CN107105033A - Cloud application access method, cloud proxy server and cloud application access system - Google Patents

Cloud application access method, cloud proxy server and cloud application access system Download PDF

Info

Publication number
CN107105033A
CN107105033A CN201710265867.3A CN201710265867A CN107105033A CN 107105033 A CN107105033 A CN 107105033A CN 201710265867 A CN201710265867 A CN 201710265867A CN 107105033 A CN107105033 A CN 107105033A
Authority
CN
China
Prior art keywords
cloud application
cloud
user
data
server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN201710265867.3A
Other languages
Chinese (zh)
Other versions
CN107105033B (en
Inventor
黄凌志
刘敬良
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Qax Technology Group Inc
Original Assignee
Beijing Qianxin Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qianxin Technology Co Ltd filed Critical Beijing Qianxin Technology Co Ltd
Priority to CN201710265867.3A priority Critical patent/CN107105033B/en
Publication of CN107105033A publication Critical patent/CN107105033A/en
Application granted granted Critical
Publication of CN107105033B publication Critical patent/CN107105033B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/56Provisioning of proxy services
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/30Managing network names, e.g. use of aliases or nicknames
    • H04L61/3015Name registration, generation or assignment
    • H04L61/3025Domain name generation or assignment
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L61/00Network arrangements, protocols or services for addressing or naming
    • H04L61/45Network directories; Name-to-address mapping
    • H04L61/4505Network directories; Name-to-address mapping using standardised directories; using standardised directory access protocols
    • H04L61/4511Network directories; Name-to-address mapping using standardised directories; using standardised directory access protocols using domain name system [DNS]

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

System is accessed the invention discloses a kind of cloud application access method, cloud proxy server and cloud application.Wherein, the cloud proxy server that method is disposed by high in the clouds is performed, and cloud proxy server is used to manage multiple client proxies for being deployed in client;Method includes:It is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark that user, which is received, by accessing the cloud application access request that cloud application reference address is initiated, cloud application reference address;Cloud application reference address is parsed, determines that the corresponding client proxy of customer ID and cloud application identify corresponding cloud application server;By being communicated with client proxy, access of the user to cloud application is realized.By presetting publicly-owned domain name and the customer ID belonging to user, cloud application mark structure cloud application reference address, enterprise customer is no longer needed specific registration private domain name, be that enterprise customer saves lower deployment cost.

