CN108337249A - A kind of data safe transmission method, system and device - Google Patents

A kind of data safe transmission method, system and device Download PDF

Info

Publication number
CN108337249A
CN108337249A CN201810054155.1A CN201810054155A CN108337249A CN 108337249 A CN108337249 A CN 108337249A CN 201810054155 A CN201810054155 A CN 201810054155A CN 108337249 A CN108337249 A CN 108337249A
Authority
CN
China
Prior art keywords
server
agent
ssl
certificate
data
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201810054155.1A
Other languages
Chinese (zh)
Inventor
陈颖棠
谭振东
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Critics Of Science And Technology (guangzhou) Co Ltd
Original Assignee
Critics Of Science And Technology (guangzhou) Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Critics Of Science And Technology (guangzhou) Co Ltd filed Critical Critics Of Science And Technology (guangzhou) Co Ltd
Priority to CN201810054155.1A priority Critical patent/CN108337249A/en
Publication of CN108337249A publication Critical patent/CN108337249A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/18Network architectures or network communication protocols for network security using different networks or channels, e.g. using out of band channels
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0281Proxies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0823Network architectures or network communication protocols for network security for authentication of entities using certificates
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/16Implementing security features at a particular protocol layer
    • H04L63/166Implementing security features at a particular protocol layer at the transport layer

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer And Data Communications (AREA)

Abstract

The invention discloses a kind of data safe transmission method, system and devices, the data safe transmission method includes that client is established non-SSL by the first Intranet with first agent's server and connect, and destination server is established non-SSL by the second Intranet with second agent's server and connect;First agent's server is established SSL by outer net with second agent's server and is connect, so that generating security protocol tunnel between first agent's server and second agent's server;The client is with the destination server by the security protocol tunnel in the outer net transmission data.The safety of transmission data and integrality between client and destination server end can be improved by the data safe transmission method, data is prevented to be leaked and forge during outer net transmits.

