CN103795719B - Terminal security equipment simplify configuration management method and system - Google Patents

Terminal security equipment simplify configuration management method and system Download PDF

Info

Publication number
CN103795719B
CN103795719B CN201410033245.4A CN201410033245A CN103795719B CN 103795719 B CN103795719 B CN 103795719B CN 201410033245 A CN201410033245 A CN 201410033245A CN 103795719 B CN103795719 B CN 103795719B
Authority
CN
China
Prior art keywords
terminal security
security equipment
digital certificate
certificate
ipsec vpn
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201410033245.4A
Other languages
Chinese (zh)
Other versions
CN103795719A (en
Inventor
陈炯聪
曾强
苏扬
谢善益
李海涛
黄曙
余南华
梁智强
胡朝辉
江泽鑫
梁志宏
林丹生
李闯
石炜君
梁毅成
黄岳峰
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Electric Power Research Institute of Guangdong Power Grid Co Ltd
Original Assignee
Electric Power Research Institute of Guangdong Power Grid Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Electric Power Research Institute of Guangdong Power Grid Co Ltd filed Critical Electric Power Research Institute of Guangdong Power Grid Co Ltd
Priority to CN201410033245.4A priority Critical patent/CN103795719B/en
Publication of CN103795719A publication Critical patent/CN103795719A/en
Application granted granted Critical
Publication of CN103795719B publication Critical patent/CN103795719B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The present invention provides a kind of terminal security equipment simplify configuration management method and system, digital certificate system is set, terminal security equipment and the IPSec VPN traffic parameters of the intercommunication of main website safety means are automatically configured by digital certificate system, digital certificate system generates terminal security equipment, the digital certificate files of main website safety means complete the initialization of terminal security equipment, the certificate file of terminal security equipment and IPSec VPN traffic parameters are sent on main website safety means, so that terminal security equipment and main website safety means can recognize the IPSec VPN traffic parameters of communication, when terminal security device power works, terminal security equipment reads the IPSec VPN traffic parameters communicated accordingly, realize IPSec VPN traffics.The management method of above-mentioned simplify configuration, WEB management programs need not be developed in terminal security equipment, without complicated page operation flow, without complicated CONSOLE configuration orders, simplify terminal safety device configuration management flow and method, reduce due to the system burden that configuration management is brought, enhance the centralized management to whole network equipment.