Description

Cloud application access method, cloud proxy server and cloud application access system
Technical field
The present invention relates to computer software fields, and in particular to a kind of cloud application access method, cloud proxy server and cloud Using the system of access.
Background technology
Original traditional software must be changed into by cloud application in the occupation mode of " locally-installed, local computing " " take i.e. With " service, connected by internet or LAN and manipulate remote server cluster, finishing service logic or processor active task, Help enterprise to greatly reduce use cost, and improve operating efficiency.
But in the prior art enterprise when using cloud application, it is necessary to set its corresponding reference address exclusively for cloud application, I.e. enterprise will buy and register the private domain name that special enterprise uses for cloud application, and then by way of accessing private domain name Access cloud application.This make it that the lower deployment cost that enterprise spends when accessing cloud application is higher.
The content of the invention
In view of the above problems, it is proposed that the present invention so as to provide one kind overcome above mentioned problem or at least in part solve on Cloud application access method, cloud proxy server and the cloud application for stating problem access system.
According to an aspect of the invention, there is provided a kind of cloud application access method, the cloud that method is disposed by high in the clouds is acted on behalf of Server is performed, and cloud proxy server is used to manage multiple client proxies for being deployed in client;Method includes:
User is received by accessing the cloud application access request that cloud application reference address is initiated, cloud application reference address is root It is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark;
Cloud application reference address is parsed, the corresponding client proxy of customer ID and cloud application mark is determined Know corresponding cloud application server;
By being communicated with client proxy, access of the user to cloud application is realized.
According to another aspect of the present invention there is provided a kind of cloud proxy server, cloud proxy server is used to manage multiple It is deployed in the client proxy of client;Cloud proxy server includes:
Request module is received, suitable for receiving user by accessing the cloud application access request that cloud application reference address is initiated, Cloud application reference address is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark;
Parsing module, suitable for being parsed to cloud application reference address, determines the corresponding client proxy services of customer ID Device and cloud application identify corresponding cloud application server;
Access modules, suitable for by being communicated with client proxy, realizing access of the user to cloud application.
Cloud application access method, cloud proxy server and the cloud application provided according to the present invention accesses system, by default Publicly-owned domain name builds cloud application reference address with the customer ID belonging to user, cloud application mark, enterprise customer is no longer needed Specific registration private domain name, is that enterprise customer saves lower deployment cost.Meanwhile, can by the parsing to cloud application reference address Accurately to determine that the corresponding client proxy of customer ID and cloud application identify corresponding cloud application server, so that Conveniently realize access of the user to cloud application.The process that the present invention accesses whole cloud application is simple and easy to operate, and helps enterprise User saves cost.
Described above is only the general introduction of technical solution of the present invention, in order to better understand the technological means of the present invention, And can be practiced according to the content of specification, and in order to allow above and other objects of the present invention, feature and advantage can Become apparent, below especially exemplified by the embodiment of the present invention.
Brief description of the drawings
By reading the detailed description of hereafter preferred embodiment, various other advantages and benefit is common for this area Technical staff will be clear understanding.Accompanying drawing is only used for showing the purpose of preferred embodiment, and is not considered as to the present invention Limitation.And in whole accompanying drawing, identical part is denoted by the same reference numerals.In the accompanying drawings:
Fig. 1 shows the flow chart of cloud application access method according to an embodiment of the invention;
Fig. 2 shows the flow chart of cloud application access method in accordance with another embodiment of the present invention;
Fig. 3 shows the functional block diagram of cloud proxy server according to an embodiment of the invention;
Fig. 4 shows the functional block diagram of cloud proxy server in accordance with another embodiment of the present invention;
Fig. 5 shows that cloud application according to an embodiment of the invention accesses the configuration diagram of system.
Embodiment
The exemplary embodiment of the disclosure is more fully described below with reference to accompanying drawings.Although showing the disclosure in accompanying drawing Exemplary embodiment, it being understood, however, that may be realized in various forms the disclosure without should be by embodiments set forth here Limited.On the contrary, these embodiments are provided to facilitate a more thoroughly understanding of the present invention, and can be by the scope of the present disclosure Complete conveys to those skilled in the art.
Fig. 1 shows the flow chart of cloud application access method according to an embodiment of the invention.As shown in figure 1, cloud should Following steps are specifically included with access method:
Step S101, receives user by accessing the cloud application access request that cloud application reference address is initiated.
User's reference address related by accessing cloud application, initiates the access request to cloud application.Wherein, by by cloud Associate setting in deployment using reference address and cloud application, asked so as to the access initiated easily and fast to cloud application Ask.But in the prior art, it is typically necessary and its corresponding private domain name is set for cloud application, facilitates user to conduct interviews.So So that needing higher into original maintenance.
Therefore, customer ID, cloud of the cloud application reference address according to belonging to default publicly-owned domain name and user in the present embodiment Application identities are built-up.Wherein, preset the publicly-owned secure domain name that publicly-owned domain name is used using having registered, it is not necessary to again for Cloud application sets up special private domain name.Customer ID belonging to user is according to different user-defined different client's marks Know, convenient that user is distinguished, the customer ID belonging to the user must be unique, and the customer ID belonging to different users is not Together.Both it ensure that user's was unique, but conveniently the customer ID according to belonging to user finds corresponding client related client's generation Manage server etc..Cloud application is designated different cloud applications using different marks, can be set up such as according to the title of cloud application Salesforce, github etc.., can be by the client belonging to default publicly-owned domain name, user when building cloud application reference address Mark and cloud application mark are arranged according to specified order, and centre is configured to cloud application by the connection of " " symbol and accessed Address.
When user accesses cloud application, its corresponding cloud can be initiated by accessing cloud application reference address in a browser Using access.
Step S102, is parsed to cloud application reference address, determine the corresponding client proxy of customer ID with And cloud application identifies corresponding cloud application server.
After the access request for receiving cloud application, cloud application reference address is parsed.By cloud application reference address solution Analyse as the customer ID belonging to default publicly-owned domain name, user and cloud application mark.Customer ID according to belonging to user, can be true Determine the corresponding client proxy of customer ID.Corresponding cloud application server is determined according to cloud application mark.It is determined that visitor When family proxy server and cloud application server, customer ID corresponding client's generation can be determined by default corresponding relation Manage server and cloud application identifies corresponding cloud application server.
Step S103, by being communicated with client proxy, realizes access of the user to cloud application.
It it is determined that after client proxy, can use such as tunnel tunnel agreements, get through outer net and taken with customer's representative The connection of Intranet where business device so that outer net can also connect client proxy, be led to client proxy Letter.Such as data are encrypted by client proxy, operation is decrypted, and the data after encryption are sent to cloud application Server, or the data that cloud application server is sent are sent to user etc. by client proxy after decryption, real Existing access of the user to cloud application.
In the present embodiment, the cloud proxy server disposed by high in the clouds performs each step of the above.Its medium cloud is acted on behalf of Server can be also used for managing multiple client proxies for being deployed in client.
According to the cloud application access method that provides of the present invention, by preset publicly-owned domain name and the customer ID belonging to user, Cloud application mark builds cloud application reference address, enterprise customer is no longer needed specific registration private domain name, is enterprise customer's section Lower deployment cost is saved.Meanwhile, by the parsing to cloud application reference address, it can accurately determine the corresponding client of customer ID Proxy server and cloud application identify corresponding cloud application server, so as to conveniently realize access of the user to cloud application.This The process that invention accesses whole cloud application is simple and easy to operate, and helps enterprise customer to save cost.