Description

A kind of data safe transmission method, system and device
Technical field
The present invention relates to computer communication technology fields, and in particular to a kind of data safe transmission method, system and device.
Background technology
SSL (SecureSocketLayer) is the secure transfer protocol for being mainly used for WEB of netscape companies design. SSL is an optional layer between http protocol and TCP, and an encrypted tunnel is established on TCP, passes through this One layer of data have passed through encryption, realize the effect of secrecy.Currently, there are two types of the communication modes of client and server, first Kind be that non-SSL traffic is used between client and server, by client or server to data carry out encryption in advance come Ensure the safety that data are transmitted between outer net;Second is that SSL traffic is used between client and server, passes through modification The realization logic of client and server, establishes the SSL traffic of client and server, is added to data by ssl protocol It is close to ensure safety that data are transmitted between outer net.But in first communication party formula, process that data are transmitted in outer net In be easy by man-in-the-middle attack, data are easy to be leaked and forge, and the safety of data transmission and integrality be not high;At second In communication mode, the realization logic for changing client and server in advance is needed, for client, the applicability of server and expansion Malleability is not high.
Invention content
The object of the present invention is to provide a kind of data safe transmission method, system and devices, can improve client and mesh Mark server end between transmission data safety and integrality, prevent data be leaked during outer net transmit and puppet It makes.
In order to solve the above technical problems, the embodiment of the present invention provides a kind of data safe transmission method, including:
Client is established non-SSL by the first Intranet with first agent's server and is connect;
Destination server is established non-SSL by the second Intranet with second agent's server and is connect;
First agent's server is established SSL by outer net with second agent's server and is connect, so that described Security protocol tunnel is generated between first agent's server and second agent's server;
The client is with the destination server by the security protocol tunnel in the outer net transmission data.
Preferably, first agent's server is established SSL by outer net with second agent's server and is connect, so that It obtains and generates security protocol tunnel between first agent's server and second agent's server, specifically include:
According to the SSL handshake requests that first agent's server is sent, second agent's server authentication is preset in First SSL certificate of first agent's server;
Second agent's server judge first SSL certificate whether be preset in second agent's server Second SSL certificate matches;
When first SSL certificate is matched with second SSL certificate, to the sound of first agent's server transmission The SSL handshake requests message is answered, so that first agent's server is built with second agent's server by outer net Vertical SSL connections.
Preferably, in the ports SSL of the non-ports SSL and second agent's server of first agent's server Between establish the SSL connections.
Preferably, the data safe transmission method further includes:
According to the first of first agent's server the application SSL certificate request, certificate authority generates described first SSL certificate;It is asked according to the second of second agent's server the application SSL certificate, described in the certificate authority generation Second SSL certificate.
Preferably, first CA certificate and first server certificate;Second SSL certificate includes the second CA certificate And second server certificate.
The embodiment of the present invention also provides a kind of data safe transmission system, including client, destination server, first agent Server and second agent's server;
The client is connect for establishing non-SSL by the first Intranet with first agent's server;
The destination server is connect for establishing non-SSL by the second Intranet with second agent's server;
First agent's server is connect for establishing SSL by outer net with second agent's server, so that Security protocol tunnel is generated between first agent's server and second agent's server;
The client is with the destination server by the security protocol tunnel in the outer net transmission data.
Preferably, second agent's server is additionally operable to be shaken hands according to the SSL that first agent's server is sent Request, verification are preset in first SSL certificate of first agent's server;
Second agent's server, be additionally operable to judge first SSL certificate whether be preset in the second agent Second SSL certificate of server matches;
Second agent's server is additionally operable to when first SSL certificate is matched with second SSL certificate, to The response SSL handshake requests message that first agent's server is sent, so that first agent's server and institute It states second agent's server and SSL connections is established by outer net.
Preferably, first agent's server, in the non-ports SSL of first agent's server and described the The SSL connections are established between the ports SSL of two proxy servers.
Preferably, the data safe transmission system further includes certificate authority:
The certificate authority, for according to the first of first agent's server the application SSL certificate request, generating First SSL certificate;The certificate authority is additionally operable to according to the second of second agent's server the application SSL cards Book is asked, and second SSL certificate is generated.
The embodiment of the present invention also provides a kind of data security transmission device, including processor, memory and is stored in institute The computer program executed by the processor is stated in memory and is configured as, the processor executes the computer program When, realize above-mentioned data safe transmission method.
Compared with the existing technology, a kind of advantageous effect of data safe transmission method provided in an embodiment of the present invention is: The data safe transmission method includes that client is established non-SSL by the first Intranet with first agent's server and connect, target Server is established non-SSL by the second Intranet with second agent's server and is connect;First agent's server and described second Proxy server establishes SSL connections by outer net so that first agent's server and second agent's server it Between generate security protocol tunnel;The client is passed by the security protocol tunnel in the outer net with the destination server Transmission of data.The safety of transmission data between client and destination server end can be improved by the data safe transmission method Property and integrality, prevent data to be leaked and forge during outer net transmits.The embodiment of the present invention provides a kind of data peace Full Transmission system and device.
Description of the drawings
Fig. 1 is real a kind of flow chart of data safe transmission method of offer of the invention;
Fig. 2 is real a kind of schematic diagram of data safe transmission system of offer of the invention;
Fig. 3 is real a kind of schematic diagram of data security transmission device of offer of the invention.
Specific implementation mode
