CN116339777A - System patch processing method, device, computer equipment and storage medium - Google Patents

System patch processing method, device, computer equipment and storage medium Download PDF

Info

Publication number
CN116339777A
CN116339777A CN202310268759.7A CN202310268759A CN116339777A CN 116339777 A CN116339777 A CN 116339777A CN 202310268759 A CN202310268759 A CN 202310268759A CN 116339777 A CN116339777 A CN 116339777A
Authority
CN
China
Prior art keywords
patch
inspection
target system
information
maintenance
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202310268759.7A
Other languages
Chinese (zh)
Inventor
类铭辰
邹萌萍
洪伟
房志明
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Industrial and Commercial Bank of China Ltd ICBC
Original Assignee
Industrial and Commercial Bank of China Ltd ICBC
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Industrial and Commercial Bank of China Ltd ICBC filed Critical Industrial and Commercial Bank of China Ltd ICBC
Priority to CN202310268759.7A priority Critical patent/CN116339777A/en
Publication of CN116339777A publication Critical patent/CN116339777A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F8/00Arrangements for software engineering
    • G06F8/60Software deployment
    • G06F8/65Updates
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/50Monitoring users, programs or devices to maintain the integrity of platforms, e.g. of processors, firmware or operating systems
    • G06F21/57Certifying or maintaining trusted computer platforms, e.g. secure boots or power-downs, version controls, system software checks, secure updates or assessing vulnerabilities
    • G06F21/577Assessing vulnerabilities and evaluating computer system security
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F8/00Arrangements for software engineering
    • G06F8/70Software maintenance or management
    • G06F8/71Version control; Configuration management

Landscapes

  • Engineering & Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The application relates to a system patch processing method, a system patch processing device, computer equipment and a storage medium. The method comprises the following steps: responding to a system patch inspection instruction aiming at a target system, and acquiring patch inspection execution frequency and patch inspection execution time; according to the patch inspection execution frequency and the patch inspection execution time, performing inspection operation on the patch installation condition of the target system to obtain an inspection result of the target system; determining a full patch abnormality list under the condition that the inspection result of the target system is characterized as that the patch of the target system is abnormal; determining a matching result of the patch professional group according to the full patch exception list, the server application information and the human resource information table; and generating system patch maintenance information under the condition that the corresponding patch maintenance professional group exists in the patch professional group matching result. By adopting the method, the vulnerability blocking efficiency of the server can be improved, the hacking is reduced, and the security of the server is improved.

Description

System patch processing method, device, computer equipment and storage medium
Technical Field
The present invention relates to the field of computer technology, and in particular, to a system patch processing method, apparatus, computer device, storage medium, and computer program product.
Background
With the development of computer technology, computer security technology is presented, and with the popularization of computers, the scale of data center servers is explosively increased, wherein the number of servers in some enterprises reaches thousands of levels, the problem of server security holes is extremely important, hackers can attack the servers through holes, and the problems that server sensitive data can be stolen and the server file structure is destroyed are extremely troublesome.
In the traditional technology, server maintenance personnel are required to check the loopholes of the server one by one in the face of thousands of levels of servers, and under the condition that the loopholes of the server are found, the loopholes of the server are blocked by using a system patch, however, the situation that the server maintenance personnel find and gather the patches is a fly break is only relied on, so that the loopholes of the server are blocked in time easily, hacking is caused, and the security of the server is low.
Disclosure of Invention
In view of the foregoing, it is desirable to provide a system patch processing method, apparatus, computer device, computer readable storage medium, and computer program product that can improve server vulnerability blocking efficiency, reduce hacking, and improve security of a server.
In a first aspect, the present application provides a system patch processing method. The method comprises the following steps: responding to a system patch inspection instruction aiming at a target system, and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system; executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized in that the patches of the target system are abnormal; determining a patch professional group matching result corresponding to the target system according to the full patch exception list, server application information corresponding to the system configuration platform and a human resource information table corresponding to a human resource library; generating system patch maintenance information under the condition that the patch professional group matching result is determined to have a corresponding patch maintenance professional group; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
In one embodiment, the determining, according to the full-patch anomaly list, the server application information corresponding to the system configuration platform, and the human resource information table corresponding to the human resource library, a patch professional group matching result corresponding to the target system includes: matching the full patch abnormal list with server application information corresponding to the system configuration platform, and determining maintainer information and application name information corresponding to the system configuration platform; and respectively matching the maintainer information and the application name information with a human resource information table corresponding to the human resource library, and determining a patch professional group matching result corresponding to the target system.
In one embodiment, the human resources information table includes a professional information table and an application manager information table; the step of matching the maintainer information and the application name information with the human resource information table corresponding to the human resource library respectively, and determining the matching result of the patch professional group corresponding to the target system comprises the following steps: matching the maintainer information with a professional information table in the human resource library to obtain a maintainer matching result; matching the application name information with an application manager information table in the human resource library to obtain a manager matching result; and determining a patch professional group matching result corresponding to the target system under the condition that the maintainer matching result and the manager matching result meet preset conditions.
In one embodiment, the method further comprises: generating human hand patch maintenance information under the condition that the patch professional group matching result is determined to not have the corresponding patch maintenance professional group; the human hand patch maintenance information is used for notifying that the maintenance object is selected from each patch maintenance professional group to install the system patch on the system.
In one embodiment, after the step of generating the system patch maintenance information, if it is determined that the patch panel matching result includes a corresponding patch maintenance panel, the method further includes: acquiring first system patch installation information corresponding to the system patch maintenance information and second system patch installation information corresponding to the human hand patch maintenance information; integrating the first system patch installation information and the second system patch installation information into a database, and updating patch update data of the database.