Fig. 2 shows the flow chart of cloud application access method in accordance with another embodiment of the present invention.As shown in Fig. 2 cloud Following steps are specifically included using access method:
Step S201, receive client proxy send carryings customer ID be used for apply cloud application service recognize Card request.
To make user when accessing cloud application, in that context it may be convenient to which initiating cloud application access by cloud application reference address please Ask, and realize access of the user to cloud application.Need in advance to be authenticated the client proxy of client deployment.
The certification request for being used to apply for cloud application service for the carrying customer ID that client proxy is sent is received, its In, the transmission certification request first typically set in client proxy.The customer ID carried in certification request is user Identity, it must be unique.If the customer ID has been certified request, certification request failure is taken, it is necessary to resend Apply for the certification request of cloud application service again with not authenticated customer ID.If customer ID is not authenticated, certification please Hope for success work(.
Step S202, cloud application reference address is built according to default publicly-owned domain name and customer ID, cloud application mark.
After certification request success, according to customer ID and the default publicly-owned domain name existed and the cloud application to be used Corresponding cloud application identifies to build cloud application reference address.
When building cloud application reference address, the order of publicly-owned domain name can be identified and preset according to customer ID, cloud application Built.Such as customer ID is qianxin, and cloud application is designated salesforce, presets publicly-owned domain name and is 360casb.com, cloud application reference address is:qianxin.salesforce.com.360casb.com.
Step S203, client proxy is fed back to by cloud application reference address.
The cloud application reference address of structure is also fed back to client proxy simultaneously, so that client proxy is remembered Cloud application reference address is recorded, the traffic operations such as follow-up checking are carried out to it.
Alternatively, the cloud agency service that version used in client proxy of the configuration in client may be with high in the clouds Device version is different, it is necessary to carry out version synchronization to client proxy after version updating.In version synchronization, with client Version synchronization detection can be carried out using version synchronization heartbeat mechanism between proxy server.The version synchronization is detected as non real-time Property version synchronization detection.By setting synchronization of time intenals, the detection of version synchronization comparison is such as carried out in default time interval, If version synchronization testing result is inconsistent, the data pull sent according to client proxy is asked, and is taken with customer's representative Business device sets up data syn-chronization passage, so that client proxy carries out version synchronization processing.The synchronization process of version can be adopted Enter row data communication with UDP (User Datagram Protocol, UDP), its resource consumption is small, processing speed Degree is fast.TLV forms (Type types, Lenght length, Value values) can be used during data transfer.After version synchronization processing, Version is revised as to the version information after synchronization.If user thinks that existing customer proxy server version is stable, normal operation, no When needing to carry out version synchronization processing, it can also be handled by configuring nonsynchronous option without version synchronization.Recognize in user To need to carry out during version synchronization processing, synchronous option can be being reconfigured, perform version synchronization detection.
Step S204, receives user by accessing the cloud application access request that cloud application reference address is initiated.
After cloud application reference address is built, the cloud application reference address that user can be built by accessing initiates cloud application Access.When user is by accessing the cloud application access request that cloud application reference address is initiated, the cloud application access request is received.
Step S205, is parsed to cloud application reference address, determine the corresponding client proxy of customer ID with And cloud application identifies corresponding cloud application server.
Cloud application reference address is parsed, cloud application reference address is resolved into default publicly-owned domain name, belonging to user Customer ID and cloud application mark.The certification request that client proxy carries customer ID by sending is recognized Card, therefore corresponding client proxy can be determined according to customer ID.The specific cloud application of cloud application mark correspondence, root Corresponding cloud application server is determined according to cloud application mark.As cloud application reference address is: qianxin.salesforce.com.360casb.com.The cloud application reference address is parsed, obtaining customer ID is Qianxin, cloud application is designated salesforce, and it is 360casb.com to preset publicly-owned domain name, so that it is determined that qianxin correspondences Client proxy and the corresponding cloud application servers of salesforce.
Step S206, by being communicated with client proxy, realizes access of the user to cloud application.
Realize that access of the user to cloud application can include following situation:
When cloud application access request includes logging request, the logging request is sent to cloud application server first, logging in please User name, the password such as logged in can be included in asking.After cloud application server authentication login, receive cloud application server and return The login response returned, and return to the login response to user.Cloud application server is tested according to the user name of login, password Card, if checking is logined successfully, receives the login response logined successfully that cloud application server is returned, and log in into user's return The login response of work(, points out User logs in success.Conversely, the login response for the login failure that cloud application server is returned is received, And the login response of login failure is returned to user, point out login failed for user.
When cloud application access request includes data upload requests, data to be uploaded are sent to client proxy first. Now, due to having determined that client proxy, Intranet user directly can send to be uploaded to client proxy Data, external user can get through outer net and the company of the Intranet where client proxy by such as tunnel tunnel agreements Connect so that outer net can also connect client proxy, data to be uploaded are sent to client proxy.Customer's representative takes Business device can to sensitive data in data to be uploaded, need the data such as private data to be encrypted, the processing such as replace after return again to and add Data after close, replacement Treatment.Corresponding cloud application server, which is identified, to cloud application uploads treating after these encryption, replacement Treatments Upload data.The upload data answering that cloud application server is returned is received, and upload data answering is returned to user.Pass through client Proxy server such as is encrypted, replaced at the processing to data to be uploaded, to ensure the safety of data.Further, customer's representative takes Being engaged in device can also be according to the cloud application reference address of record, the further cloud application reference address in checking cloud application access request It is whether consistent etc., to ensure the safety of data to be uploaded.
When cloud application access request includes data access request, first, corresponding cloud application server is identified to cloud application Data access request is sent, and receives the corresponding access data of data access request of cloud application server return.Access data It is middle exist encryption or displacement after data when, to client proxy send access data, for client proxy pair Data are accessed to be decrypted, return after replacement Treatment.The access data after decryption, replacement Treatment are returned to user, so that user It can be seen that really accessing data.
Specific access of the user to cloud application above, what can be included according to cloud application access request specifically please Ask, realize the access of different cloud applications.
The cloud application access method provided according to the present invention, receives the carrying customer ID that client proxy is sent Certification request for applying for cloud application service, cloud application is built according to default publicly-owned domain name and customer ID, cloud application mark Reference address.By presetting publicly-owned domain name and the customer ID belonging to user, cloud application mark structure cloud application reference address, make Enterprise customer no longer needs specific registration private domain name, is that enterprise customer saves lower deployment cost.Meanwhile, by visiting cloud application The parsing of address is asked, can accurately determine that the corresponding client proxy of customer ID and cloud application identify corresponding cloud Application server, so as to conveniently realize access of the user to cloud application.When being related to data upload or data access request, to visitor Family proxy server sends related data, so that client proxy is encrypted/replaced to data or decryption/displacement etc. Reason, to ensure the safety of data, prevents leakage of data.The process that whole cloud application is accessed is simple and easy to operate, safe, and side Enterprise customer is helped to save cost.
Fig. 3 shows the functional block diagram of cloud proxy server according to an embodiment of the invention.As shown in figure 3, cloud generation Reason server specifically includes following module:
