus, method and medium for classifying unauthorized activity
CN111371750A (en) Intrusion prevention system and intrusion prevention method based on computer network
CN112565300B (en) Industry cloud hacker attack identification and blocking method, system, device and medium
CN111786986B (en) Numerical control system network intrusion prevention system and method
CN109165508A (en) A kind of external device access safety control system and its control method
CN111556473A (en) Abnormal access behavior detection method and device
CN113329017A (en) Network security risk detection system and method
CN114143064A (en) Multi-source network security alarm event tracing and automatic processing method and device
CN114338171A (en) Black product attack detection method and device
CN109474567B (en) DDOS attack tracing method and device, storage medium and electronic equipment
CN100433641C (en) Method for real-time detecting network worm virus
CN110636077A (en) Network security protection system and method based on unified platform
CN115208690A (en) Screening processing system based on data classification and classification
CN109803301B (en) Offline identification management system for wireless network
CN110912869A (en) Big data-based monitoring and reminding method
CN112769847A (en) Safety protection method, device, equipment and storage medium for Internet of things equipment
CN112839031A (en) Industrial control network security protection system and method
CN111031062B (en) Industrial control system panoramic perception monitoring method, device and system with self-learning function

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20200703