In one embodiment, the performing the inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system includes: determining at least one patch inspection item corresponding to the target system according to the patch inspection execution frequency and the patch inspection execution time; and carrying out inspection on the patch installation condition of the system according to each patch inspection project, the patch inspection execution frequency and the patch inspection execution time to obtain the inspection result of the target system.
In one embodiment, the patch inspection item includes a production patch inspection item and an office patch inspection item; the step of inspecting the patch installation condition of the system according to each patch inspection project, the patch inspection execution frequency and the patch inspection execution time to obtain the inspection result of the target system comprises the following steps: according to the patch inspection execution frequency and the patch inspection execution time, inspecting the patch installation condition of the production patch inspection project of the target system to obtain a first target system inspection result; and inspecting the patch installation condition of the office patch inspection project of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of a second target system; and integrating the first target system inspection result and the second target system inspection result to obtain the target system inspection result.
In a second aspect, the present application further provides a system patch processing apparatus. The device comprises: the system comprises a data acquisition module, a control module and a control module, wherein the data acquisition module is used for responding to a system patch inspection instruction aiming at a target system and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system; the patch inspection module is used for executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system; the inventory generation module is used for determining a full patch abnormality inventory corresponding to the target system under the condition that the inspection result of the target system is characterized as that the patches of the target system are abnormal; the data matching module is used for determining a matching result of the patch professional group corresponding to the target system according to the full patch abnormal list, the server application information corresponding to the system configuration platform and the human resource information table corresponding to the human resource library; the maintenance notification module is used for generating system patch maintenance information under the condition that the corresponding patch maintenance professional group exists in the patch professional group matching result; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
In a third aspect, the present application also provides a computer device. The computer device comprises a memory storing a computer program and a processor which when executing the computer program performs the steps of: responding to a system patch inspection instruction aiming at a target system, and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system; executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized in that the patches of the target system are abnormal; determining a patch professional group matching result corresponding to the target system according to the full patch exception list, server application information corresponding to the system configuration platform and a human resource information table corresponding to a human resource library; generating system patch maintenance information under the condition that the patch professional group matching result is determined to have a corresponding patch maintenance professional group; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
In a fourth aspect, the present application also provides a computer-readable storage medium. The computer readable storage medium having stored thereon a computer program which when executed by a processor performs the steps of: responding to a system patch inspection instruction aiming at a target system, and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system; executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized in that the patches of the target system are abnormal; determining a patch professional group matching result corresponding to the target system according to the full patch exception list, server application information corresponding to the system configuration platform and a human resource information table corresponding to a human resource library; generating system patch maintenance information under the condition that the patch professional group matching result is determined to have a corresponding patch maintenance professional group; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
In a fifth aspect, the present application also provides a computer program product. The computer program product comprises a computer program which, when executed by a processor, implements the steps of: responding to a system patch inspection instruction aiming at a target system, and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system; executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized in that the patches of the target system are abnormal; determining a patch professional group matching result corresponding to the target system according to the full patch exception list, server application information corresponding to the system configuration platform and a human resource information table corresponding to a human resource library; generating system patch maintenance information under the condition that the patch professional group matching result is determined to have a corresponding patch maintenance professional group; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
The system patch processing method, the system patch processing device, the computer equipment, the storage medium and the computer program product acquire patch patrol execution frequency and patch patrol execution time for a target system by responding to a system patch patrol instruction for the target system; according to the patch inspection execution frequency and the patch inspection execution time, performing inspection operation on the patch installation condition of the target system to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized as that the patch of the target system is abnormal; determining a matching result of a patch professional group corresponding to the target system according to the full patch exception list, the server application information corresponding to the system configuration platform and the human resource information table corresponding to the human resource library; generating system patch maintenance information under the condition that the corresponding patch maintenance professional group exists in the patch professional group matching result; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
Setting patch inspection execution frequency and patch inspection execution time to carry out regular inspection in response to an inspection task, summarizing the non-patched condition of production and office in a target system, and configuring the linkage of related tool platforms such as a management system (CMDB), a personnel library, an operation execution tool and the like to obtain corresponding maintainers; and further comparing the personnel library to summarize the condition of not installing the patches of each professional group, informing each professional group to install the patches in time, and if no maintainer is found, summarizing and sending the patches to the management post personnel for manual confirmation. The method can provide friendly unified inspection result view for operation and maintenance personnel, solve the blank of automatic inspection of the data center patch, ensure timely installation of an application maintainer which is informed of the fact that the patch is not installed in time, facilitate improvement of vulnerability blocking efficiency of a server, reduce hacking and improve safety of the server.
Drawings
FIG. 1 is an application environment diagram of a system patch processing method in one embodiment;
FIG. 2 is a flow chart of a system patch processing method according to one embodiment;
FIG. 3 is a flowchart of a method for determining a matching result of a patch panel in one embodiment;
FIG. 4 is a flowchart of another embodiment of a method for determining a matching result of a patch panel;
FIG. 5 is a flowchart illustrating a method for integrating patch installation information according to one embodiment;
FIG. 6 is a flow chart of a method for obtaining a target system inspection result in one embodiment;
FIG. 7 is a flowchart of a method for obtaining a target system inspection result in another embodiment;
FIG. 8 is a functional flow diagram of a system patch processing method according to one embodiment;
FIG. 9 is a block diagram of a system patch processing device in one embodiment;
fig. 10 is an internal structural view of a computer device in one embodiment.
