CN104468560A - 网络保密数据明文的采集方法及系统 - Google Patents
网络保密数据明文的采集方法及系统 Download PDFInfo
- Publication number
- CN104468560A CN104468560A CN201410721300.9A CN201410721300A CN104468560A CN 104468560 A CN104468560 A CN 104468560A CN 201410721300 A CN201410721300 A CN 201410721300A CN 104468560 A CN104468560 A CN 104468560A
- Authority
- CN
- China
- Prior art keywords
- acquisition system
- data acquisition
- server end
- client
- certificate
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Granted
Links
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L69/00—Network arrangements, protocols or services independent of the application payload and not provided for in the other groups of this subclass
- H04L69/16—Implementation or adaptation of Internet protocol [IP], of transmission control protocol [TCP] or of user datagram protocol [UDP]
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/30—Network architectures or network communication protocols for network security for supporting lawful interception, monitoring or retaining of communications or communication related information
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0281—Proxies
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
- H04L63/045—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload wherein the sending and receiving network entities apply hybrid encryption, i.e. combination of symmetric and asymmetric encryption
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/04—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks
- H04L63/0428—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload
- H04L63/0464—Network architectures or network communication protocols for network security for providing a confidential data exchange among entities communicating through data packet networks wherein the data content is protected, e.g. by encrypting or encapsulating the payload using hop-by-hop encryption, i.e. wherein an intermediate entity decrypts the information and re-encrypts it before forwarding it
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1408—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic by monitoring network traffic
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/08—Key distribution or management, e.g. generation, sharing or updating, of cryptographic keys or passwords
- H04L9/0816—Key establishment, i.e. cryptographic processes or cryptographic protocols whereby a shared secret becomes available to two or more parties, for subsequent use
- H04L9/0819—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s)
- H04L9/0825—Key transport or distribution, i.e. key establishment techniques where one party creates or otherwise obtains a secret value, and securely transfers it to the other(s) using asymmetric-key encryption or public key infrastructure [PKI], e.g. key signature or public key certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L9/00—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
- H04L9/14—Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols using a plurality of keys or algorithms
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L2209/00—Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
- H04L2209/76—Proxy, i.e. using intermediary entity to perform cryptographic operations