Following will be combined with the drawings in the embodiments of the present invention, and technical solution in the embodiment of the present invention carries out clear, complete Site preparation describes, it is clear that described embodiments are only a part of the embodiments of the present invention, instead of all the embodiments.It is based on Embodiment in the present invention, those of ordinary skill in the art are obtained every other without creative efforts Embodiment shall fall within the protection scope of the present invention.
Referring to Fig. 1, it is a kind of flow chart of data safe transmission method provided in an embodiment of the present invention, the data Safe transmission method includes:
S100:Client is established non-SSL by the first Intranet with first agent's server and is connect;
S200:Destination server is established non-SSL by the second Intranet with second agent's server and is connect;
S300:First agent's server is established SSL by outer net with second agent's server and is connect, so that Security protocol tunnel is generated between first agent's server and second agent's server;
S400:The client transmits number by the security protocol tunnel with the destination server in the outer net According to.
In this embodiment, the data safe transmission method need not change the client and the destination server Realize logic, you can realize that security transmissions, the client and server using the communication configuration of non-encrypted transmission can lead to It crosses and security protocol tunnel is increased to carry out data between the client and server using the data safe transmission method Transmission, specific wide applicability and autgmentability, while the data transmitted between the client and the destination server can To reach safety, encrypted laser propagation effect, ensure that data are not leaked and forge in transmission process.Secondly, the first agent Server and second agent's server have very high performance, on the one hand increase the transmission that guarantees data security, another party Face will not be substantially reduced the performance of the scheme of the client and the direct transmission data of the destination server.
In a kind of optional embodiment, S300:First agent's server passes through outer net with second agent's server SSL connections are established, so that security protocol tunnel is generated between first agent's server and second agent's server, It specifically includes:
According to the SSL handshake requests that first agent's server is sent, second agent's server authentication is preset in First SSL certificate of first agent's server;
Second agent's server judge first SSL certificate whether be preset in second agent's server Second SSL certificate matches;
When first SSL certificate is matched with second SSL certificate, to the sound of first agent's server transmission The SSL handshake requests message is answered, so that first agent's server is built with second agent's server by outer net Vertical SSL connections.
In a kind of optional embodiment, taken in the non-ports SSL of first agent's server and the second agent It is engaged in establishing the SSL connections between the ports SSL of device.
In a kind of optional embodiment, the data safe transmission method further includes:
According to the first of first agent's server the application SSL certificate request, certificate authority generates described first SSL certificate;It is asked according to the second of second agent's server the application SSL certificate, described in the certificate authority generation Second SSL certificate.
In a kind of optional embodiment, first CA certificate and first server certificate;Second SSL certificate Including the second CA certificate and second server certificate.
Referring to Fig. 2, it, which is the embodiment of the present invention, also provides a kind of schematic diagram of data safe transmission system, the data Secure transmission system includes client 1, destination server 2, first agent's server 3 and second agent's server 4;
The client 1 is connect for establishing non-SSL by the first Intranet with first agent's server 3;
The destination server 2 is connect for establishing non-SSL by the second Intranet with second agent's server 4;
First agent's server 3 is connect for establishing SSL by outer net with the second agent 4 devices of service, so that It obtains and generates security protocol tunnel between first agent's server 3 and second agent's server 4;
The client 1 is with the destination server 2 by the security protocol tunnel in the outer net transmission data.
In this embodiment, the data safe transmission system need not change the client and the destination server Realize logic, you can realize security transmissions, it can be using the client and server of the communication configuration of non-encrypted transmission By increasing first agent's server and second agent's server to increase peace between the client and server Full protocol tunnel carries out data transmission, specific wide applicability and autgmentability, while the client and target clothes The data transmitted between business device can reach safety, encrypted laser propagation effect, ensure that data are not leaked and puppet in transmission process It makes.Secondly, first agent's server and second agent's server have very high performance, on the one hand increase and ensure On the other hand data security transmission will not be substantially reduced the scheme of the client and the direct transmission data of the destination server Performance.
In a kind of optional embodiment, second agent's server is additionally operable to according to first agent's server The SSL handshake requests of transmission, verification are preset in the first SSL certificates of first agent's server;
Second agent's server, be additionally operable to judge first SSL certificate whether be preset in the second agent Second SSL certificate of server matches;
Second agent's server is additionally operable to when first SSL certificate is matched with second SSL certificate, to The response SSL handshake requests message that first agent's server is sent, so that first agent's server and institute It states second agent's server and SSL connections is established by outer net.
In a kind of optional embodiment, first agent's server, in the non-of first agent's server The SSL connections are established between the ports SSL and the ports SSL of second agent's server.
In a kind of optional embodiment, the data safe transmission system further includes certificate authority:
The certificate authority, for according to the first of first agent's server the application SSL certificate request, generating First SSL certificate;The certificate authority is additionally operable to according to the second of second agent's server the application SSL cards Book is asked, and second SSL certificate is generated.
The embodiment of the present invention also provides a kind of data security transmission device, including processor, memory and is stored in institute The computer program executed by the processor is stated in memory and is configured as, the processor executes the computer program When, realize above-mentioned data safe transmission method.