Detailed Description
In order to make the objects, technical solutions and advantages of the present application more apparent, the present application will be further described in detail with reference to the accompanying drawings and examples. It should be understood that the specific embodiments described herein are for purposes of illustration only and are not intended to limit the present application.
The system patch processing method provided by the embodiment of the application can be applied to an application environment shown in fig. 1. Wherein the terminal 102 communicates with the server 104 via a network. The data storage system may store data that the server 104 needs to process. The data storage system may be integrated on the server 104 or may be located on a cloud or other network server. In response to the system patch inspection instruction for the target system, the server 104 acquires patch inspection execution frequency and patch inspection execution time for the target system from the terminal 102; according to the patch inspection execution frequency and the patch inspection execution time, performing inspection operation on the patch installation condition of the target system to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized as that the patch of the target system is abnormal; determining a matching result of a patch professional group corresponding to the target system according to the full patch exception list, the server application information corresponding to the system configuration platform and the human resource information table corresponding to the human resource library; generating system patch maintenance information under the condition that the corresponding patch maintenance professional group exists in the patch professional group matching result; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system. The terminal 102 may be, but not limited to, various personal computers, notebook computers, smart phones, tablet computers, internet of things devices, and portable wearable devices, where the internet of things devices may be smart speakers, smart televisions, smart air conditioners, smart vehicle devices, and the like. The portable wearable device may be a smart watch, smart bracelet, headset, or the like. The server 104 may be implemented as a stand-alone server or as a server cluster of multiple servers.
In one embodiment, as shown in fig. 2, a system patch processing method is provided, and the method is applied to the server in fig. 1 for illustration, and includes the following steps:
step 202, in response to a system patch inspection instruction for a target system, acquiring patch inspection execution frequency and patch inspection execution time for the target system.
The target system may be a computer system used by the resource platform, for example: windows system, linux system, unix system, macOS system, android system, iOS system, etc., wherein the resource platform can use a single system or can use a plurality of systems at the same time.
The system patch inspection instruction can be an inspection instruction of whether each system used by the resource platform has a vulnerability or not, and the instruction can be sent to the server from the terminal or can be directly input from the interaction end of the server.
The patch inspection execution frequency may be a frequency of performing vulnerability inspection on the target system, that is, the number of times that the server performs inspection on the vulnerabilities of the loaded system in unit time.
The patch patrol execution time may be a time period for executing vulnerability patrol for the target system, where the patch patrol execution time may set a start time and an end time at the same time, or may set the start time or the end time singly.
Specifically, in response to a system patch inspection instruction for a target system input from the terminal 102 or input from the interactive end of the server 104, the server 104 obtains patch inspection execution frequency and patch inspection execution time for the target system, where the patch inspection execution frequency may be the number of times the patch inspection is performed in one day, the number of times the patch inspection is performed in one month, or the number of times the patch inspection is performed in any time period. When the server responds to the patch inspection execution frequency and the patch inspection execution time, corresponding program codes are executed from the preset computer program. The patch inspection execution frequency and the patch inspection execution time are input to the central processing unit as single data, or a plurality of data can be input to the central processing unit at the same time.
And 204, executing the inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system.
The patch installation condition may be an installation condition of a patch for the vulnerability in the target system.
The target system inspection result may be whether the system patch obtained by performing vulnerability inspection on the target system has an abnormal result when the patch inspection execution frequency and the patch inspection execution time are used as control variables.
Specifically, setting patch patrol execution frequency and patch patrol execution time in the server, and determining at least one patch patrol item which needs to patrol the target system under the patch patrol execution frequency and patch patrol execution time when the target system time in the computer is in the patch patrol execution time (with patrol start time and patrol end time), or determining the patch centralized management server corresponding to each patch patrol item by the patch resource platform according to each patch patrol item when the target system time is after the patch patrol execution time (with patrol start time) or before the patch patrol execution time (with patrol end time). For example, the patch inspection item that needs to inspect the target system is determined to be a production patch inspection item and an office patch inspection item.
And aiming at the production patch inspection project, determining whether the target system time meets the patch inspection execution time again, and if so, carrying out inspection on the patch installation condition of the production patch inspection project aiming at the target system based on the set patch inspection execution frequency to obtain a first target system inspection result. If the target system time does not satisfy the condition, the execution of the inspection of the patch installation condition is stopped, and the reason for stopping the execution of the inspection of the patch installation condition is returned. And similarly, aiming at the office patch inspection project, determining whether the target system time meets the patch inspection execution time again, and if so, carrying out inspection on the patch installation condition of the office patch inspection project aiming at the target system based on the set patch inspection execution frequency to obtain a second target system inspection result. If the target system time does not satisfy the condition, the execution of the inspection of the patch installation condition is stopped, and the reason for stopping the execution of the inspection of the patch installation condition is returned.
And 206, determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized as that the patches of the target system are abnormal.
The full-quantity patch anomaly list may be a list of patch installation conditions of the target system, and generally includes that the patch is not downloaded, that the patch is downloaded but not installed, that the patch is installed but anomaly, and that the patch is installed but not restarted.
Specifically, if the patch installation situation of the target system is found to represent that the patch is abnormal after the patch installation situation of the target system is inspected, the patch inspection item corresponding to the abnormality of the patch is judged. If the patch has abnormality aiming at the production patch inspection project, the production patch management server is connected, and the production patch management server is used for acquiring a full-quantity patch abnormality list corresponding to the production patch inspection project. If the patch has abnormality aiming at the office patch inspection project, the office patch management server is connected, and the office patch management server is used for acquiring a full patch abnormality list corresponding to the office patch inspection project. Further, if the patch is abnormal for the production patch inspection item and the office patch inspection item, the production patch management server and the office patch management server are connected at the same time, and a full patch abnormal list corresponding to the production patch inspection item and the office patch inspection item is obtained.