Request module 310 is received, is asked suitable for receiving user by accessing the cloud application access that cloud application reference address is initiated Ask.
When user accesses cloud application, its corresponding cloud can be initiated by accessing cloud application reference address in a browser Using access.Receive request module 310 and receive user by accessing the cloud application access request that cloud application reference address is initiated.It is existing Have in technology, be typically necessary and its corresponding private domain name is set for cloud application, facilitate user to conduct interviews.So to need Higher safeguards into original.Therefore, visitor of the cloud application reference address according to belonging to default publicly-owned domain name and user in the present embodiment Family mark, cloud application mark are built-up.Wherein, the publicly-owned secure domain name that publicly-owned domain name is used using having registered is preset, Special private domain name need not be set up for cloud application again.Customer ID belonging to user be according to it is different it is user-defined not Same customer ID, convenient that user is distinguished, the customer ID belonging to the user must be unique, belonging to different users Customer ID is different.Both it ensure that user's was unique, but conveniently the customer ID according to belonging to user finds corresponding client's phase Client proxy of pass etc..Cloud application is designated different cloud applications using different marks, can be according to cloud application Title sets up such as salesforce, github.Cloud application reference address can be by the client belonging to default publicly-owned domain name, user Mark and cloud application mark are arranged according to specified order, middle to be built by modes such as " " symbol connections.
Parsing module 320, suitable for being parsed to cloud application reference address, determines the corresponding customer's representative's clothes of customer ID Business device and cloud application identify corresponding cloud application server.
Receive request module 310 to receive after the access request of cloud application, parsing module 320 enters cloud application reference address Row parsing.Cloud application reference address is resolved to default publicly-owned domain name, the customer ID belonging to user and cloud by parsing module 320 should With mark.Customer ID of the parsing module 320 according to belonging to user, it may be determined that the corresponding client proxy services of customer ID Device.Parsing module 320 determines corresponding cloud application server according to cloud application mark.Parsing module 320 is it is determined that customer's representative When server and cloud application server, the corresponding client proxy services of customer ID can be determined by default corresponding relation Device and cloud application identify corresponding cloud application server.
Access modules 330, suitable for by being communicated with client proxy, realizing access of the user to cloud application.
After parsing module 320 determines client proxy, access modules 330 can be used such as tunnel tunnel associations View, gets through outer net and the connection of the Intranet where client proxy so that outer net can also connect client proxy, Communicated with client proxy.Such as access modules 330 are encrypted to data by client proxy, decrypted Operation, and the data after encryption are sent to the server of cloud application, or the number that access modules 330 send cloud application server According to user etc. is sent to by client proxy after decryption, access of the user to cloud application is realized.
In the present embodiment, cloud proxy server can be also used for managing multiple client proxy services for being deployed in client Device, sends data, or receive the operation processing such as data that client proxy is sent to client proxy.
The cloud proxy server provided according to the present invention, by presetting publicly-owned domain name and the customer ID belonging to user, cloud Application identities build cloud application reference address, enterprise customer is no longer needed specific registration private domain name, are enterprise customer's saving Lower deployment cost.Meanwhile, by the parsing to cloud application reference address, it can accurately determine customer ID corresponding client's generation Manage server and cloud application identifies corresponding cloud application server, so as to conveniently realize access of the user to cloud application.This hair The bright process for accessing whole cloud application is simple and easy to operate, and helps enterprise customer to save cost.
Fig. 4 shows the functional block diagram of cloud proxy server in accordance with another embodiment of the present invention.As shown in figure 4, with Fig. 3 is compared, and cloud proxy server also includes following module:
Certification request module 340, suitable for receive the carryings customer ID that client proxy is sent for applying for cloud The certification request of application service.
To make user when accessing cloud application, in that context it may be convenient to which initiating cloud application access by cloud application reference address please Ask, and realize access of the user to cloud application.Certification request module 340 is needed the client proxy services of client deployment in advance Device is authenticated.
Certification request module 340 receive client proxy send carryings customer ID be used for apply cloud application clothes The certification request of business, wherein, general certification request module 340 is authenticated request first what client proxy was set. The customer ID carried in certification request is the identity of user, and it must be unique.If the customer ID has been certified request, Certification request failure carries not authenticated client, it is necessary to receive client proxy by certification request module 340 and send The mark certification request that application cloud application is serviced again.If customer ID is not authenticated, certification request success.
Address builds module 350, suitable for building cloud application with customer ID, cloud application mark according to default publicly-owned domain name and visiting Ask address.
After the success of the certification request of certification request module 340, module 350 is according to customer ID and has existed for address structure Default publicly-owned domain name corresponding with the cloud application to be used cloud application mark build cloud application reference address.
When address builds the structure cloud application reference address of module 350, it can be identified according to customer ID, cloud application and default The order of publicly-owned domain name is built.Such as customer ID is qianxin, and cloud application is designated salesforce, presets publicly-owned domain Entitled 360casb.com, address builds the structure cloud application reference address of module 350 and is: qianxin.salesforce.com.360casb.com。
Feedback module 360, suitable for cloud application reference address is fed back into client proxy.
The cloud application reference address that address structure module 350 is built is fed back to client proxy by feedback module 360, So that client proxy records cloud application reference address, the traffic operations such as follow-up checking are carried out to it.
Synchronous detection module 370, suitable for being carried out between multiple client proxies using version synchronization heartbeat mechanism Version synchronization is detected.
Synchronization module 380, if inconsistent suitable for version synchronization testing result in synchronous detection module, according to customer's representative The data pull request that server is sent, sets up data syn-chronization passage, for client proxy with client proxy Carry out version synchronization processing.
Version used in configuring client proxy in client may be with high in the clouds cloud proxy server version Difference, after version updating, synchronous detection module 370 needs to carry out version synchronization to client proxy.In version synchronization When, version synchronization inspection can be carried out using version synchronization heartbeat mechanism between synchronous detection module 370 and client proxy Survey.The version synchronization is detected as the detection of non real-time nature version synchronization.Synchronous detection module 370 by setting synchronization of time intenals, The detection of version synchronization comparison, if version synchronization testing result is inconsistent, synchronization module 380 are such as carried out in default time interval The data pull then sent according to client proxy is asked, and data syn-chronization passage is set up with client proxy, for Client proxy carries out version synchronization processing.The synchronization process of the version of synchronization module 380 can use user datagram Agreement (User Datagram Protocol, UDP) enters row data communication, and its resource consumption is small, and processing speed is fast.Synchronization module 380 in data transfer, can use TLV forms (Type types, Lenght length, Value values).In version synchronization processing Afterwards, version is revised as the version information after synchronization by synchronization module 380.If user thinks existing customer, proxy server version is steady Fixed, normal operation, it is not necessary to when carrying out version synchronization processing, synchronization module 380 can also be by configuring nonsynchronous option, no Carry out version synchronization processing.When user thinks to need to carry out version synchronization processing, synchronization module 380 can reconfigured together The option of step, performs version synchronization detection.
Cloud application access request includes data upload requests, and access modules 330 include:
First data transmit-receive module 331, suitable for sending data to be uploaded to client proxy, so that customer's representative takes Business device data to be uploaded are encrypted/replacement Treatment after return.
Data uploading module 332, is uploaded after encryption/replacement Treatment suitable for identifying corresponding cloud application server to cloud application Data to be uploaded.