Illustratively, the computer program can be divided into one or more module/units, one or more A module/unit is stored in the memory, and is executed by the processor, to complete the present invention.It is one or more A module/unit can be the series of computation machine program instruction section that can complete specific function, and the instruction segment is for describing institute State implementation procedure of the computer program in the data security transmission device.For example, referring to Fig. 3, the computer program The first non-SSL connection establishment modules 11 can be divided into, for passing through the using the client and first agent's server One Intranet establishes non-SSL connections;Second non-SSL connection establishment modules 12, for using the destination server and second agent Server establishes non-SSL connections by the second Intranet;SSL connection establishment modules 13, for using first agent's server SSL is established with second agent's server by outer net to connect, so that first agent's server and the second generation Security protocol tunnel is generated between reason server;Data transmission module 14, for using the client and the destination service Device is by the security protocol tunnel in the outer net transmission data.
The computer program can also be divided into handshake module, for what is sent according to first agent's server SSL handshake requests, the first SSL that first agent's server is preset in using second agent's server authentication are demonstrate,proved Book;Certificate judgment module, for using second agent's server judge first SSL certificate whether be preset in described second Second SSL certificate of proxy server matches;Handshake response module, for being demonstrate,proved when first SSL certificate and the 2nd SSL When book matches, the response SSL handshake requests that are sent to first agent's server using second agent's server Message is connect so that first agent's server establishes SSL with second agent's server by outer net.The SSL Connection establishment module is additionally operable to using first agent's server in the non-ports SSL of first agent's server and institute It states and establishes the SSL connections between the ports SSL of second agent's server.The wherein described data security transmission device further includes card Book authorization center;The certificate authority, for being asked according to the first of first agent's server the application SSL certificate, Generate first SSL certificate;The certificate authority is additionally operable to according to the second of second agent's server the application SSL certificate is asked, and second SSL certificate is generated.
The data security transmission device can be desktop PC, notebook, palm PC and cloud server etc. Computing device.The data security transmission device may include, but be not limited only to, processor, memory.Those skilled in the art can To understand, the schematic diagram 3 is only the example of data security transmission device, not the limit of structure paired data safe transmission device It is fixed, may include either combining certain components or different components, such as the number than illustrating more or fewer components Can also include input-output equipment, network access equipment, bus etc. according to safe transmission device.
Alleged processor can be central processing unit (Central Processing Unit, CPU), can also be it His general processor, digital signal processor (Digital Signal Processor, DSP), application-specific integrated circuit (Application Specific Integrated Circuit, ASIC), ready-made programmable gate array (Field- Programmable Gate Array, FPGA) either other programmable logic device, discrete gate or transistor logic, Discrete hardware components etc..General processor can be microprocessor or the processor can also be any conventional processor Deng the processor is the control centre of the data security transmission device, utilizes various interfaces and the entire data of connection The various pieces of safe transmission device.
The memory can be used for storing the computer program and/or module, and the processor is by running or executing Computer program in the memory and/or module are stored, and calls the data being stored in memory, described in realization The various functions of data security transmission device.The memory can include mainly storing program area and storage data field, wherein deposit Store up program area can storage program area, (for example sound-playing function, image play work(to the application program needed at least one function Energy is equal) etc.;Storage data field can be stored uses created data (such as audio data, phone directory etc.) etc. according to mobile phone. Can also include nonvolatile memory in addition, memory may include high-speed random access memory, for example, hard disk, memory, Plug-in type hard disk, intelligent memory card (Smart Med i a Card, SMC), secure digital (Secure Di gita l, SD) Card, flash card (F l ash Card), at least one disk memory, flush memory device or other volatile solid-states Part.
Wherein, if module/unit that the data security transmission device integrates is realized in the form of SFU software functional unit And when sold or used as an independent product, it can be stored in a computer read/write memory medium.Based on such Understand, the present invention realizes all or part of flow in above-described embodiment method, can also instruct phase by computer program The hardware of pass is completed, and the computer program can be stored in a computer readable storage medium, which exists When being executed by processor, it can be achieved that the step of above-mentioned each embodiment of the method.Wherein, the computer program includes computer journey Sequence code, the computer program code can be source code form, object identification code form, executable file or certain intermediate shapes Formula etc..The computer-readable medium may include:Any entity or device, note of the computer program code can be carried Recording medium, USB flash disk, mobile hard disk, magnetic disc, CD, computer storage, read-only memory (ROM, Read-On l y Memory), random access memory (RAM, Random Access Memory), electric carrier signal, telecommunication signal and software Distribution medium etc..It should be noted that the content that the computer-readable medium includes can be according to making laws in jurisdiction Requirement with patent practice carries out increase and decrease appropriate, such as in certain jurisdictions, according to legislation and patent practice, computer Readable medium does not include electric carrier signal and telecommunication signal.
Compared with the existing technology, a kind of advantageous effect of data safe transmission method provided in an embodiment of the present invention is: The data safe transmission method includes that client is established non-SSL by the first Intranet with first agent's server and connect, target Server is established non-SSL by the second Intranet with second agent's server and is connect;First agent's server and described second Proxy server establishes SSL connections by outer net so that first agent's server and second agent's server it Between generate security protocol tunnel;The client is passed by the security protocol tunnel in the outer net with the destination server Transmission of data.The safety of transmission data between client and destination server end can be improved by the data safe transmission method Property and integrality, prevent data to be leaked and forge during outer net transmits.The embodiment of the present invention provides a kind of data peace Full Transmission system and device.
It is the preferred embodiment of the present invention above, it is noted that for those skilled in the art, Various improvements and modifications may be made without departing from the principle of the present invention, these improvements and modifications are also considered as this hair Bright protection domain.