And step 208, determining a patch professional group matching result corresponding to the target system according to the full patch exception list, the server application information corresponding to the system configuration platform and the human resource information table corresponding to the human resource library.
The server application information may be information stored by a configuration management platform in the server 104, where the server application information includes an application maintainer, an application name, and the like.
The human resource information table may be an information table stored in a human resource library in the server 104, where the human resource information table includes a correspondence between each maintainer and a patch professional group.
The matching result of the patch professional group can be that the professional group corresponding to the abnormal patch in the full patch abnormal list can be matched through the server application information and the human resource information table.
Specifically, the configuration management platform in the linkage server 104 is used for retrieving server application information of the configuration management platform, and further, the full-quantity patch anomaly list and the server application information are matched, and maintenance personnel information and application name information corresponding to the anomaly patches in the full-quantity patch anomaly list can be found out from the server application information.
Based on the maintainer information obtained by matching, the maintainer information is matched with a professional information table in a human resource library, and maintainers corresponding to the abnormal patches in the full-quantity patch abnormal list can be found out from the professional information table, so that a maintainer matching result is obtained. Similarly, based on the application name information obtained by matching, the application name information is matched with an application manager information table in a human resource library, and a manager corresponding to the abnormal patch in the full-quantity patch abnormal list can be found out from the application manager information table, so that a manager matching result is obtained. If the maintainer matching result and the manager matching result can meet the conditions of personnel allocation, professional matching and the like, integrating the maintainer matching result and the manager matching result to obtain a patch professional group matching result corresponding to the target system.
In step 210, if it is determined that the patch professional group matching result includes a corresponding patch maintenance professional group, system patch maintenance information is generated.
The patch maintenance professional group can be maintenance staff with various professional knowledge for maintaining the target system.
The system patch maintenance information may be information for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch on the target system.
Specifically, in the patch maintenance professional group stored in the server 104, if the matching result of the patch maintenance professional group can be satisfied, that is, if the matching result of the patch maintenance professional group is matched with the matching result of the patch maintenance professional group, the professional group name of the patch maintenance professional group is obtained, and the system patch maintenance information is generated. The system patch maintenance information can be sent to the patch maintenance professional group for confirmation through mail and short message notification, and patch installation is arranged on the target system.
Similarly, in the patch maintenance professional group stored in the server 104, when the matching result of the patch professional group cannot be satisfied, that is, when the corresponding patch maintenance professional group cannot be found from each patch maintenance professional group, and when the patch maintenance professional group is matched with the matching result of the patch professional group, the human hand patch maintenance information is directly generated. The manual patch maintenance information can inform maintenance personnel of the server to arrange patch installation on the target system.
After the patch maintenance professional group or a maintainer of the server performs patch installation on the target system, the server 104 acquires system patch installation information corresponding to the system patch maintenance information, namely, system patch installation information after the patch maintenance professional group performs patch installation on the target system; and acquiring system patch installation information corresponding to the human hand patch maintenance information, namely the system patch installation information after the maintenance personnel of the server perform patch installation on the target system. And integrating the system patch installation information obtained by installing the patch from two aspects into a database, and updating the original patch data by utilizing the obtained system patch installation information. The patrol execution code for the target system may use J2EE as a development language. Fig. 8 is a functional flowchart of a system patch processing method according to steps 202 to 210.
In the system patch processing method, the patch inspection execution frequency and the patch inspection execution time for the target system are obtained by responding to the system patch inspection instruction for the target system; according to the patch inspection execution frequency and the patch inspection execution time, performing inspection operation on the patch installation condition of the target system to obtain an inspection result of the target system; determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized as that the patch of the target system is abnormal; determining a matching result of a patch professional group corresponding to the target system according to the full patch exception list, the server application information corresponding to the system configuration platform and the human resource information table corresponding to the human resource library; generating system patch maintenance information under the condition that the corresponding patch maintenance professional group exists in the patch professional group matching result; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
Setting patch inspection execution frequency and patch inspection execution time to carry out regular inspection in response to an inspection task, summarizing the non-patched condition of production and office in a target system, and configuring the linkage of related tool platforms such as a management system (CMDB), a personnel library, an operation execution tool and the like to obtain corresponding maintainers; and further comparing the personnel library to summarize the condition of not installing the patches of each professional group, informing each professional group to install the patches in time, and if no maintainer is found, summarizing and sending the patches to the management post personnel for manual confirmation. The method can provide friendly unified inspection result view for operation and maintenance personnel, solve the blank of automatic inspection of the data center patch, ensure timely installation of an application maintainer which is informed of the fact that the patch is not installed in time, facilitate improvement of vulnerability blocking efficiency of a server, reduce hacking and improve safety of the server.
In one embodiment, as shown in fig. 3, determining a matching result of a patch professional group corresponding to a target system according to a full patch anomaly list, server application information corresponding to a system configuration platform, and a human resource information table corresponding to a human resource library includes:
Step 302, matching the full patch anomaly list with server application information corresponding to the system configuration platform, and determining maintainer information and application name information corresponding to the system configuration platform.
The maintainer information may be information of each system maintainer recorded in the system configuration platform, and the maintainer information includes name, work number, specialty, adequacy field, level and the like.
The application name information may be information of names of respective applications in the system configuration platform.
Specifically, the configuration management platform in the linkage server 104 is used for retrieving server application information of the configuration management platform, and further, the full-quantity patch anomaly list and the server application information are matched, and maintenance personnel information and application name information corresponding to the anomaly patches in the full-quantity patch anomaly list can be found out from the server application information.