Description

Terminal security equipment simplify configuration management method and system
Technical field
The present invention relates to device management techniques field, more particularly to terminal security equipment simplify configuration management method is with being System.
Background technology
So-called " simplify configuration ", is not to say that some configuration does not all have, but configuration is seldom, by simple, effective Ground is configured, and is reduced the quantity for needing to configure by the agreement between communication equipment, is improved exploitation and the efficiency of management.
In general a safety means are managed with configuration, it is necessary to which a safety management computer is directly connected to safety Management configuration is carried out in equipment, this pattern generally there are following two connection management modes, the first:Serial ports connection management, leads to CONSOLE mouthfuls of connections are crossed, its local management is configured, this is also a kind of reliably and securely configuring maintenance mode, but this connection Way to manage is primarily adapted for use in the instruction interaction of pure order line, needs configuration-direct one by one, need to expend a large amount of when a large amount of management Manpower and be not easy to centralized management, the more use control mouth way to manage typically in the equipment such as interchanger, router.Second Kind:Web modes are managed, and Network Security Device is managed in this way, are operated with window interface, this operation It is more directly perceived, but need to need for including in a large amount of and complicated web services programs, overall flow again on Network Security Device Miscellaneous page operation, generally for more complicated security gateway, fire wall, auto dialing router etc..
Terminal security equipment belongs to the miniaturization safety means of lightweight, there is low-power consumption, and device resource is few, small, work Make environmental requirement harsh, stability is high, equipment cost is low, and deployment amount is big, it is desirable to manage concentratedly, easy configuration management, system is provided Source consumption is low to be required, is distinguished conventional high-performance safety means and is managed compared with sophisticated functions.According to above-mentioned serial ports connection management Terminal security equipment is managed for configuration method, because terminal security deployed with devices amount is big, expends substantial amounts of manpower, manually string Mouth connection is difficult to realize that batch is managed concentratedly, and very flexible is managed according to above-mentioned Web modes, need to be in terminal security equipment Large-scale, complicated WEB service program is installed, terminal security equipment low-power consumption requirement and limited hardware resource can not meet its peace Reload request.
The content of the invention
Based on this, it is necessary to for existing safety means configuring management method because complex operation, take a large amount of hardware performances, Very flexible be difficult realize centralized management and be not suitable for mobile terminal safety configuration management the problem of there is provided one kind it is simple to operate, Flexibility is good and is easily achieved the terminal security equipment simplify configuration management that centralized management is adapted to mobile terminal safety configuration management Method and system.
A kind of terminal security equipment simplify configuration management method, including step:
Digital certificate system is set, the digital certificate text of main website safety means is automatically generated by the digital certificate system Part and the parameter of IPSec VPN traffics;
The certificate file of terminal security equipment is generated by the digital certificate system, the terminal security equipment is completed Initialization;
Terminal security apparatus figure certificate and IPSec VPN traffic parameters, generation are imported by the main website safety means IPSec VPN traffic strategies;
When the terminal security device power works, IPSec VPN traffic parameters are read, according to IPSec VPN traffics The terminal peace is realized in strategy, the IPSec VPN traffics set up between the terminal security equipment and the main website safety means The simplify configuration of full equipment.
A kind of terminal security equipment simplify configuration management system, including:
Setup module, for setting digital certificate system, automatically generates main website by the digital certificate system and sets safely Standby digital certificate files and the parameter of IPSec VPN traffics;
Terminal device initialization module, the certificate text for generating terminal security equipment by the digital certificate system Part, completes the initialization of the terminal security equipment;
Communication strategy generation module, for by the main website safety means import terminal security apparatus figure certificate and IPSec VPN traffic parameters, generate IPSec VPN traffic strategies;
Simplify configuration module, for when the terminal security device power works, reading IPSec VPN traffic parameters, According to IPSec VPN traffic strategies, the IPSec VPN set up between the terminal security equipment and the main website safety means lead to Letter, realizes the simplify configuration of the terminal security equipment.