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0823—Network architectures or network communication protocols for network security for authentication of entities using certificates
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/16—Implementing security features at a particular protocol layer
- H04L63/168—Implementing security features at a particular protocol layer above the transport layer
Landscapes
- Engineering & Computer Science (AREA)
- Computer Security & Cryptography (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Technology Law (AREA)
- Storage Device Security (AREA)
- Computer And Data Communications (AREA)
Abstract
Description
Claims (5)
Priority Applications (4)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410721300.9A CN104468560B (zh) | 2014-12-02 | 2014-12-02 | 网络保密数据明文的采集方法及系统 |
PCT/CN2015/074079 WO2016086546A1 (zh) | 2014-12-02 | 2015-03-12 | 网络保密数据明文的采集方法及系统 |
EP15864415.3A EP3232632A4 (en) | 2014-12-02 | 2015-03-12 | Method and system for acquiring plaintext of network secret data |
JP2017529339A JP2017536776A (ja) | 2014-12-02 | 2015-03-12 | ネットワーク機密データの平文の収集方法及びシステム |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN201410721300.9A CN104468560B (zh) | 2014-12-02 | 2014-12-02 | 网络保密数据明文的采集方法及系统 |
Publications (2)
Publication Number | Publication Date |
---|---|
CN104468560A true CN104468560A (zh) | 2015-03-25 |
CN104468560B CN104468560B (zh) | 2017-09-19 |
Family
ID=52913932
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN201410721300.9A Active CN104468560B (zh) | 2014-12-02 | 2014-12-02 | 网络保密数据明文的采集方法及系统 |
Country Status (4)
Country | Link |
---|---|
EP (1) | EP3232632A4 (zh) |
JP (1) | JP2017536776A (zh) |
CN (1) | CN104468560B (zh) |
WO (1) | WO2016086546A1 (zh) |
Cited By (12)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN104683359A (zh) * | 2015-03-27 | 2015-06-03 | 成都三零瑞通移动通信有限公司 | 一种安全通道建立方法及其数据保护方法和安全通道秘钥更新方法 |
CN105429962A (zh) * | 2015-11-03 | 2016-03-23 | 清华大学 | 一种通用的面向加密数据的中间网络服务构建方法与体系 |
CN106161363A (zh) * | 2015-04-03 | 2016-11-23 | 上海庆科信息技术有限公司 | 一种ssl连接建立的方法及系统 |
CN106941401A (zh) * | 2017-03-23 | 2017-07-11 | 深信服科技股份有限公司 | 加速设备以及基于加速设备获取会话秘钥的方法 |
CN107306260A (zh) * | 2016-04-22 | 2017-10-31 | 中国科学院声学研究所 | 一种网络保密数据采集系统ssl/tls会话重用的支持方法 |
WO2017215582A1 (zh) * | 2016-06-15 | 2017-12-21 | 华为技术有限公司 | 加密内容检测的方法和设备 |
CN110190955A (zh) * | 2019-05-27 | 2019-08-30 | 新华三信息安全技术有限公司 | 基于安全套接层协议认证的信息处理方法及装置 |
CN110336666A (zh) * | 2019-07-17 | 2019-10-15 | 武汉信安珞珈科技有限公司 | 一种增强ssl/tls协议中随机数随机性的方法 |
CN110830431A (zh) * | 2019-07-25 | 2020-02-21 | 杭州美创科技有限公司 | SQL Server数据库密码托管方法 |
CN112035851A (zh) * | 2020-07-22 | 2020-12-04 | 北京中安星云软件技术有限公司 | 一种基于ssl的mysql数据库审计方法 |
CN113158226A (zh) * | 2021-03-05 | 2021-07-23 | 北京中安星云软件技术有限公司 | 基于SSL连接PostGreSQL数据库审计的实现方法及系统 |
CN114139192A (zh) * | 2022-02-07 | 2022-03-04 | 奇安信科技集团股份有限公司 | 加密流量处理方法、装置、电子设备、介质及程序 |
Families Citing this family (2)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN113347010B (zh) * | 2021-08-05 | 2021-11-05 | 深圳市财富趋势科技股份有限公司 | 基于ssl-tls协议的双向认证方法、系统 |
CN115314214B (zh) * | 2022-06-17 | 2024-10-15 | 安徽科大国创软件科技有限公司 | 一种基于支持硬件加速国密算法的tls协议实现方法 |
Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20080060055A1 (en) * | 2006-08-29 | 2008-03-06 | Netli, Inc. | System and method for client-side authenticaton for secure internet communications |
CN101546366A (zh) * | 2009-02-11 | 2009-09-30 | 广州杰赛科技股份有限公司 | 数字版权管理系统及管理方法 |
