CN108495082A - A kind of video monitoring system based on cloud platform - Google Patents

A kind of video monitoring system based on cloud platform Download PDF

Info

Publication number
CN108495082A
CN108495082A CN201810171224.7A CN201810171224A CN108495082A CN 108495082 A CN108495082 A CN 108495082A CN 201810171224 A CN201810171224 A CN 201810171224A CN 108495082 A CN108495082 A CN 108495082A
Authority
CN
China
Prior art keywords
cloud
user
camera
service
address
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201810171224.7A
Other languages
Chinese (zh)
Inventor
马桂成
季统凯
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
G Cloud Technology Co Ltd
Original Assignee
G Cloud Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by G Cloud Technology Co Ltd filed Critical G Cloud Technology Co Ltd
Priority to CN201810171224.7A priority Critical patent/CN108495082A/en
Publication of CN108495082A publication Critical patent/CN108495082A/en
Pending legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04NPICTORIAL COMMUNICATION, e.g. TELEVISION
    • H04N7/00Television systems
    • H04N7/18Closed-circuit television [CCTV] systems, i.e. systems in which the video signal is not broadcast
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/02Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
    • H04L63/0281Proxies
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/08Network architectures or network communication protocols for network security for authentication of entities
    • H04L63/0876Network architectures or network communication protocols for network security for authentication of entities based on the identity of the terminal or configuration, e.g. MAC address, hardware or software configuration or device fingerprint
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/1095Replication or mirroring of data, e.g. scheduling or transport for data synchronisation between network nodes
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/1097Protocols in which an application is distributed across nodes in the network for distributed storage of data in networks, e.g. transport arrangements for network file system [NFS], storage area networks [SAN] or network attached storage [NAS]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/14Session management
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/56Provisioning of proxy services

Abstract

The present invention relates to Network Monitoring Technology field, especially a kind of video monitoring system based on cloud platform.System of the present invention includes service bus, user management module, Cloud Server proxy module, network management module, distributed storage service, application program;Service bus provides the connection maincenter of modules interacting message;User management module provides registration or increases a new user newly, automatically creates a Cloud Server, camera is tied to Cloud Server;Distributed storage service is to provide block storage service;Cloud service proxy module is based on Intranet or proprietary network, downloads newest video file and is stored in inside cloud disk;Network management module provides the serve port mapping of video file, and limits the port and only open and could be accessed to the IP address of user application, other IP address forbid accessing, and also provide virtual firewall;Video is checked in application program offer.The present invention solves Network Video Surveillance and is easy illegal to break through the problems such as address, safety are low, memory space difficult extension;It can be applied to Network Video Surveillance technical field.