Claims (10)

1. a kind of data safe transmission method, which is characterized in that including:
Client is established non-SSL by the first Intranet with first agent's server and is connect;
Destination server is established non-SSL by the second Intranet with second agent's server and is connect;
First agent's server is established SSL by outer net with second agent's server and is connect, so that described first Security protocol tunnel is generated between proxy server and second agent's server;
The client is with the destination server by the security protocol tunnel in the outer net transmission data.
2. data safe transmission method as described in claim 1, which is characterized in that first agent's server and described the Two proxy servers establish SSL connections by outer net, so that first agent's server and second agent's server Between generate security protocol tunnel, specifically include:
According to the SSL handshake requests that first agent's server is sent, second agent's server authentication is preset in described First SSL certificate of first agent's server;
Second agent's server judge first SSL certificate whether be preset in the second of second agent's server SSL certificate matches;
When first SSL certificate is matched with second SSL certificate, to the response institute of first agent's server transmission SSL handshake request message is stated, so that first agent's server establishes SSL with second agent's server by outer net Connection.
3. data safe transmission method as described in claim 1, which is characterized in that in the non-of first agent's server The SSL connections are established between the ports SSL and the ports SSL of second agent's server.
4. data safe transmission method as claimed in claim 2, which is characterized in that the data safe transmission method also wraps It includes:
According to the first of first agent's server the application SSL certificate request, certificate authority generates the first SSL cards Book;According to the second of second agent's server the application SSL certificate request, the certificate authority generates described second SSL certificate.
5. the data safe transmission method as described in claim 2 or 4, which is characterized in that first CA certificate and first Server certificate;Second SSL certificate includes the second CA certificate and second server certificate.
6. a kind of data safe transmission system, which is characterized in that including client, destination server, first agent's server with And second agent's server;
The client is connect for establishing non-SSL by the first Intranet with first agent's server;
The destination server is connect for establishing non-SSL by the second Intranet with second agent's server;
First agent's server is connect for establishing SSL by outer net with second agent's server, so that described Security protocol tunnel is generated between first agent's server and second agent's server;
The client is with the destination server by the security protocol tunnel in the outer net transmission data.
7. data safe transmission system as claimed in claim 6, which is characterized in that
Second agent's server, is additionally operable to the SSL handshake requests sent according to first agent's server, and verification is default In first SSL certificate of first agent's server;
Second agent's server, be additionally operable to judge first SSL certificate whether be preset in the second agent and service Second SSL certificate of device matches;
Second agent's server is additionally operable to when first SSL certificate is matched with second SSL certificate, to described The response SSL handshake requests message that first agent's server is sent, so that first agent's server and described the Two proxy servers establish SSL connections by outer net.
8. data safe transmission system as claimed in claim 6, which is characterized in that first agent's server is additionally operable to The SSL is established between the non-ports SSL and the ports SSL of second agent's server of first agent's server to connect It connects.
9. data safe transmission system as claimed in claim 7, which is characterized in that the data safe transmission system further includes Certificate authority;
The certificate authority, for being asked according to the first of first agent's server the application SSL certificate, described in generation First SSL certificate;The certificate authority is additionally operable to be asked according to the second of second agent's server the application SSL certificate It asks, generates second SSL certificate.
10. a kind of data security transmission device, which is characterized in that including processor, memory and be stored in the memory In and be configured as the computer program executed by the processor, the processor is realized such as when executing the computer program Data safe transmission method described in any one of claim 1 to 5.
CN201810054155.1A 2018-01-19 2018-01-19 A kind of data safe transmission method, system and device Pending CN108337249A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810054155.1A CN108337249A (en) 2018-01-19 2018-01-19 A kind of data safe transmission method, system and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810054155.1A CN108337249A (en) 2018-01-19 2018-01-19 A kind of data safe transmission method, system and device