CN101567784A (zh) * | 2008-04-21 | 2009-10-28 | 成都市华为赛门铁克科技有限公司 | 一种获取密钥的方法、系统和设备 |
CN102082796A (zh) * | 2011-01-20 | 2011-06-01 | 北京融易通信息技术有限公司 | 一种基于http的信道加密方法、信道简化加密方法及系统 |
Family Cites Families (6)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20100119069A1 (en) * | 2007-05-31 | 2010-05-13 | Panasonic Corporation | Network relay device, communication terminal, and encrypted communication method |
US8843750B1 (en) * | 2011-01-28 | 2014-09-23 | Symantec Corporation | Monitoring content transmitted through secured communication channels |
US9191394B2 (en) * | 2012-02-08 | 2015-11-17 | Microsoft Technology Licensing, Llc | Protecting user credentials from a computing device |
US9565180B2 (en) * | 2012-09-28 | 2017-02-07 | Symantec Corporation | Exchange of digital certificates in a client-proxy-server network configuration |
US9021563B2 (en) * | 2013-01-02 | 2015-04-28 | Htc Corporation | Accessory interface system |
KR101448866B1 (ko) * | 2013-01-11 | 2014-10-13 | 주식회사 시큐아이 | 웹 보안 프로토콜에 따른 암호화 데이터를 복호화하는 보안 장치 및 그것의 동작 방법 |
-
2014
- 2014-12-02 CN CN201410721300.9A patent/CN104468560B/zh active Active
-
2015
- 2015-03-12 EP EP15864415.3A patent/EP3232632A4/en not_active Withdrawn
- 2015-03-12 WO PCT/CN2015/074079 patent/WO2016086546A1/zh active Application Filing
- 2015-03-12 JP JP2017529339A patent/JP2017536776A/ja active Pending
Patent Citations (4)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
US20080060055A1 (en) * | 2006-08-29 | 2008-03-06 | Netli, Inc. | System and method for client-side authenticaton for secure internet communications |
CN101567784A (zh) * | 2008-04-21 | 2009-10-28 | 成都市华为赛门铁克科技有限公司 | 一种获取密钥的方法、系统和设备 |
CN101546366A (zh) * | 2009-02-11 | 2009-09-30 | 广州杰赛科技股份有限公司 | 数字版权管理系统及管理方法 |
CN102082796A (zh) * | 2011-01-20 | 2011-06-01 | 北京融易通信息技术有限公司 | 一种基于http的信道加密方法、信道简化加密方法及系统 |
Cited By (22)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN104683359A (zh) * | 2015-03-27 | 2015-06-03 | 成都三零瑞通移动通信有限公司 | 一种安全通道建立方法及其数据保护方法和安全通道秘钥更新方法 |
CN104683359B (zh) * | 2015-03-27 | 2017-11-21 | 成都三零瑞通移动通信有限公司 | 一种安全通道建立方法及其数据保护方法和安全通道秘钥更新方法 |
CN106161363A (zh) * | 2015-04-03 | 2016-11-23 | 上海庆科信息技术有限公司 | 一种ssl连接建立的方法及系统 |
CN106161363B (zh) * | 2015-04-03 | 2020-04-17 | 阿里云计算有限公司 | 一种ssl连接建立的方法及系统 |
CN105429962B (zh) * | 2015-11-03 | 2018-10-19 | 清华大学 | 一种通用的面向加密数据的中间网络服务构建方法与体系 |
CN105429962A (zh) * | 2015-11-03 | 2016-03-23 | 清华大学 | 一种通用的面向加密数据的中间网络服务构建方法与体系 |
CN107306260A (zh) * | 2016-04-22 | 2017-10-31 | 中国科学院声学研究所 | 一种网络保密数据采集系统ssl/tls会话重用的支持方法 |
CN107306260B (zh) * | 2016-04-22 | 2020-02-04 | 中国科学院声学研究所 | 一种网络保密数据采集系统ssl/tls会话重用的支持方法 |
CN107517183B (zh) * | 2016-06-15 | 2021-02-12 | 华为技术有限公司 | 加密内容检测的方法和设备 |
CN107517183A (zh) * | 2016-06-15 | 2017-12-26 | 华为技术有限公司 | 加密内容检测的方法和设备 |
WO2017215582A1 (zh) * | 2016-06-15 | 2017-12-21 | 华为技术有限公司 | 加密内容检测的方法和设备 |
CN106941401A (zh) * | 2017-03-23 | 2017-07-11 | 深信服科技股份有限公司 | 加速设备以及基于加速设备获取会话秘钥的方法 |
CN106941401B (zh) * | 2017-03-23 | 2021-06-04 | 深信服科技股份有限公司 | 加速设备以及基于加速设备获取会话秘钥的方法 |
CN110190955B (zh) * | 2019-05-27 | 2022-05-24 | 新华三信息安全技术有限公司 | 基于安全套接层协议认证的信息处理方法及装置 |
CN110190955A (zh) * | 2019-05-27 | 2019-08-30 | 新华三信息安全技术有限公司 | 基于安全套接层协议认证的信息处理方法及装置 |
CN110336666A (zh) * | 2019-07-17 | 2019-10-15 | 武汉信安珞珈科技有限公司 | 一种增强ssl/tls协议中随机数随机性的方法 |
CN110336666B (zh) * | 2019-07-17 | 2022-08-05 | 武汉信安珞珈科技有限公司 | 一种增强ssl/tls协议中随机数随机性的方法 |