Description

A kind of video monitoring system based on cloud platform
Technical field
The present invention relates to Network Monitoring Technology field, especially a kind of video monitoring system based on cloud platform.
Background technology
Nowadays, many people are equipped with intelligent video camera head in enterprise or family.It, can as long as downloading an associated application program The case where to look at family with mobile phone at any time.Such as old man be in alone whether safety, whether nurse do one's duty with baby, either with or without into The events such as thief, and then camera video service is exposed under internet.There can be following hidden danger in this way:
When and occur numerous camera crack tools on internet, these illegal tools can often release some other people The picture that home cinema head takes, these tools can break through the IP address of camera by scanning, and then crack weak passwurd Username and password camera, to illegally obtaining video.
Second is that traditional video file stores immobilization, it is difficult to it extends, once user wants to change memory space according to demand, Just become very troublesome.
Third, when thing occurs, want to check that video reviews file, if just finding at this time, storage file has been damaged , suffer heavy losses.
Invention content
Present invention solves the technical problem that being to provide a kind of video monitoring system based on cloud platform;Solve Internet video Monitoring is easy illegal to break through the problems such as address, safety are low, memory space difficult extension.
The present invention solve above-mentioned technical problem technical solution be:
The system includes service bus, user management module, Cloud Server proxy module, network management module, divides Cloth storage service, application program;
The service bus provides the connection maincenter of modules interacting message;
The user management module provides cloud platform management, realizes user's registration or newly-increased;Cloud Server creates, and Camera is bound to the cloud disk of server;
The distributed storage service is to provide distributed block storage service,
The cloud service proxy module provides cloud disk storage management;
The application program is initiated the video file data that oneself camera is checked in request by user, and cloud platform establishes meeting Words, record the IP address of user application, and verify the legitimacy of user;
The network management module provides the serve port mapping of video file, and it is only open to use to limit the port The IP address of family application program could access, other IP address forbid accessing;Network management module also provides virtual firewall, and one Denier discovery has the port that IP address scans multiple Cloud Servers, and the IP address is just forbidden to access all services of cloud platform at once; Networking component carries out vulnerability scanning automatically, finds the loophole of Cloud Server or camera in time, and notifies user.
The cloud platform refers to the cloud computing platform for providing the service of calculating, and each user can create Cloud Server, often A user can only check the Cloud Server of oneself.
The Cloud Server, the virtual opetrating system for the cloud computing platform for referring to, that is, virtual machine.
The user management module provides cloud platform management and specifically includes:
(1) register or increase newly a new user;
(2) automatic to create a Cloud Server to Add User;
(3) it provides camera and is tied to Cloud Server;One or more camera is tied to inside Cloud Server, cloud The video file of every piece of corresponding camera of cloud disk storage, is one-to-one relationship between camera and cloud disk on server;Each Cloud Server can have polylith cloud disk;Each Cloud Server preserve the IP address of oneself camera of the user, port, user name and Password.
The distributed storage service refers to the block storage service that distributed storage provides, and each block storage can have one To multiple copies, each corresponding cloud disk of block storage;User can be with the size of dynamic expansion cloud disk, to meet different clients Video storage demand.
The cloud service proxy module is based on Intranet or proprietary network, passes through the IP address of camera, port, user name Newest video file is downloaded with password to be stored in inside cloud disk, is deleted expired video file, and constantly cycle is write, is ensured cloud The space of disk is not written full;According to user demand, cloud service agency also provide the password for supporting periodic replacement camera, avoids original The preset or too simple password that begins is cracked.
The present invention has the beneficial effect that:
1, the communication between camera of the present invention and cloud platform is based on Intranet or private network, and the serve port of camera will not be by The tool scans of public network arrive, and to be cracked from public network by tool, are very suitable for enterprise or operator is based on Intranet or private network The cloud platform of offer is connected to camera, then the video access of unified public network is provided by cloud platform;And cloud platform itself can be led It is dynamic that the tool scans IP address of public network is forbidden to access, prevent tool from breaking through camera shooting leading address, event notifies user in time;Cloud platform The password of periodic replacement camera is provided, and strong password is set, further strengthens the safety of camera.
2, video of the present invention is stored in Ceph distributed storage services, is real-time memory system, and advantage is easily to extend, nothing Single-point is different from the method difficulty extension for being generally basede on HDFS distributed file systems and there are the risks of Single Point of Faliure.
3, present invention storage video gives tacit consent to three copies, even if one of disk failures, video file can also positive frequentation It asks, is different from the video storage service of single-point storage.
Description of the drawings
The following further describes the present invention with reference to the drawings:
Fig. 1 is module map of the present invention;
Fig. 2 is flow chart of the present invention.
Specific implementation mode
There are many embodiments of the present invention, illustrates one of which by taking cloud platform as an example here, flow chart as shown in Fig. 2, Specific implementation process is as follows
1, cloud platform Adds User, and code is as follows:
2, user binds camera to Cloud Server, and code is as follows:
3, Cloud Server regularly updates newest video file, and code is as follows:
4, user checks video request by application program transmission
5, cloud platform provides mapping serve port, and order line example is as follows:
1) iptables-t nat-A PREROUTING-m agreements-p agreements -- dport source port-j DNAT--to- Destination destination addresses:Target port
2) iptables-t nat-APOSTROUTING-m agreements-p agreements -- dport target port-d destination addresses-j SNAT--to-source source addresses
Here agreement is typically udp or tcp
6, user accesses video file
Whole flow process terminates.
It is of the invention a kind of based on cloud platform video monitoring system, it is stored in a distributed manner by Intranet or proprietary network, nothing Single-point, more copies, forbid illegally scanning, periodically change camera password, vulnerability scanning is provided, a Cloud Server correspond to it is multiple The mode of cloud disk provides family or the reliable video monitoring cloud service of enterprise security.