And 304, matching the maintainer information and the application name information with a human resource information table corresponding to the human resource library respectively, and determining a patch professional group matching result corresponding to the target system.
Specifically, based on the maintainer information obtained by matching, the maintainer information is matched with a professional information table in a human resource library, and maintainers corresponding to the abnormal patches in the full-quantity patch abnormal list can be found out from the professional information table, so that a maintainer matching result is obtained. Similarly, based on the application name information obtained by matching, the application name information is matched with an application manager information table in a human resource library, and a manager corresponding to the abnormal patch in the full-quantity patch abnormal list can be found out from the application manager information table, so that a manager matching result is obtained. And (5) matching the maintenance personnel and the management personnel to obtain the matching result of the patch professional group corresponding to the target system.
In this embodiment, the matching result of the full-volume patch anomaly list and the server application information is further matched with the human resource information table, so that a patch professional group which can accurately match to solve the anomaly patch condition in the full-volume patch anomaly list can be achieved, and the efficiency of patch maintenance on the target system can be improved.
In one embodiment, as shown in fig. 4, matching the maintainer information and the application name information with a human resource information table corresponding to a human resource library, and determining a matching result of a patch professional group corresponding to a target system includes:
and step 402, matching the maintainer information with a professional information table in a human resource library to obtain a maintainer matching result.
The maintainer matching result may be a matching result obtained by matching maintainer information with a professional information table.
Specifically, based on the maintainer information obtained by matching, the maintainer information is matched with a professional information table in a human resource library, and maintainers corresponding to the abnormal patches in the full-quantity patch abnormal list can be found out from the professional information table, so that a maintainer matching result is obtained.
And step 404, matching the application name information with an application manager information table in the human resource library to obtain a manager matching result.
The manager matching result may be a matching result obtained by matching the application name information with the application manager information.
Specifically, based on the application name information obtained by matching, the application name information is matched with an application manager information table in a human resource library, and a manager corresponding to the abnormal patch in the full-volume patch abnormal list can be found out from the application manager information table, so that a manager matching result is obtained.
Step 406, determining a patch professional group matching result corresponding to the target system under the condition that the maintainer matching result and the manager matching result meet the preset conditions.
Specifically, if the maintainer matching result and the manager matching result can meet the conditions of personnel allocation, professional matching and the like, integrating the maintainer matching result and the manager matching result to obtain a patch professional group matching result corresponding to the target system.
In this embodiment, by matching the maintainer information with the professional information table and matching the application name information with the application manager information table, the patch professional group capable of containing the target maintainer is accurately selected, so that the professionality of the patch professional group is ensured, and the security of patch maintenance on the target system is improved.
In one embodiment, the method further comprises:
and generating human hand patch maintenance information under the condition that the patch professional group matching result is determined to not exist in the corresponding patch maintenance professional group.
The human hand patch maintenance information may be information for notifying that a maintenance object is selected from each patch maintenance professional group to install a system patch to the system.
Specifically, in the patch maintenance professional group stored in the server 104, when the matching result of the patch professional group cannot be satisfied, that is, when the corresponding patch maintenance professional group cannot be found from each patch maintenance professional group, and when the patch maintenance professional group is matched with the matching result of the patch professional group, the human hand patch maintenance information is directly generated. The manual patch maintenance information can inform maintenance personnel of the server to arrange patch installation on the target system.
In this embodiment, when the matching result of the patch professional group does not have the corresponding patch maintenance professional group, the method is converted into notifying the corresponding maintenance personnel to perform manual maintenance, so that maintenance on the patch defect of the target system can be still maintained under the condition that the professional maintenance group fails to meet the maintenance condition, and loss caused by patch problems of the target system is reduced.
In one embodiment, as shown in fig. 5, after the step of generating the system patch maintenance information, in a case where it is determined that the patch panel matching result has a corresponding patch maintenance panel, the method further includes:
step 502, obtaining first system patch installation information corresponding to the system patch maintenance information and second system patch installation information corresponding to the human hand patch maintenance information.
The first system patch installation information may be patch installation information generated after patch maintenance is performed by the patch maintenance professional group.
The second system patch installation information may be patch installation information generated after patch maintenance is performed by a maintainer of a part of servers of the patch maintenance professional group.
Specifically, the server 104 obtains system patch installation information corresponding to the system patch maintenance information, that is, first system patch installation information after the patch maintenance professional group performs patch installation on the target system; and acquiring system patch installation information corresponding to the human hand patch maintenance information, namely second system patch installation information after the maintenance personnel of the server perform patch installation on the target system.
Step 504, integrating the first system patch installation information and the second system patch installation information into a database, and updating patch update data of the database.
Specifically, system patch installation information obtained by installing patches from two aspects is integrated into a database, and original patch data is updated by using the obtained system patch installation information. The database may be a database developed by MySQL, jetty, or quatz.
In this embodiment, the maintenance information after the patch maintenance of the target system is input to the database and the data of the database is updated, so that the iteration of the patch maintenance of the target system can be kept and recorded, which is helpful for searching a corresponding solution when the target system discovers the vulnerability, and improving the security of the target system.
In one embodiment, as shown in fig. 6, according to the patch inspection execution frequency and the patch inspection execution time, performing an inspection operation on the patch installation condition of the target system to obtain an inspection result of the target system, including:
step 602, determining at least one patch inspection item corresponding to the target system according to the patch inspection execution frequency and the patch inspection execution time.
The patch inspection item can be content for inspecting the target system, wherein the patch inspection item comprises a production patch inspection item and an office patch inspection item.