CN110830431A (zh) * | 2019-07-25 | 2020-02-21 | 杭州美创科技有限公司 | SQL Server数据库密码托管方法 |
CN112035851A (zh) * | 2020-07-22 | 2020-12-04 | 北京中安星云软件技术有限公司 | 一种基于ssl的mysql数据库审计方法 |
CN113158226A (zh) * | 2021-03-05 | 2021-07-23 | 北京中安星云软件技术有限公司 | 基于SSL连接PostGreSQL数据库审计的实现方法及系统 |
CN114139192A (zh) * | 2022-02-07 | 2022-03-04 | 奇安信科技集团股份有限公司 | 加密流量处理方法、装置、电子设备、介质及程序 |
CN114139192B (zh) * | 2022-02-07 | 2022-07-05 | 奇安信科技集团股份有限公司 | 加密流量处理方法、装置、电子设备、介质及程序 |
Also Published As
Publication number | Publication date |
---|---|
WO2016086546A1 (zh) | 2016-06-09 |
JP2017536776A (ja) | 2017-12-07 |
EP3232632A1 (en) | 2017-10-18 |
EP3232632A4 (en) | 2017-11-15 |
CN104468560B (zh) | 2017-09-19 |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
CN104468560A (zh) | 网络保密数据明文的采集方法及系统 | |
US20240098071A1 (en) | Cloud storage using encryption gateway with certificate authority identification | |
US11626979B2 (en) | ECDHE key exchange for mutual authentication using a key server | |
CN106941401B (zh) | 加速设备以及基于加速设备获取会话秘钥的方法 | |
WO2017045552A1 (zh) | 一种在ssl或tls通信中加载数字证书的方法和装置 | |
CN104219217B (zh) | 安全关联协商方法、设备和系统 | |
EP3208989A1 (en) | Secure shell (ssh2) protocol data collection method and device | |
CN102082796A (zh) | 一种基于http的信道加密方法、信道简化加密方法及系统 | |
CN109891423A (zh) | 使用多个控制机构的数据加密控制 | |
CN103036880A (zh) | 网络信息传输方法、设备及系统 | |
US10630466B1 (en) | Apparatus and method for exchanging cryptographic information with reduced overhead and latency | |
TW201537937A (zh) | 統一身份認證平臺及認證方法 | |
US8281122B2 (en) | Generation and/or reception, at least in part, of packet including encrypted payload | |
EP3944554A1 (en) | Rollover of encryption keys in a packet-compatible network | |
CA3066728A1 (en) | Cloud storage using encryption gateway with certificate authority identification | |
CN112422560A (zh) | 基于安全套接层的轻量级变电站安全通信方法及系统 | |
CN104320329A (zh) | 开放、不可信互联网环境下安全即时通信方法及系统 | |
US10218682B1 (en) | Secure network protocol cryptographic processing | |
WO2024021958A1 (zh) | 通信处理方法及系统、客户端、通信服务端和监管服务端 | |
KR101448866B1 (ko) | 웹 보안 프로토콜에 따른 암호화 데이터를 복호화하는 보안 장치 및 그것의 동작 방법 | |
CN105991622A (zh) | 一种报文验证方法及设备 | |
CN105791285A (zh) | 一种支持iec62351加密mms报文在线分析方法 | |
Ćurguz | Vulnerabilities of the SSL/TLS Protocol | |
CN116366262A (zh) | 双SSL证书web服务器设置方法和web服务系统 | |
CN113708928B (zh) | 一种边缘云通信方法及相关装置 |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
C06 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
GR01 | Patent grant | ||
GR01 | Patent grant | ||
TR01 | Transfer of patent right |
Effective date of registration: 20210813 Address after: Room 1601, 16th floor, East Tower, Ximei building, No. 6, Changchun Road, high tech Industrial Development Zone, Zhengzhou, Henan 450001 Patentee after: Zhengzhou xinrand Network Technology Co.,Ltd. Address before: 100190, No. 21 West Fourth Ring Road, Beijing, Haidian District Patentee before: INSTITUTE OF ACOUSTICS, CHINESE ACADEMY OF SCIENCES Effective date of registration: 20210813 Address after: 100190, No. 21 West Fourth Ring Road, Beijing, Haidian District Patentee after: INSTITUTE OF ACOUSTICS, CHINESE ACADEMY OF SCIENCES Address before: 100190, No. 21 West Fourth Ring Road, Beijing, Haidian District Patentee before: INSTITUTE OF ACOUSTICS, CHINESE ACADEMY OF SCIENCES Patentee before: BEIJING INTELLIX TECHNOLOGIES Co.,Ltd. |
|
TR01 | Transfer of patent right |