Terminal security equipment simplify configuration management method and system of the present invention, set digital certificate system, utilize numeral card The certificate file of book system generation main website safety means, is initialized to terminal security equipment, generation terminal security equipment Certificate file and the IPSec VPN traffic parameters for determining terminal security equipment communication, send eventually to main website safety means again afterwards Hold the digital certificate files and IPSec VPN traffic parameters of safety means, when terminal security device power is operated, terminal security Equipment completes to configure according to the IPSec VPN traffics parameter of communication, according to the certificate file of itself and the card of main website safety means Written matter carry out the certificate verification based on digital certificate system, when certificate verification by when, set up main website safety means and terminal The IPSec VPN traffics of safety means.The management method of above-mentioned simplify configuration, realizes that terminal security is set using digital certificate system Certificate verification between the standby safety means with main website, it is not necessary to complicated page operation flow, simplify configuration management flow and Method, is reduced due to the burden to hardware system that configuration management is brought, and enhances the centralized management to whole network equipment, Ensure the safety of main website safety means and terminal security equipment furthermore with data certificate technology and IPSec VPN traffic technologies.
Brief description of the drawings
Fig. 1 is the schematic flow sheet of terminal security equipment simplify configuration management method one embodiment of the present invention;
Fig. 2 is the schematic flow sheet of second embodiment of terminal security equipment simplify configuration management method of the present invention;
Fig. 3 is the structural representation of terminal security equipment simplify configuration management system one embodiment of the present invention;
Fig. 4 is the structural representation of second embodiment of terminal security equipment simplify configuration management system of the present invention.
Embodiment
In order to make the purpose , technical scheme and advantage of the present invention be clearer, it is right below according to drawings and Examples The present invention is further elaborated.It should be appreciated that specific implementation described herein is only to explain the present invention, not Limit the present invention.
As shown in figure 1, a kind of terminal security equipment simplify configuration management method, including step:
S200:Digital certificate system is set, the numeral of main website safety means is automatically generated by the digital certificate system Certificate file and the parameter of IPSec VPN traffics.
Digital certificate is a kind of authoritative electronic document, and digital certificate is for the authentication techniques of core and with IPSec VPN For core communication encryption technology the information of transmission over networks can be encrypted and decrypted, digital signature and signature verification, Ensure confidentiality, the integrality of online transmission information.In simple terms, digital certificate can provide progress identity on internet and test A kind of authoritative electronic document of card, can prove the body of the identity of oneself and identification other side in internet contacts with it Part.Above-mentioned is the simplicity of explanation to digital certificate technique, in the present embodiment, and digital certificate system can be generated according to equipment The equipment that is currently accessed of certificate file identification whether be the equipment or needed.Terminal security equipment is set safely with main website It is required for carrying out it configuration of parameter before standby foundation communication, only according to the IPSec for the communication that can be rationally mutually distinguishable VPN traffic parameter can just make to set up communication between the two.It is exactly to determine terminal security using digital certificate system herein The IPSec VPN traffic parameters of communication between equipment and main website safety means, the IPSec VPN of the communication of non-essential determination Messaging parameter can be stored in digital certificate system, to send terminal security equipment or main website peace in follow-up operation Full equipment is read.Digital certificate system can Generate Certificate file, give equipment one identification authentication data, herein, utilize number Word diploma system generates the certificate file of terminal security equipment.Meanwhile, digital certificate system can by this certificate file and with The protocol parameter packing storage of terminal security equipment agreement.
S400:The certificate file of terminal security equipment is generated by the digital certificate system, the terminal security is completed The initialization of equipment.
Specifically the step can be realized using following steps:
Digital certificate system sends initialization requests to terminal security equipment, and terminal security equipment is sent out according to initialization requests Go out applying digital certificate request, digital certificate system asks to generate the digital certificate of terminal security equipment according to applying digital certificate File, and the digital certificate files of terminal security equipment are sent to terminal security equipment.
S600:Terminal security apparatus figure certificate and IPSec VPN traffic parameters are imported by the main website safety means, Generate IPSec VPN traffic strategies.
S800:When the terminal security device power works, IPSec VPN traffic parameters are read, according to IPSec VPN Communication strategy, the IPSec VPN traffics set up between the terminal security equipment and the main website safety means, realizes the end Hold the simplify configuration of safety means.