Claims (7)

1. a kind of video monitoring system based on cloud platform, it is characterised in that:The system includes service bus, user management Module, Cloud Server proxy module, network management module, distributed storage service, application program;
The service bus provides the connection maincenter of modules interacting message;
The user management module provides cloud platform management, realizes user's registration or newly-increased;Cloud Server creates, and camera shooting Head is bound to the cloud disk of server;
The distributed storage service is to provide distributed block storage service,
The cloud service proxy module provides cloud disk storage management;
The application program is initiated the video file data that oneself camera is checked in request by user, and cloud platform establishes session, The IP address of user application is recorded, and verifies the legitimacy of user;
The network management module provides the serve port mapping of video file, and limits the port only opening is answered to user It could be accessed with the IP address of program, other IP address forbid accessing;Network management module also provides virtual firewall, once hair Existing IP address scans the port of multiple Cloud Servers, and the IP address is just forbidden to access all services of cloud platform at once;Network Component carries out vulnerability scanning automatically, finds the loophole of Cloud Server or camera in time, and notifies user.
2. system according to claim 1, it is characterised in that:
The cloud platform, refers to the cloud computing platform for providing the service of calculating, and each user can create Cloud Server, Mei Geyong Family can only check the Cloud Server of oneself.
The Cloud Server, the virtual opetrating system for the cloud computing platform for referring to, that is, virtual machine.
3. system according to claim 1, it is characterised in that:It is specific that the user management module provides cloud platform management Including:
(1) register or increase newly a new user;
(2) automatic to create a Cloud Server to Add User;
(3) it provides camera and is tied to Cloud Server;One or more camera is tied to inside Cloud Server, cloud service The video file of every piece of corresponding camera of cloud disk storage, is one-to-one relationship between camera and cloud disk on device;Each cloud clothes Business device can have polylith cloud disk;Each Cloud Server preserves the IP address of oneself camera of the user, port, user name and close Code.
4. system according to claim 2, it is characterised in that:It is specific that the user management module provides cloud platform management Including:
(1) register or increase newly a new user;
(2) automatic to create a Cloud Server to Add User;
(3) it provides camera and is tied to Cloud Server;One or more camera is tied to inside Cloud Server, cloud service The video file of every piece of corresponding camera of cloud disk storage, is one-to-one relationship between camera and cloud disk on device;Each cloud clothes Business device can have polylith cloud disk;Each Cloud Server preserves the IP address of oneself camera of the user, port, user name and close Code.
5. system according to any one of claims 1 to 4, it is characterised in that:The distributed storage service refers to point The block storage service that cloth storage provides, each block storage can have one or more copies, each corresponding cloud disk of block storage; User can be with the size of dynamic expansion cloud disk, to meet different clients video storage demand.
6. system according to any one of claims 1 to 4, it is characterised in that:The cloud service proxy module is based on interior Net or proprietary network download newest video file by the IP address of camera, port, username and password and are stored in cloud disk The inside deletes expired video file, and constantly cycle is write, and it is full to ensure that the space of cloud disk is not written;According to user demand, cloud clothes Business agency also provide the password for supporting periodic replacement camera, and original preset or too simple password is avoided to be cracked.
7. system according to claim 5, it is characterised in that:The cloud service proxy module is based on Intranet or proprietary net Network is downloaded newest video file by the IP address of camera, port, username and password and is stored in inside cloud disk, deletes Expired video file, and constantly cycle is write, and it is full to ensure that the space of cloud disk is not written;According to user demand, cloud service agency is also The password for supporting periodic replacement camera is provided, original preset or too simple password is avoided to be cracked.
CN201810171224.7A 2018-03-01 2018-03-01 A kind of video monitoring system based on cloud platform Pending CN108495082A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810171224.7A CN108495082A (en) 2018-03-01 2018-03-01 A kind of video monitoring system based on cloud platform

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810171224.7A CN108495082A (en) 2018-03-01 2018-03-01 A kind of video monitoring system based on cloud platform

Publications (1)

Publication Number Publication Date
CN108495082A true CN108495082A (en) 2018-09-04

Family

ID=63340911

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810171224.7A Pending CN108495082A (en) 2018-03-01 2018-03-01 A kind of video monitoring system based on cloud platform

Country Status (1)

Country Link
CN (1) CN108495082A (en)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111107379A (en) * 2019-12-30 2020-05-05 安徽三拓智能科技有限公司 Cloud storage and on-demand method based on distributed videos
CN111949732A (en) * 2020-08-20 2020-11-17 上海七牛信息技术有限公司 System and method for real-time storage of massive concurrent messages
CN112165603A (en) * 2020-09-01 2021-01-01 北京都是科技有限公司 Artificial intelligence management system and management method of artificial intelligence processing device
CN113094771A (en) * 2021-03-23 2021-07-09 橙色云互联网设计有限公司 Method, device and storage medium for matching application program to design object