Specifically, setting patch patrol execution frequency and patch patrol execution time in the server, and determining at least one patch patrol item which needs to patrol the target system under the patch patrol execution frequency and patch patrol execution time when the target system time in the computer is in the patch patrol execution time (with patrol start time and patrol end time), or determining the patch centralized management server corresponding to each patch patrol item by the patch resource platform according to each patch patrol item when the target system time is after the patch patrol execution time (with patrol start time) or before the patch patrol execution time (with patrol end time). For example, the patch inspection item that needs to inspect the target system is determined to be a production patch inspection item and an office patch inspection item.
Step 604, inspecting the patch installation condition of the system according to each patch inspection project, patch inspection execution frequency and patch inspection execution time to obtain an inspection result of the target system.
Specifically, for the production patch inspection project, whether the target system time meets the patch inspection execution time is confirmed again, if the target system time meets the condition, the inspection of the patch installation condition of the production patch inspection project is carried out for the target system based on the set patch inspection execution frequency, and the first target system inspection result is obtained. If the target system time does not satisfy the condition, the execution of the inspection of the patch installation condition is stopped, and the reason for stopping the execution of the inspection of the patch installation condition is returned. And similarly, aiming at the office patch inspection project, determining whether the target system time meets the patch inspection execution time again, and if so, carrying out inspection on the patch installation condition of the office patch inspection project aiming at the target system based on the set patch inspection execution frequency to obtain a second target system inspection result. If the target system time does not satisfy the condition, the execution of the inspection of the patch installation condition is stopped, and the reason for stopping the execution of the inspection of the patch installation condition is returned. Integrating the first target system inspection result and the second target system inspection result according to a preset integration rule to obtain the target system inspection result.
In the embodiment, patch inspection items for inspecting the target system are refined, so that patch inspection for the target system has stronger purpose, different arrangements of inspection are realized on different inspection items, the occupation of resources of a server is saved, and the calculation and operation efficiency is improved.
In one embodiment, as shown in fig. 7, according to each patch inspection project, patch inspection execution frequency and patch inspection execution time, inspecting the patch installation condition of the system to obtain a target system inspection result, including:
step 702, performing inspection on the patch installation condition of the production patch inspection project of the target system according to the patch inspection execution frequency and the patch inspection execution time, and obtaining an inspection result of the first target system.
The production patch inspection project may be inspection of a patch in terms of production of the target system.
The first target system inspection result may be an inspection result obtained by inspecting the patch in terms of production of the target system.
Specifically, for the production patch inspection project, whether the target system time meets the patch inspection execution time is confirmed again, if the target system time meets the condition, the inspection of the patch installation condition of the production patch inspection project is carried out for the target system based on the set patch inspection execution frequency, and the first target system inspection result is obtained. If the target system time does not satisfy the condition, the execution of the inspection of the patch installation condition is stopped, and the reason for stopping the execution of the inspection of the patch installation condition is returned.
And step 704, performing inspection on the patch installation condition of the office patch inspection project of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the second target system.
The office patch inspection project may be inspection of a patch in an office of the target system.
The second target system inspection result may be an inspection result obtained by inspecting the patch in the office of the target system.
Specifically, for the office patch inspection project, whether the target system time meets the patch inspection execution time is confirmed again, if the target system time meets the condition, the inspection of the patch installation condition of the office patch inspection project is performed for the target system based on the set patch inspection execution frequency, and a second target system inspection result is obtained. If the target system time does not satisfy the condition, the execution of the inspection of the patch installation condition is stopped, and the reason for stopping the execution of the inspection of the patch installation condition is returned.
And step 706, integrating the first target system inspection result and the second target system inspection result to obtain a target system inspection result.
Specifically, integrating the first target system inspection result and the second target system inspection result according to a preset integration rule to obtain the target system inspection result.
In the embodiment, the inspection item is determined to be the production patch inspection item and the office patch inspection item, and then inspection is performed, so that the resource platform can be aimed at the inspection in real time, excessive calculation tasks are avoided, and the utilization rate of computer resources is improved.
It should be understood that, although the steps in the flowcharts related to the above embodiments are sequentially shown as indicated by arrows, these steps are not necessarily sequentially performed in the order indicated by the arrows. The steps are not strictly limited to the order of execution unless explicitly recited herein, and the steps may be executed in other orders. Moreover, at least some of the steps in the flowcharts described in the above embodiments may include a plurality of steps or a plurality of stages, which are not necessarily performed at the same time, but may be performed at different times, and the order of the steps or stages is not necessarily performed sequentially, but may be performed alternately or alternately with at least some of the other steps or stages.
Based on the same inventive concept, the embodiment of the application also provides a system patch processing device for implementing the above related system patch processing method. The implementation of the solution provided by the device is similar to that described in the above method, so the specific limitations in the embodiments of one or more system patch processing devices provided below can be referred to above for a limitation of a system patch processing method, which is not repeated here
In one embodiment, as shown in fig. 9, there is provided a system patch processing apparatus, including: a data acquisition module 902, a patch inspection module 904, a manifest generation module 906, a data matching module 908, and a maintenance notification module 910, wherein:
the data obtaining module 902 is configured to obtain patch inspection execution frequency and patch inspection execution time for a target system in response to a system patch inspection instruction for the target system;
the patch inspection module 904 is configured to perform inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time, so as to obtain an inspection result of the target system;
the manifest generation module 906 is configured to determine a full patch anomaly manifest corresponding to the target system when the inspection result of the target system indicates that the patch of the target system is abnormal;
The data matching module 908 is configured to determine a matching result of the patch professional group corresponding to the target system according to the full patch anomaly list, the server application information corresponding to the system configuration platform, and the human resource information table corresponding to the human resource library;
a maintenance notification module 910, configured to generate system patch maintenance information when it is determined that the patch professional group matching result has a corresponding patch maintenance professional group; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
In one embodiment, the data matching module 908 is further configured to match the full patch exception list with server application information corresponding to the system configuration platform, and determine maintainer information and application name information corresponding to the system configuration platform; and matching the maintainer information and the application name information with a human resource information table corresponding to the human resource library respectively, and determining a patch professional group matching result corresponding to the target system.