Terminal security equipment simplify configuration management method of the present invention, sets digital certificate system, utilizes digital certificate system The certificate file of main website safety means is generated, terminal security equipment is initialized, the certificate text of terminal security equipment is generated Part and the IPSec VPN traffic parameters for determining terminal security equipment communication, regenerate the certificate file of main website safety means afterwards, When terminal security device power is operated, terminal security equipment completes to configure according to the IPSec VPN traffics parameter of communication, according to The certificate file of itself and the certificate file of main website safety means carry out the certificate verification based on digital certificate system, when certificate is recognized When card passes through, the communication of main website safety means and terminal security equipment is set up.The management method of above-mentioned simplify configuration, utilizes numeral Diploma system realizes the certificate verification between terminal security equipment and main website safety means, it is not necessary to complicated page operation stream Journey, simplifies configuration management flow and method, reduces due to the burden for the hardware system that configuration management is brought, enhances to whole The centralized management of the individual network equipment, main website safety means and terminal are ensured furthermore with data certificate system and digital authentication technology The safety of safety means.
As shown in Fig. 2 in one of the embodiments, the step S400 specifically includes step:
S420:The initialization requests that the digital certificate system is sent are received, random number sequence is generated, produces public and private key It is right;
S440:According to P10 solicited message of the public and private key to generation, and the P10 solicited messages are sent to the numeral Diploma system;
S460:The digital certificate system is received according to the certificate file that P10 information is produced and described in appointing IPSec VPN traffic parameters;
S480:Decompression, checking, the certificate file for preserving digital certificate system transmission and the IPSec VPN traffics appointed Parameter, completes the terminal security equipment initialization.
In above-described embodiment, the initialization flow of terminal security equipment is divided into 3 data switch sections and protocol processes, first Initialization requests agreement is first set up, both sides shake hands;Second agreement is sent to terminal by diploma system generation initialization information and set Standby, terminal device is generated after public and private key, and digital certificate system is sent to after producing P10 information;3rd agreement is by diploma system Terminal security device certificate is generated, and by root certificate, main website safety equipment certificate, terminal security device certificate and IPSec VPN Terminal device is sent to after packing compression after messaging parameter component devices file, terminal device initializes successfully after being proved to be successful
In simple terms, the technical scheme of terminal security equipment simplify configuration management method of the present invention is based on following theoretical 's:
It can be interacted between each entity of communication system is ensured, by realizing to resource between all communication entities Agreement control(Such as messaging parameter, security parameter, passage, systematic parameter, the interactive information such as communication unit), when each communication is real Established between body after agreement and the appropriate information resources of specification, nothing each other can be just realized by " simplify configuration " method Seam communication.In terminal security equipment, the processing with every data service of diploma system and main website safety means, example are realized The initialization information of diploma system is such as received, the subject information of diploma system is responded and the demand file that Generates Certificate, with main website The secure communication of safety means, realizes the processing such as particular network dialing.So specification must be set up with diploma system, constraint Communication protocol and naming rule, the messaging parameter for closing rule is set up with main website safety means.
Specific handling process is as follows:
Step one:When terminal security equipment is in no initializtion state, it is necessary to pass through the initialization operation of diploma system After the initialization for completing terminal security equipment, it can just be deployed in working environment.Due to not having systematic running parameter, vpn peaces It is complete tactful, the information such as certificate, communication process program is not actuated, so intra-system communication can not be realized;
Step 2:During by digital certificate system initialization terminal safety means, arrange privately owned between 2 communication entities Communication protocol and messaging parameter, the protocol parameter for closing rule can be formulated as needed.Digital certificate system and terminal security equipment Interact after mutual information, digital certificate system joins the parameter of main website safety means, certificate, the work of terminal security equipment Terminal security equipment is issued after the packing compression such as number;
Step 3:Terminal security equipment has received running parameter, changes mode of operation dress into init state.
Step 4:Terminal parameter and the certificate of main website safeguard that digital certificate system affixes one's name to internal system, parameter etc. Main website is issued, master device is imported after corresponding parameter, and messaging parameter is set automatically;
Step 5:When the terminal security deployed with devices after the completion of initialization is into working environment, phase is read after working on power The running parameter answered, the working condition of oneself is arranged to the state of Administrator(Pass through the initialization of digital certificate system What file was set);
Step 6:After messaging parameter and consistent security parameter between terminal security equipment and main website safeguard, when When network environment can be reached, the mode of operation of Administrator can be just realized between intercommunication entity, data are realized Intercommunication.