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140223301A1 (en) * 2013-01-10 2014-08-07 Tyco Safety Products Canada Ltd. Security system and method with help and login for customization
CN104270338A (en) * 2014-09-01 2015-01-07 刘文印 A method and system of electronic identity registration and authentication login
CN105516664A (en) * 2015-12-11 2016-04-20 深圳市奔迈科技有限公司 Intelligent monitoring system based on cloud storage and monitoring method thereof
CN105635686A (en) * 2015-12-31 2016-06-01 宁波公众信息产业有限公司 Safety system of network video monitoring
CN106789981A (en) * 2016-12-07 2017-05-31 北京奇虎科技有限公司 Flow control methods, apparatus and system based on WAF
CN107393236A (en) * 2017-08-08 2017-11-24 南京尊视软件科技有限公司 A kind of multifunctional intellectual forest fire protection broadcast device based on cloud service

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140223301A1 (en) * 2013-01-10 2014-08-07 Tyco Safety Products Canada Ltd. Security system and method with help and login for customization
CN104270338A (en) * 2014-09-01 2015-01-07 刘文印 A method and system of electronic identity registration and authentication login
CN105516664A (en) * 2015-12-11 2016-04-20 深圳市奔迈科技有限公司 Intelligent monitoring system based on cloud storage and monitoring method thereof
CN105635686A (en) * 2015-12-31 2016-06-01 宁波公众信息产业有限公司 Safety system of network video monitoring
CN106789981A (en) * 2016-12-07 2017-05-31 北京奇虎科技有限公司 Flow control methods, apparatus and system based on WAF
CN107393236A (en) * 2017-08-08 2017-11-24 南京尊视软件科技有限公司 A kind of multifunctional intellectual forest fire protection broadcast device based on cloud service

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111107379A (en) * 2019-12-30 2020-05-05 安徽三拓智能科技有限公司 Cloud storage and on-demand method based on distributed videos
CN111949732A (en) * 2020-08-20 2020-11-17 上海七牛信息技术有限公司 System and method for real-time storage of massive concurrent messages
CN112165603A (en) * 2020-09-01 2021-01-01 北京都是科技有限公司 Artificial intelligence management system and management method of artificial intelligence processing device
CN112165603B (en) * 2020-09-01 2023-04-25 北京都是科技有限公司 Artificial intelligence management system and management method of artificial intelligence processing equipment
CN113094771A (en) * 2021-03-23 2021-07-09 橙色云互联网设计有限公司 Method, device and storage medium for matching application program to design object
CN113094771B (en) * 2021-03-23 2021-10-12 橙色云互联网设计有限公司 Method, device and storage medium for matching application program to design object

Similar Documents

Publication Publication Date Title
US11695744B2 (en) Using credentials stored in different directories to access a common endpoint
US20230117023A1 (en) Event-Based User State Synchronization in a Local Cloud of a Cloud Storage System
US9231973B1 (en) Automatic intervention
US9521217B2 (en) System and method for remote access to cloud-enabled network devices
US8904511B1 (en) Virtual firewalls for multi-tenant distributed services
US20170289124A1 (en) System And Method For Efficient Replication Of And Access To Application Specific Environments And Data
US8214451B2 (en) Network service version management
US7647430B2 (en) Remote command framework for devices
US9077687B2 (en) System and method for secure machine-to-machine communications
US8011000B2 (en) Public network access server having a user-configurable firewall
CN108495082A (en) A kind of video monitoring system based on cloud platform
Piatek et al. Challenges and directions for monitoring P2P file sharing networks, or, why my printer received a DMCA takedown notice
US8645503B1 (en) Accelerated data uploading
JP2016530814A (en) Gateway device to block a large number of VPN connections
JP5340041B2 (en) Access control system, access control method, and program
US9871778B1 (en) Secure authentication to provide mobile access to shared network resources
CN107948235B (en) JAR-based cloud data security management and audit device
CN112615864A (en) Role-based access control management system and method implemented by block chain
CN112217910B (en) Video service access method, device, network equipment and storage medium
CN107172094B (en) Method and system for accessing service program on super computing center
KR20170047533A (en) Method for Blocking Unauthorized Roundabout Access
JP5784059B2 (en) Communication control method, local device, information processing terminal, communication path establishment support device, and program
IL230407A (en) System and method for providing network and computer firewall protection with dynamic address isolation to a device

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20180904