Response receiving module 333, suitable for receiving the upload data answering that cloud application server is returned.
Response returns to module 334, and data answering is uploaded suitable for being returned to user.
First, the first data transmit-receive module 331 sends data to be uploaded to client proxy.Now, due to parsing Module 320 has determined that client proxy, and Intranet user can be from the first data transmit-receive module 331 directly to client's generation Manage server and send data to be uploaded, external user can be got through outer net and taken with customer's representative by such as tunnel tunnel agreements Be engaged in device where Intranet connection so that outer net can also connect client proxy, from the first data transmit-receive module 331 to Client proxy sends data to be uploaded.Client proxy can be to be uploaded in first data transmit-receive module 331 Sensitive data in data, after the processing such as need the data such as private data be encrypted, replace return again to the number after encryption, replacement Treatment According to.Data uploading module 332 identifies corresponding cloud application server to cloud application and uploads treating after these encryption, replacement Treatments Pass data.Response receiving module 333 receives the upload data answering that cloud application server is returned, response return module 334 to Family, which is returned, uploads data answering.Data to be uploaded are added by client proxy by the first data transmit-receive module 331 The processing such as close, displacement, to ensure the safety of data.Further, client proxy can also be visited according to the cloud application of record Address is asked, whether the cloud application reference address in further checking cloud application access request consistent etc., to ensure data to be uploaded Safety.
Cloud application access request includes data access request, and access modules 330 include:
Data access module 335, data access request is sent suitable for identifying corresponding cloud application server to cloud application, and Receive the corresponding access data of data access request that cloud application server is returned.
Second data transmit-receive module 336, accesses data, for client proxy services suitable for being sent to client proxy Device to access data be decrypted/replacement Treatment after return.
Data return to module 337, suitable for returning to the access data after decryption/replacement Treatment to user.
First, Data access module 335 identifies corresponding cloud application server to cloud application and sends data access request, and Receive the corresponding access data of data access request that cloud application server is returned.Access in data and exist after encryption or displacement During data, the second data transmit-receive module 336 sends to client proxy and accesses data, so that client proxy is to visiting Ask that data are decrypted, returned after replacement Treatment.Data return to module 337 and the access after decryption, replacement Treatment are returned to user Data, so that user, which can see, really accesses data.
Cloud application access request includes logging request, and cloud proxy server also includes:
Login process module 390, logging request is sent to cloud application server;Receive the login that cloud application server is returned Response;Returned to user and log in response.
Login process module 390 is sent in the logging request, logging request to cloud application server can be included as logged in User name, password etc..After cloud application server authentication login, login process module 390 receives cloud application server and returned Login response, and return to the login response to user.Cloud application server verified according to the user name of login, password, If checking is logined successfully, login process module 390 receives the login response logined successfully that cloud application server is returned, and to Family returns to the login response logined successfully, points out User logs in success.Conversely, login process module 390 receives cloud application service The login response for the login failure that device is returned, and to the login response of user's return login failure, point out login failed for user.
The cloud proxy server provided according to the present invention, receives the use for the carrying customer ID that client proxy is sent In the certification request of application cloud application service, build cloud application according to default publicly-owned domain name and customer ID, cloud application mark and visit Ask address.By presetting publicly-owned domain name and the customer ID belonging to user, cloud application mark structure cloud application reference address, make enterprise Industry user no longer needs specific registration private domain name, is that enterprise customer saves lower deployment cost.Meanwhile, by accessing cloud application The parsing of address, can accurately determine that the corresponding client proxy of customer ID and cloud application identify corresponding cloud and answered With server, so as to conveniently realize access of the user to cloud application.When being related to data upload or data access request, to client Proxy server sends related data, so that client proxy is encrypted/replaced to data or decryption/displacement etc. Reason, to ensure the safety of data, prevents leakage of data.The process that whole cloud application is accessed is simple and easy to operate, safe, and side Enterprise customer is helped to save cost.
Fig. 5 shows that cloud application according to an embodiment of the invention accesses the configuration diagram of system.As shown in figure 5, Cloud application access system includes the cloud proxy server 520 in the various embodiments described above.Wherein, cloud proxy server 520 is retouched The description for seeing above-described embodiment is stated, be will not be repeated here.Cloud application accesses system and further comprises multiple visitors for being deployed in client The cloud application server 530 of family proxy server 510 and deployment beyond the clouds.
Cloud proxy server 520 can be communicated to connect with multiple client proxies 510, for managing multiple client's generations Manage server 510.Client proxy 510 is after cloud proxy server 520 is authenticated request, cloud proxy server 520 Cloud application reference address is built according to default publicly-owned domain name and customer ID, cloud application mark.Wherein, can according to cloud application mark To determine its corresponding cloud application server 530.Cloud proxy server 520 is communicated to connect with cloud application server 530.Cloud is acted on behalf of Server 520 determines customer ID corresponding client's generation according to the cloud application access request that cloud application reference address is initiated is accessed Manage server 510 and cloud application identifies corresponding cloud application server 530, and then realize access of the user to cloud application.
System is accessed according to the cloud application that provides of the present invention, by preset publicly-owned domain name and the customer ID belonging to user, Cloud application mark builds cloud application reference address, enterprise customer is no longer needed specific registration private domain name, is enterprise customer's section Lower deployment cost is saved.Meanwhile, by the parsing to cloud application reference address, it can accurately determine the corresponding client of customer ID Proxy server and cloud application identify corresponding cloud application server, so as to conveniently realize access of the user to cloud application.This The process that invention accesses whole cloud application is simple and easy to operate, and helps enterprise customer to save cost.
Algorithm and display be not inherently related to any certain computer, virtual system or miscellaneous equipment provided herein. Various general-purpose systems can also be used together with based on teaching in this.As described above, construct required by this kind of system Structure be obvious.In addition, the present invention is not also directed to any certain programmed language.It is understood that, it is possible to use it is various Programming language realizes the content of invention described herein, and the description done above to language-specific is to disclose this hair Bright preferred forms.
In the specification that this place is provided, numerous specific details are set forth.It is to be appreciated, however, that the implementation of the present invention Example can be put into practice in the case of these no details.In some instances, known method, structure is not been shown in detail And technology, so as not to obscure the understanding of this description.
Similarly, it will be appreciated that in order to simplify the disclosure and help to understand one or more of each inventive aspect, exist Above in the description of the exemplary embodiment of the present invention, each feature of the invention is grouped together into single implementation sometimes In example, figure or descriptions thereof.However, the method for the disclosure should be construed to reflect following intention:It is i.e. required to protect The application claims of shield features more more than the feature being expressly recited in each claim.More precisely, such as following Claims reflect as, inventive aspect is all features less than single embodiment disclosed above.Therefore, Thus the claims for following embodiment are expressly incorporated in the embodiment, wherein each claim is in itself All as the separate embodiments of the present invention.
Those skilled in the art, which are appreciated that, to be carried out adaptively to the module in the equipment in embodiment Change and they are arranged in one or more equipment different from the embodiment.Can be the module or list in embodiment Member or component be combined into a module or unit or component, and can be divided into addition multiple submodule or subelement or Sub-component.In addition at least some in such feature and/or process or unit exclude each other, it can use any Combination is disclosed to all features disclosed in this specification (including adjoint claim, summary and accompanying drawing) and so to appoint Where all processes or unit of method or equipment are combined.Unless expressly stated otherwise, this specification (including adjoint power Profit is required, summary and accompanying drawing) disclosed in each feature can or similar purpose identical, equivalent by offer alternative features come generation Replace.