Pass through above development mode, it is possible to achieve " simplify configuration " to terminal security equipment is managed.Utilize this exploitation Pattern is by realizing initialization module, communication module, the exploitation of security module, it is possible to achieve efficient, right in simple system The management of terminal security equipment, and corresponding specification protocol can be customized according to the change user of application environment, increase function Module.Such a method adds the adaptability of terminal security equipment, simplifies the configuration management difficulty of terminal security equipment, drop The exploitation of low terminal security equipment and operation complexity, improve flexibility and the stability of terminal security equipment, more favorably In adaptability and reliability Work of the terminal device in complex work environment.
In actual applications, main website safety protection equipment by importing offline/export mode realizes and digital certificate system Interaction configuration information, main website safety protection equipment is generated after P10 information, offline importing digital diploma system by interface operation, Digital certificate system will Generate Certificate file, then led by offline mode and give main website safety protection equipment.Terminal security equipment Certificate file and configuration information also by offline mode import main website.When terminal security device power is working properly, set Start automatized script to realize the parameter setting of equipment, the security strategy of equipment is set, and firewall policy is set, tunnel is built Stand etc..Whole configuration process does not need any operation of user, fully achieves automatic configuration, it is to avoid what is operated is loaded down with trivial details. As long as initialization information is consistent with the security setting parameter of main website safety protection equipment, network up to when, it is possible to achieve with main website Safe and stable, the efficient communication of safety protection equipment.
As shown in figure 3, a kind of terminal security equipment simplify configuration management system, including:
Setup module 100, for setting digital certificate system, main website safety is automatically generated by the digital certificate system The digital certificate files of equipment and the parameter of IPSec VPN traffics;
Terminal device initialization module 200, the certificate for generating terminal security equipment by the digital certificate system File, completes the initialization of the terminal security equipment;
Communication strategy generation module 300, for importing terminal security apparatus figure certificate by the main website safety means And IPSec VPN traffic parameters, generate IPSec VPN traffic strategies;
Simplify configuration module 400, for when the terminal security device power works, reading IPSec VPN traffics ginseng Number, according to IPSec VPN traffic strategies, the IPSec set up between the terminal security equipment and the main website safety means VPN traffic, realizes the simplify configuration of the terminal security equipment.
Terminal security equipment simplify configuration management system of the present invention, sets digital certificate system, utilizes digital certificate system The certificate file of main website safety means is generated, terminal security equipment is initialized, the certificate text of terminal security equipment is generated Part and the IPSec VPN traffic parameters for determining terminal security equipment communication, send terminal security to main website safety means again afterwards The digital certificate files and IPSec VPN traffic parameters of equipment, when terminal security device power is operated, terminal security equipment root Configuration is completed according to the IPSec VPN traffics parameter of communication, according to the certificate file of itself and the certificate file of main website safety means Carry out the certificate verification based on digital certificate system, when certificate verification by when, set up main website safety means and set with terminal security Standby communication.The management method of above-mentioned simplify configuration, realizes that terminal security equipment is set safely with main website using digital certificate system Certificate verification between standby, it is not necessary to complicated page operation flow, simplifies configuration management flow and method, reduce due to The burden to hardware system that configuration management is brought, enhances the centralized management to whole network equipment, is demonstrate,proved furthermore with data Book system and digital authentication technology ensure the safety of main website safety means and terminal security equipment.
As shown in figure 4, in one of the embodiments, the terminal device initialization module 200 is specifically included:
Public and private key is to generation unit 220, for receiving the initialization requests that the digital certificate system is sent, generation with Machine Number Sequence, produces public and private key pair;
Transmitting element 240, for according to P10 solicited message of the public and private key to generation, and sends the P10 solicited messages To the digital certificate system;
Receiving unit 260, for receiving certificate file, the Yi Jiyue that the digital certificate system is produced according to P10 information The IPSec VPN traffics parameter set;
Initialization unit 280, for decompressing, verifying, preserving the certificate file of digital certificate system transmission and appoint IPSec VPN traffic parameters, complete the terminal security equipment initialization.
Embodiment described above only expresses the several embodiments of the present invention, and it describes more specific and detailed, but simultaneously Therefore the limitation to the scope of the claims of the present invention can not be interpreted as.It should be pointed out that for one of ordinary skill in the art For, without departing from the inventive concept of the premise, various modifications and improvements can be made, these belong to the guarantor of the present invention Protect scope.Therefore, the protection domain of patent of the present invention should be determined by the appended claims.