In one embodiment, the data matching module 908 is further configured to match the maintainer information with a professional information table in the human resource library, so as to obtain a maintainer matching result; matching the application name information with an application manager information table in a human resource library to obtain a manager matching result; and under the condition that the maintainer matching result and the manager matching result meet preset conditions, determining the matching result of the patch professional group corresponding to the target system.
In one embodiment, the maintenance notification module 910 is further configured to generate human hand patch maintenance information if it is determined that the patch professional group matching result does not include a corresponding patch maintenance professional group; the manual patch maintenance information is used for notifying that maintenance objects are selected from each patch maintenance professional group to install the system patches on the system.
In one embodiment, the maintenance notification module 910 is further configured to obtain first system patch installation information corresponding to the system patch maintenance information, and second system patch installation information corresponding to the human hand patch maintenance information; integrating the first system patch installation information and the second system patch installation information into a database, and updating patch update data of the database.
In one embodiment, the patch inspection module 904 is further configured to determine at least one patch inspection item corresponding to the target system according to the patch inspection execution frequency and the patch inspection execution time; and carrying out inspection on the patch installation condition of the system according to each patch inspection project, the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system.
In one embodiment, the patch inspection module 904 is further configured to inspect, according to the patch inspection execution frequency and the patch inspection execution time, a patch installation condition of a production patch inspection project of the target system, to obtain an inspection result of the first target system; according to the patch inspection execution frequency and the patch inspection execution time, inspecting the patch installation condition of the office patch inspection project of the target system to obtain an inspection result of the second target system; and integrating the first target system inspection result and the second target system inspection result to obtain the target system inspection result.
Each of the modules in the system patch processing device may be implemented in whole or in part by software, hardware, or a combination thereof. The above modules may be embedded in hardware or may be independent of a processor in the computer device, or may be stored in software in a memory in the computer device, so that the processor may call and execute operations corresponding to the above modules.
In one embodiment, a computer device is provided, which may be a server, and the internal structure of which may be as shown in fig. 10. The computer device includes a processor, a memory, and a network interface connected by a system bus. Wherein the processor of the computer device is configured to provide computing and control capabilities. The memory of the computer device includes a non-volatile storage medium and an internal memory. The non-volatile storage medium stores an operating system, computer programs, and a database. The internal memory provides an environment for the operation of the operating system and computer programs in the non-volatile storage media. The database of the computer device is for storing server data. The network interface of the computer device is used for communicating with an external terminal through a network connection. The computer program, when executed by a processor, implements a system patch processing method.
It will be appreciated by those skilled in the art that the structure shown in fig. 10 is merely a block diagram of some of the structures associated with the present application and is not limiting of the computer device to which the present application may be applied, and that a particular computer device may include more or fewer components than shown, or may combine certain components, or have a different arrangement of components.
In an embodiment, there is also provided a computer device comprising a memory and a processor, the memory having stored therein a computer program, the processor implementing the steps of the method embodiments described above when the computer program is executed.
In one embodiment, a computer-readable storage medium is provided, storing a computer program which, when executed by a processor, implements the steps of the method embodiments described above.
In one embodiment, a computer program product or computer program is provided that includes computer instructions stored in a computer readable storage medium. The processor of the computer device reads the computer instructions from the computer-readable storage medium, and the processor executes the computer instructions, so that the computer device performs the steps in the above-described method embodiments.
It should be noted that, user information (including but not limited to user equipment information, user personal information, etc.) and data (including but not limited to data for analysis, stored data, presented data, etc.) referred to in the present application are information and data authorized by the user or sufficiently authorized by each party.
Those skilled in the art will appreciate that implementing all or part of the above described methods may be accomplished by way of a computer program stored on a non-transitory computer readable storage medium, which when executed, may comprise the steps of the embodiments of the methods described above. Any reference to memory, database, or other medium used in the various embodiments provided herein may include at least one of non-volatile and volatile memory. The nonvolatile Memory may include Read-Only Memory (ROM), magnetic tape, floppy disk, flash Memory, optical Memory, high density embedded nonvolatile Memory, resistive random access Memory (ReRAM), magnetic random access Memory (Magnetoresistive Random Access Memory, MRAM), ferroelectric Memory (Ferroelectric Random Access Memory, FRAM), phase change Memory (Phase Change Memory, PCM), graphene Memory, and the like. Volatile memory can include random access memory (Random Access Memory, RAM) or external cache memory, and the like. By way of illustration, and not limitation, RAM can be in the form of a variety of forms, such as static random access memory (Static Random Access Memory, SRAM) or dynamic random access memory (Dynamic Random Access Memory, DRAM), and the like. The databases referred to in the various embodiments provided herein may include at least one of relational databases and non-relational databases. The non-relational database may include, but is not limited to, a blockchain-based distributed database, and the like. The processors referred to in the embodiments provided herein may be general purpose processors, central processing units, graphics processors, digital signal processors, programmable logic units, quantum computing-based data processing logic units, etc., without being limited thereto.