Although in addition, it will be appreciated by those of skill in the art that some embodiments described herein include other embodiments In included some features rather than further feature, but the combination of the feature of be the same as Example does not mean in of the invention Within the scope of and form different embodiments.For example, in the following claims, times of embodiment claimed One of meaning mode can be used in any combination.
The present invention all parts embodiment can be realized with hardware, or with one or more processor run Software module realize, or realized with combinations thereof.It will be understood by those of skill in the art that can use in practice Microprocessor or digital signal processor (DSP) come realize in cloud proxy server according to embodiments of the present invention some or The some or all functions of person's whole part.The present invention is also implemented as perform method as described herein one Divide or whole equipment or program of device (for example, computer program and computer program product).It is such to realize this hair Bright program can be stored on a computer-readable medium, or can have the form of one or more signal.It is such Signal can be downloaded from internet website and obtained, and either provided or provided in any other form on carrier signal.
It should be noted that the present invention will be described rather than limits the invention for above-described embodiment, and ability Field technique personnel can design alternative embodiment without departing from the scope of the appended claims.In the claims, Any reference symbol between bracket should not be configured to limitations on claims.Word "comprising" is not excluded the presence of not Element or step listed in the claims.Word "a" or "an" before element does not exclude the presence of multiple such Element.The present invention can be by means of including the hardware of some different elements and coming real by means of properly programmed computer It is existing.In if the unit claim of equipment for drying is listed, several in these devices can be by same hardware branch To embody.The use of word first, second, and third does not indicate that any order.These words can be explained and run after fame Claim.
The invention discloses:A1. a kind of cloud application access method, the cloud proxy server that methods described is disposed by high in the clouds is held OK, the cloud proxy server is used to manage multiple client proxies for being deployed in client;Methods described includes:
User is received by accessing the cloud application access request that cloud application reference address is initiated, the cloud application reference address It is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark;
The cloud application reference address is parsed, determines that the corresponding client proxy of customer ID and cloud should With the corresponding cloud application server of mark;
By being communicated with client proxy, access of the user to the cloud application is realized.
A2. the method according to A1, wherein, in the reception user by accessing the cloud that cloud application reference address is initiated Before access request, methods described also includes:
Receive the certification request for being used to apply for cloud application service for the carrying customer ID that client proxy is sent;
Cloud application reference address is built according to default publicly-owned domain name and customer ID, cloud application mark;
The cloud application reference address is fed back into client proxy.
A3. the method according to A2, wherein, methods described also includes:Used between multiple client proxies Version synchronization heartbeat mechanism carries out version synchronization detection.
A4. the method according to A3, wherein, methods described also includes:
If version synchronization testing result is inconsistent, the data pull sent according to client proxy is asked, with institute State client proxy and set up data syn-chronization passage, so that the client proxy carries out version synchronization processing.
A5. the method according to any one of A1-A4, wherein, the cloud application access request includes data upload requests, It is described by being communicated with client proxy, realize that access of the user to the cloud application further comprises:
Data to be uploaded are sent to the client proxy, so that the client proxy is to described to be uploaded Data are encrypted/replacement Treatment after return;
Corresponding cloud application server, which is identified, to the cloud application uploads the data to be uploaded after encryption/replacement Treatment;
Receive the upload data answering that the cloud application server is returned;
The upload data answering is returned to the user.
A6. the method according to any one of A1-A4, wherein, the cloud application access request includes data access request, It is described by being communicated with client proxy, realize that access of the user to the cloud application further comprises:
Corresponding cloud application server, which is identified, to the cloud application and sends the data access request, and receives the cloud answers The corresponding access data of the data access request returned with server;
The access data are sent to the client proxy, so that the client proxy is accessed described Data are decrypted/replacement Treatment after return;
The access data after decryption/replacement Treatment are returned to the user.
A7. the method according to any one of A1-A4, wherein, the cloud application access request includes logging request, described Method also includes:
Logging request is sent to the cloud application server;
Receive the login response that the cloud application server is returned;
The login response is returned to the user.
The invention also discloses:B8. a kind of cloud proxy server, the cloud proxy server is used to manage multiple be deployed in The client proxy of client;The cloud proxy server includes:
Request module is received, suitable for receiving user by accessing the cloud application access request that cloud application reference address is initiated, The cloud application reference address is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark;
Parsing module, suitable for being parsed to the cloud application reference address, determines the corresponding customer's representative of customer ID Server and cloud application identify corresponding cloud application server;
Access modules, suitable for by being communicated with client proxy, realizing the user to the cloud application Access.
B9. the cloud proxy server according to B8, wherein, the cloud proxy server also includes:
Certification request module, suitable for receive the carryings customer ID that client proxy is sent for applying for cloud application The certification request of service;
Address builds module, suitable for building cloud application with customer ID, cloud application mark according to default publicly-owned domain name and accessing Address;
Feedback module, suitable for the cloud application reference address is fed back into client proxy.
B10. the cloud proxy server according to B9, wherein, the cloud proxy server also includes:
Synchronous detection module, suitable for carrying out version using version synchronization heartbeat mechanism between multiple client proxies Synchronous detection.
B11. the cloud proxy server according to B10, wherein, the cloud proxy server also includes:
Synchronization module, if inconsistent suitable for version synchronization testing result in synchronous detection module, takes according to customer's representative The data pull request that business device is sent, sets up data syn-chronization passage, for the customer's representative with the client proxy Server carries out version synchronization processing.
B12. the cloud proxy server according to any one of B8-B10, wherein, the cloud application access request includes number According to upload request, the access modules include:
First data transmit-receive module, suitable for sending data to be uploaded to the client proxy, for the client The data to be uploaded are encrypted proxy server/replacement Treatment after return;
Data uploading module, encryption/replacement Treatment is uploaded suitable for identifying corresponding cloud application server to the cloud application Data to be uploaded afterwards;
Response receiving module, suitable for receiving the upload data answering that the cloud application server is returned;
Response returns to module, suitable for returning to the upload data answering to the user.
B13. the cloud proxy server according to any one of B8-B10, wherein, the cloud application access request includes number According to access request, the access modules include:
Data access module, please suitable for identifying the corresponding cloud application server transmission data access to the cloud application Ask, and receive the corresponding access data of the data access request that the cloud application server is returned;
Second data transmit-receive module, suitable for sending the access data to the client proxy, for the visitor Family proxy server to it is described access data be decrypted/replacement Treatment after return;
Data return to module, suitable for returning to the access data after decryption/replacement Treatment to the user.
B14. the cloud proxy server according to any one of B8-B10, wherein, the cloud application access request is comprising stepping on Record request, the cloud proxy server also includes:
Login process module, logging request is sent to the cloud application server;The cloud application server is received to return Login response;The login response is returned to the user.
The invention also discloses:C15. a kind of cloud application accesses system, including:Cloud agency's clothes described in any one of B8-B14 Business device, in addition to:The cloud application server of multiple client proxies for being deployed in client and deployment beyond the clouds;
Wherein, the cloud proxy server is communicated to connect with multiple client proxies, for managing the multiple visitor Family proxy server, the cloud proxy server is connected with the cloud application server communication.