Claims (4)

1. a kind of terminal security equipment simplify configuration management method, it is characterised in that including step:
Set digital certificate system, by the digital certificate system automatically generate main website safety means digital certificate files and IPSec VPN traffic parameters;
The certificate file of terminal security equipment is generated by the digital certificate system, the initial of the terminal security equipment is completed Change;
Terminal security apparatus figure certificate and IPSec VPN traffic parameters are imported by the main website safety means, IPSec is generated VPN traffic strategy;
When the terminal security device power works, IPSec VPN traffic parameters are read, according to IPSec VPN traffic strategies, And the certificate file and the certificate file of the main website safety means according to the terminal security equipment carry out being based on the numeral The certificate verification of diploma system, when the certificate verification by when, set up the terminal security equipment and set safely with the main website IPSec VPN traffics between standby, realize the simplify configuration of the terminal security equipment;
Wherein, the IPSec VPN traffic parameters of generation are stored in the digital certificate system, according to what can be mutually distinguishable The communication that IPSec VPN traffic parameters are set up between the terminal security equipment and the main website safety means, the numeral card Book system recognizes whether the terminal security equipment being currently accessed is according to the certificate file of the terminal security equipment of generation Through completing simplify configuration or needing to carry out the terminal security equipment of simplify configuration.
2. terminal security equipment simplify configuration management method according to claim 1, it is characterised in that described by described Digital certificate system generates the certificate file of terminal security equipment, and the initialization for completing the terminal security equipment specifically includes step Suddenly:
The initialization requests that the digital certificate system is sent are received, random number sequence is generated, produces public and private key pair;
According to P10 solicited message of the public and private key to generation, and the P10 solicited messages are sent to the digital certificate system;
The IPSec VPN for receiving the digital certificate system certificate file produced according to P10 information and appointing lead to Believe parameter;
Decompression, checking, the certificate file for preserving digital certificate system transmission and the IPSec VPN traffic parameters appointed, are completed The terminal security equipment initialization.
3. a kind of terminal security equipment simplify configuration management system, it is characterised in that including:
Setup module, for setting digital certificate system, main website safety means are automatically generated by the digital certificate system Digital certificate files and IPSec VPN traffic parameters;
Terminal device initialization module, the certificate file for generating terminal security equipment by the digital certificate system is complete Into the initialization of the terminal security equipment;
Communication strategy generation module, for importing terminal security apparatus figure certificate and IPSec by the main website safety means VPN traffic parameter, generates IPSec VPN traffic strategies;
Simplify configuration module, for when the terminal security device power works, reading IPSec VPN traffic parameters, according to IPSec VPN traffic strategies, and certificate file and the certificate text of the main website safety means according to the terminal security equipment Part carry out the certificate verification based on the digital certificate system, when the certificate verification by when, set up the terminal security and set The standby IPSec VPN traffics between the main website safety means, realize the simplify configuration of the terminal security equipment;
Wherein, the IPSec VPN traffic parameters of generation are stored in the digital certificate system, according to what can be mutually distinguishable The communication that IPSec VPN traffic parameters are set up between the terminal security equipment and the main website safety means, the numeral card Book system recognizes whether the terminal security equipment being currently accessed is according to the certificate file of the terminal security equipment of generation Through completing simplify configuration or needing to carry out the terminal security equipment of simplify configuration.
4. terminal security equipment simplify configuration management system according to claim 3, it is characterised in that the terminal device Initialization module is specifically included:
Public and private key, for receiving the initialization requests that the digital certificate system is sent, generates random number sequence to generation unit Row, produce public and private key pair;
Transmitting element, for according to P10 solicited message of the public and private key to generation, and sends the P10 solicited messages to described Digital certificate system;
Receiving unit, for the institute for receiving the digital certificate system certificate file produced according to P10 information and appointing State IPSec VPN traffic parameters;
Initialization unit, for the IPSec for decompressing, verifying, preserve the certificate file of digital certificate system transmission and appoint VPN traffic parameter, completes the terminal security equipment initialization.
CN201410033245.4A 2014-01-23 2014-01-23 Terminal security equipment simplify configuration management method and system Active CN103795719B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410033245.4A CN103795719B (en) 2014-01-23 2014-01-23 Terminal security equipment simplify configuration management method and system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410033245.4A CN103795719B (en) 2014-01-23 2014-01-23 Terminal security equipment simplify configuration management method and system