Publications (1)

Publication Number Publication Date
CN108337249A true CN108337249A (en) 2018-07-27

Family

ID=62925416

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810054155.1A Pending CN108337249A (en) 2018-01-19 2018-01-19 A kind of data safe transmission method, system and device

Country Status (1)

Country Link
CN (1) CN108337249A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110502915A (en) * 2019-08-30 2019-11-26 恩亿科(北京)数据科技有限公司 A kind of method, apparatus and system of data processing
CN110913008A (en) * 2019-11-29 2020-03-24 成都知道创宇信息技术有限公司 Data transmission method and device
CN111147526A (en) * 2019-11-20 2020-05-12 杭州端点网络科技有限公司 Security authentication method for realizing multi-cloud control across public network
CN111526161A (en) * 2020-05-27 2020-08-11 联想(北京)有限公司 Communication method, communication equipment and proxy system
CN111970301A (en) * 2020-08-27 2020-11-20 北京浪潮数据技术有限公司 Container cloud platform safety communication system
CN114448670A (en) * 2021-12-27 2022-05-06 天翼云科技有限公司 Data transmission method and device and electronic equipment
CN116545706A (en) * 2023-05-15 2023-08-04 合芯科技(苏州)有限公司 Data security transmission control system, method and device and electronic equipment
CN116743738A (en) * 2023-07-20 2023-09-12 北京道迩科技有限公司 Log transmission method and device and electronic equipment
WO2023241819A1 (en) * 2022-06-15 2023-12-21 Telefonaktiebolaget Lm Ericsson (Publ) Dual proxy deployments in communications networks

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101242324A (en) * 2007-02-09 2008-08-13 联想网御科技(北京)有限公司 A remote secure access method and system based on SSL protocol
CN101977234A (en) * 2010-11-02 2011-02-16 中南大学 Parallel TCP (Transmission Control Protocol) technology based wide area network (WAN) communication acceleration method
US20150229481A1 (en) * 2011-07-28 2015-08-13 Cloudflare, Inc. Supporting secure sessions in a cloud-based proxy service

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101242324A (en) * 2007-02-09 2008-08-13 联想网御科技(北京)有限公司 A remote secure access method and system based on SSL protocol
CN101977234A (en) * 2010-11-02 2011-02-16 中南大学 Parallel TCP (Transmission Control Protocol) technology based wide area network (WAN) communication acceleration method
US20150229481A1 (en) * 2011-07-28 2015-08-13 Cloudflare, Inc. Supporting secure sessions in a cloud-based proxy service