Claims (10)

1. a kind of cloud application access method, the cloud proxy server that methods described is disposed by high in the clouds is performed, the cloud agency service Device is used to manage multiple client proxies for being deployed in client;Methods described includes:
User is received by accessing the cloud application access request that cloud application reference address is initiated, the cloud application reference address is root It is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark;
The cloud application reference address is parsed, the corresponding client proxy of customer ID and cloud application mark is determined Know corresponding cloud application server;
By being communicated with client proxy, access of the user to the cloud application is realized.
2. according to the method described in claim 1, wherein, it is described reception user by access cloud application reference address initiate Before cloud application access request, methods described also includes:
Receive the certification request for being used to apply for cloud application service for the carrying customer ID that client proxy is sent;
Cloud application reference address is built according to default publicly-owned domain name and customer ID, cloud application mark;
The cloud application reference address is fed back into client proxy.
3. method according to claim 2, wherein, methods described also includes:Adopted between multiple client proxies Version synchronization detection is carried out with version synchronization heartbeat mechanism.
4. method according to claim 3, wherein, methods described also includes:
If version synchronization testing result is inconsistent, the data pull sent according to client proxy is asked, with the visitor Family proxy server sets up data syn-chronization passage, so that the client proxy carries out version synchronization processing.
5. the method according to claim any one of 1-4, wherein, the cloud application access request is uploaded comprising data please Ask, it is described by being communicated with client proxy, realize that access of the user to the cloud application further comprises:
Data to be uploaded are sent to the client proxy, so that the client proxy is to the data to be uploaded Be encrypted/replacement Treatment after return;
Corresponding cloud application server, which is identified, to the cloud application uploads the data to be uploaded after encryption/replacement Treatment;
Receive the upload data answering that the cloud application server is returned;
The upload data answering is returned to the user.
6. the method according to claim any one of 1-4, wherein, the cloud application access request please comprising data access Ask, it is described by being communicated with client proxy, realize that access of the user to the cloud application further comprises:
Corresponding cloud application server is identified to the cloud application and sends the data access request, and receives the cloud application clothes The corresponding access data of the data access request that business device is returned;
The access data are sent to the client proxy, so that the client proxy is to the access data Be decrypted/replacement Treatment after return;
The access data after decryption/replacement Treatment are returned to the user.
7. the method according to claim any one of 1-4, wherein, the cloud application access request includes logging request, institute Stating method also includes:
Logging request is sent to the cloud application server;
Receive the login response that the cloud application server is returned;
The login response is returned to the user.
8. a kind of cloud proxy server, the cloud proxy server is used to manage multiple client proxy services for being deployed in client Device;The cloud proxy server includes:
Request module is received, it is described suitable for receiving user by accessing the cloud application access request that cloud application reference address is initiated Cloud application reference address is built-up according to default publicly-owned domain name and the customer ID belonging to user, cloud application mark;
Parsing module, suitable for being parsed to the cloud application reference address, determines the corresponding client proxy services of customer ID Device and cloud application identify corresponding cloud application server;
Access modules, suitable for by being communicated with client proxy, realizing access of the user to the cloud application.
9. cloud proxy server according to claim 8, wherein, the cloud proxy server also includes:
Certification request module, suitable for receive the carryings customer ID that client proxy is sent for applying for cloud application service Certification request;
Address builds module, suitable for building cloud application reference address with customer ID, cloud application mark according to default publicly-owned domain name;
Feedback module, suitable for the cloud application reference address is fed back into client proxy.
10. a kind of cloud application accesses system, including:Cloud proxy server described in claim 8 or 9, in addition to:Multiple deployment In the client proxy and deployment cloud application server beyond the clouds of client;
Wherein, the cloud proxy server is communicated to connect with multiple client proxies, for managing the multiple client's generation Server is managed, the cloud proxy server is connected with the cloud application server communication.
CN201710265867.3A 2017-04-21 2017-04-21 Cloud application access method, cloud proxy server and cloud application access system Active CN107105033B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201710265867.3A CN107105033B (en) 2017-04-21 2017-04-21 Cloud application access method, cloud proxy server and cloud application access system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201710265867.3A CN107105033B (en) 2017-04-21 2017-04-21 Cloud application access method, cloud proxy server and cloud application access system