Publications (2)

Publication Number Publication Date
CN103795719A CN103795719A (en) 2014-05-14
CN103795719B true CN103795719B (en) 2017-09-19

Family

ID=50671005

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410033245.4A Active CN103795719B (en) 2014-01-23 2014-01-23 Terminal security equipment simplify configuration management method and system

Country Status (1)

Country Link
CN (1) CN103795719B (en)

Families Citing this family (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US10419421B2 (en) * 2016-08-11 2019-09-17 Big Switch Networks, Inc. Systems and methods to securely construct a network fabric

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102882859A (en) * 2012-09-13 2013-01-16 广东电网公司电力科学研究院 Security protection method based on public network data transmission information system
CN102904731A (en) * 2012-09-11 2013-01-30 中国电力科学研究院 Mobile device credible access method based on digital certificate
CN103138938A (en) * 2013-03-22 2013-06-05 中金金融认证中心有限公司 SM2 certificate application method based on cryptographic service provider (CSP)
CN103532961A (en) * 2013-10-21 2014-01-22 国家电网公司 Method and system for authenticating identity of power grid website based on trusted crypto modules

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102904731A (en) * 2012-09-11 2013-01-30 中国电力科学研究院 Mobile device credible access method based on digital certificate
CN102882859A (en) * 2012-09-13 2013-01-16 广东电网公司电力科学研究院 Security protection method based on public network data transmission information system
CN103138938A (en) * 2013-03-22 2013-06-05 中金金融认证中心有限公司 SM2 certificate application method based on cryptographic service provider (CSP)
CN103532961A (en) * 2013-10-21 2014-01-22 国家电网公司 Method and system for authenticating identity of power grid website based on trusted crypto modules

Also Published As

Publication number Publication date
CN103795719A (en) 2014-05-14

Similar Documents

Publication Publication Date Title
CN107980216B (en) Communication method, device, system, electronic equipment and computer readable storage medium
EP3232634B1 (en) Identity authentication method and device
CN103118027B (en) The method of TLS passage is set up based on the close algorithm of state
JP2020064668A (en) Network connection automatization
CN109936547A (en) Identity identifying method, system and calculating equipment
CN105592003B (en) A kind of cross-domain single login method and system based on notice
CN105873031B (en) Distributed unmanned plane cryptographic key negotiation method based on credible platform
CN103685187B (en) Method for switching SSL (Secure Sockets Layer) authentication mode on demands to achieve resource access control
CN102255920A (en) Method and device for sending VPN (Virtual Private Network) configuration information
CN111131416B (en) Service providing method and device, storage medium and electronic device
CN106169952B (en) A kind of authentication method that internet Key Management Protocol is negotiated again and device
WO2015143651A1 (en) Network function virtualization-based certificate configuration method, apparatus and system
WO2010017281A2 (en) Device manager repository
CN111050319A (en) Captive portal system, method and apparatus
CN102984045B (en) The cut-in method and Virtual Private Network client of Virtual Private Network
CN102957678B (en) Certification IP telephone machine and consult the method for voice domain, system and equipment
CN104780069A (en) SDN-oriented self-configuration method and system for communication channel between control layer and data layer
CN110024347A (en) Safety building network structure
CN110401641A (en) User authen method, device, electronic equipment
CN103716280B (en) data transmission method, server and system
CN106375123A (en) Configuration method and device for 802.1X authentication
CN113766496B (en) Cross-platform binding method and system for intelligent equipment and related equipment
CN111221665A (en) Container remote login method and device based on browser
CN104038931A (en) LTE (Long Term Evolution) network based power distribution and utilization communication system and communication method thereof
WO2012163159A1 (en) Method and device for unifying corporate network aaa server and public network aaa server

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CP01 Change in the name or title of a patent holder

Address after: 510080 water Donggang 8, Dongfeng East Road, Yuexiu District, Guangzhou, Guangdong.

Patentee after: ELECTRIC POWER RESEARCH INSTITUTE, GUANGDONG POWER GRID CO., LTD.

Address before: 510080 water Donggang 8, Dongfeng East Road, Yuexiu District, Guangzhou, Guangdong.

Patentee before: Electrical Power Research Institute of Guangdong Power Grid Corporation

CP01 Change in the name or title of a patent holder