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
张良杰等: "《电子商务技术(二)》", 31 August 2004 *

Cited By (14)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110502915A (en) * 2019-08-30 2019-11-26 恩亿科(北京)数据科技有限公司 A kind of method, apparatus and system of data processing
CN111147526B (en) * 2019-11-20 2022-05-31 杭州端点网络科技有限公司 Security authentication method for realizing multi-cloud control across public network
CN111147526A (en) * 2019-11-20 2020-05-12 杭州端点网络科技有限公司 Security authentication method for realizing multi-cloud control across public network
CN110913008A (en) * 2019-11-29 2020-03-24 成都知道创宇信息技术有限公司 Data transmission method and device
CN110913008B (en) * 2019-11-29 2023-02-28 成都知道创宇信息技术有限公司 Data transmission method and device
CN111526161A (en) * 2020-05-27 2020-08-11 联想(北京)有限公司 Communication method, communication equipment and proxy system
CN111970301A (en) * 2020-08-27 2020-11-20 北京浪潮数据技术有限公司 Container cloud platform safety communication system
CN114448670A (en) * 2021-12-27 2022-05-06 天翼云科技有限公司 Data transmission method and device and electronic equipment
CN114448670B (en) * 2021-12-27 2023-06-23 天翼云科技有限公司 Data transmission method and device and electronic equipment
WO2023241819A1 (en) * 2022-06-15 2023-12-21 Telefonaktiebolaget Lm Ericsson (Publ) Dual proxy deployments in communications networks
CN116545706A (en) * 2023-05-15 2023-08-04 合芯科技(苏州)有限公司 Data security transmission control system, method and device and electronic equipment
CN116545706B (en) * 2023-05-15 2024-01-23 合芯科技(苏州)有限公司 Data security transmission control system, method and device and electronic equipment
CN116743738A (en) * 2023-07-20 2023-09-12 北京道迩科技有限公司 Log transmission method and device and electronic equipment
CN116743738B (en) * 2023-07-20 2024-04-05 北京道迩科技有限公司 Log transmission method and device and electronic equipment

Similar Documents

Publication Publication Date Title
CN108337249A (en) A kind of data safe transmission method, system and device
CN107980216B (en) Communication method, device, system, electronic equipment and computer readable storage medium
JP6869374B2 (en) Decentralized key management for trusted execution environments
Hameed et al. A scalable key and trust management solution for IoT sensors using SDN and blockchain technology
Alvarenga et al. Securing configuration management and migration of virtual network functions using blockchain
CN111431713B (en) Private key storage method and device and related equipment
Urien Blockchain IoT (BIoT): A new direction for solving Internet of Things security and trust issues
US12113917B2 (en) System and method for blockchain platform-based service
JP2019515373A (en) Operating system for blockchain IoT devices
CN110380852A (en) Mutual authentication method and communication system
CN106452782A (en) Method and system for producing a secure communication channel for terminals
CN108886468A (en) System and method for distributing the keying material and certificate of identity-based
CN107612934A (en) A kind of block chain mobile terminal computing system and method based on Secret splitting
CN101904136A (en) Security modes for a distributed routing table
CN109660534B (en) Multi-merchant-based security authentication method and device, electronic equipment and storage medium
CN113393225B (en) Digital currency encryption payment method and system
El-Hajj et al. Ethereum for secure authentication of iot using pre-shared keys (psks)
CN114760071B (en) Zero-knowledge proof based cross-domain digital certificate management method, system and medium
CN103716280B (en) data transmission method, server and system
CN111709053B (en) Operation method and operation device based on loose coupling transaction network
Elgohary et al. Design of an enhancement for SSL/TLS protocols
CN117478302A (en) Block chain-based privacy node identity verification method and device
CN109088900A (en) A kind of communication means and communication device for sender and recipient
US8676998B2 (en) Reverse network authentication for nonstandard threat profiles
CN117495373A (en) Block chain-based offline payment method and device

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20180727