Publications (2)

Publication Number Publication Date
CN107105033A true CN107105033A (en) 2017-08-29
CN107105033B CN107105033B (en) 2020-08-18

Family

ID=59657787

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201710265867.3A Active CN107105033B (en) 2017-04-21 2017-04-21 Cloud application access method, cloud proxy server and cloud application access system

Country Status (1)

Country Link
CN (1) CN107105033B (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107911390A (en) * 2017-12-14 2018-04-13 浪潮软件股份有限公司 Handle method, proxy server, application server and the system of service request
CN107948201A (en) * 2017-12-29 2018-04-20 平安科技(深圳)有限公司 The purview certification method and system in Docker mirror images warehouse
CN108200155A (en) * 2017-12-29 2018-06-22 平安科技(深圳)有限公司 The mirror image synchronization method in Docker mirror images warehouse and mirror image synchronization system
CN109309728A (en) * 2018-10-26 2019-02-05 金蝶软件(中国)有限公司 A kind of data processing method and relevant apparatus
CN109873841A (en) * 2017-12-01 2019-06-11 北京安云世纪科技有限公司 With the exchange method and device of cloud application data
CN111241523A (en) * 2020-01-08 2020-06-05 中国联合网络通信集团有限公司 Authentication processing method, device, equipment and storage medium
CN112637333A (en) * 2020-12-22 2021-04-09 畅捷通信息技术股份有限公司 Intelligent client agent method
CN114073060A (en) * 2019-07-03 2022-02-18 微软技术许可有限责任公司 Domain-application attribution
CN114449039A (en) * 2021-12-27 2022-05-06 北京致远互联软件股份有限公司 Method for independent deployment and service routing of multiple organization applications

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105376107A (en) * 2014-08-29 2016-03-02 腾讯科技(深圳)有限公司 Terminal test method and proxy server
CN106060099A (en) * 2016-08-15 2016-10-26 北京奇虎科技有限公司 Data access method and system, and devices
US20160344740A1 (en) * 2015-05-22 2016-11-24 Yu Yung Choi System and method for access and management of things over a communication network related thereto
CN106302453A (en) * 2016-08-15 2017-01-04 北京奇虎科技有限公司 The processing method of data, Apparatus and system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105376107A (en) * 2014-08-29 2016-03-02 腾讯科技(深圳)有限公司 Terminal test method and proxy server
US20160344740A1 (en) * 2015-05-22 2016-11-24 Yu Yung Choi System and method for access and management of things over a communication network related thereto
CN106060099A (en) * 2016-08-15 2016-10-26 北京奇虎科技有限公司 Data access method and system, and devices
CN106302453A (en) * 2016-08-15 2017-01-04 北京奇虎科技有限公司 The processing method of data, Apparatus and system

Cited By (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109873841A (en) * 2017-12-01 2019-06-11 北京安云世纪科技有限公司 With the exchange method and device of cloud application data
CN107911390A (en) * 2017-12-14 2018-04-13 浪潮软件股份有限公司 Handle method, proxy server, application server and the system of service request
CN107948201A (en) * 2017-12-29 2018-04-20 平安科技(深圳)有限公司 The purview certification method and system in Docker mirror images warehouse
CN108200155A (en) * 2017-12-29 2018-06-22 平安科技(深圳)有限公司 The mirror image synchronization method in Docker mirror images warehouse and mirror image synchronization system
CN109309728A (en) * 2018-10-26 2019-02-05 金蝶软件(中国)有限公司 A kind of data processing method and relevant apparatus
CN114073060A (en) * 2019-07-03 2022-02-18 微软技术许可有限责任公司 Domain-application attribution
CN114073060B (en) * 2019-07-03 2024-02-27 微软技术许可有限责任公司 Domain-application attribution system, proxy server and method executed therein
CN111241523A (en) * 2020-01-08 2020-06-05 中国联合网络通信集团有限公司 Authentication processing method, device, equipment and storage medium
CN112637333A (en) * 2020-12-22 2021-04-09 畅捷通信息技术股份有限公司 Intelligent client agent method
CN114449039A (en) * 2021-12-27 2022-05-06 北京致远互联软件股份有限公司 Method for independent deployment and service routing of multiple organization applications

Also Published As

Publication number Publication date
CN107105033B (en) 2020-08-18

Similar Documents

Publication Publication Date Title
CN107105033A (en) Cloud application access method, cloud proxy server and cloud application access system
US11297034B2 (en) Deployment of a custom address to a remotely managed computational instance
US10958624B2 (en) Proxy auto-configuration for directing client traffic to a cloud proxy with cloud-based unique identifier assignment
US20210250333A1 (en) Private application access with browser isolation
US9596233B1 (en) Management and authentication in hosted directory service
EP3149583B1 (en) Method and apparatus for automating the building of threat models for the public cloud
US11671442B2 (en) Automated packetless network reachability analysis
US8990911B2 (en) System and method for single sign-on to resources across a network
CN107070931A (en) Cloud application data upload/access method, system and cloud proxy server
WO2019224645A1 (en) Selectively providing mutual transport layer security using alternative server names
US11102174B2 (en) Autonomous alerting based on defined categorizations for network space and network boundary changes
US11095614B2 (en) Configuring hostname based firewall policies
US20160371178A1 (en) Method and system for testing cloud based applications in a production environment using fabricated user data
US20160182527A1 (en) Method and system for providing permissions management
US11082413B2 (en) Secure network connections
CN107925877A (en) For centralized configuration and the system and method for certification
CN103634111B (en) Single-point logging method and system and single sign-on client-side
CN105721472A (en) Port security check method, device and system
WO2003091895A2 (en) System for managing and delivering digital services through computer networks
CN109905402B (en) SSO login method and device based on SSL VPN
US11522832B2 (en) Secure internet gateway
EP3637813A1 (en) A cloud platform for secure operation of self-hosted applications
US20230239325A1 (en) Software security agent updates via microcode
US11683345B2 (en) Application identity-based enforcement of datagram protocols
WO2023272419A1 (en) Virtual machine provisioning and directory service management

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant
CP03 Change of name, title or address
CP03 Change of name, title or address

Address after: 100032 NO.332, 3rd floor, Building 102, 28 xinjiekouwai street, Xicheng District, Beijing

Patentee after: QAX Technology Group Inc.

Address before: 100016 15, 17 floor 1701-26, 3 building, 10 Jiuxianqiao Road, Chaoyang District, Beijing.

Patentee before: BEIJING QIANXIN TECHNOLOGY Co.,Ltd.