The technical features of the above embodiments may be arbitrarily combined, and all possible combinations of the technical features in the above embodiments are not described for brevity of description, however, as long as there is no contradiction between the combinations of the technical features, they should be considered as the scope of the description.
The above examples only represent a few embodiments of the present application, which are described in more detail and are not to be construed as limiting the scope of the present application. It should be noted that it would be apparent to those skilled in the art that various modifications and improvements could be made without departing from the spirit of the present application, which would be within the scope of the present application. Accordingly, the scope of protection of the present application shall be subject to the appended claims.

Claims (11)

1. A system patch processing method, the method comprising:
responding to a system patch inspection instruction aiming at a target system, and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system;
executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system;
Determining a full patch abnormality list corresponding to the target system under the condition that the inspection result of the target system is characterized in that the patches of the target system are abnormal;
determining a patch professional group matching result corresponding to the target system according to the full patch exception list, server application information corresponding to the system configuration platform and a human resource information table corresponding to a human resource library;
generating system patch maintenance information under the condition that the patch professional group matching result is determined to have a corresponding patch maintenance professional group; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
2. The method according to claim 1, wherein the determining the matching result of the patch professional group corresponding to the target system according to the full patch anomaly list, the server application information corresponding to the system configuration platform, and the human resource information table corresponding to the human resource library includes:
matching the full patch abnormal list with server application information corresponding to the system configuration platform, and determining maintainer information and application name information corresponding to the system configuration platform;
And respectively matching the maintainer information and the application name information with a human resource information table corresponding to the human resource library, and determining a patch professional group matching result corresponding to the target system.
3. The method of claim 2, wherein the human resources information table comprises a professional information table and an application manager information table; the step of matching the maintainer information and the application name information with the human resource information table corresponding to the human resource library respectively, and determining the matching result of the patch professional group corresponding to the target system comprises the following steps:
matching the maintainer information with a professional information table in the human resource library to obtain a maintainer matching result;
matching the application name information with an application manager information table in the human resource library to obtain a manager matching result;
and determining a patch professional group matching result corresponding to the target system under the condition that the maintainer matching result and the manager matching result meet preset conditions.
4. The method according to claim 1, wherein the method further comprises:
Generating human hand patch maintenance information under the condition that the patch professional group matching result is determined to not have the corresponding patch maintenance professional group; the human hand patch maintenance information is used for notifying that the maintenance object is selected from each patch maintenance professional group to install the system patch on the system.
5. The method of claim 4, wherein after the step of generating system patch maintenance information if it is determined that the patch panel matching result has a corresponding patch maintenance panel, further comprising:
acquiring first system patch installation information corresponding to the system patch maintenance information and second system patch installation information corresponding to the human hand patch maintenance information;
integrating the first system patch installation information and the second system patch installation information into a database, and updating patch update data of the database.
6. The method of claim 1, wherein the performing the inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain the inspection result of the target system includes:
Determining at least one patch inspection item corresponding to the target system according to the patch inspection execution frequency and the patch inspection execution time;
and carrying out inspection on the patch installation condition of the system according to each patch inspection project, the patch inspection execution frequency and the patch inspection execution time to obtain the inspection result of the target system.
7. The method of claim 6, wherein the patch inspection item includes a production patch inspection item and an office patch inspection item; the step of inspecting the patch installation condition of the system according to each patch inspection project, the patch inspection execution frequency and the patch inspection execution time to obtain the inspection result of the target system comprises the following steps:
according to the patch inspection execution frequency and the patch inspection execution time, inspecting the patch installation condition of the production patch inspection project of the target system to obtain a first target system inspection result;
and inspecting the patch installation condition of the office patch inspection project of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of a second target system;
And integrating the first target system inspection result and the second target system inspection result to obtain the target system inspection result.
8. A system patch processing apparatus, the apparatus comprising:
the system comprises a data acquisition module, a control module and a control module, wherein the data acquisition module is used for responding to a system patch inspection instruction aiming at a target system and acquiring patch inspection execution frequency and patch inspection execution time aiming at the target system;
the patch inspection module is used for executing inspection operation on the patch installation condition of the target system according to the patch inspection execution frequency and the patch inspection execution time to obtain an inspection result of the target system;
the inventory generation module is used for determining a full patch abnormality inventory corresponding to the target system under the condition that the inspection result of the target system is characterized as that the patches of the target system are abnormal;
the data matching module is used for determining a matching result of the patch professional group corresponding to the target system according to the full patch abnormal list, the server application information corresponding to the system configuration platform and the human resource information table corresponding to the human resource library;
the maintenance notification module is used for generating system patch maintenance information under the condition that the corresponding patch maintenance professional group exists in the patch professional group matching result; the system patch maintenance information is used for notifying each maintenance object corresponding to the patch maintenance professional group to install the system patch of the target system.
9. A computer device comprising a memory and a processor, the memory storing a computer program, characterized in that the processor implements the steps of the method of any of claims 1 to 7 when the computer program is executed.
10. A computer readable storage medium, on which a computer program is stored, characterized in that the computer program, when being executed by a processor, implements the steps of the method of any of claims 1 to 7.
11. A computer program product comprising a computer program, characterized in that the computer program, when being executed by a processor, implements the steps of the method of any of claims 1 to 7.
CN202310268759.7A 2023-03-15 2023-03-15 System patch processing method, device, computer equipment and storage medium Pending CN116339777A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202310268759.7A CN116339777A (en) 2023-03-15 2023-03-15 System patch processing method, device, computer equipment and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202310268759.7A CN116339777A (en) 2023-03-15 2023-03-15 System patch processing method, device, computer equipment and storage medium

Publications (1)

Publication Number Publication Date
CN116339777A true CN116339777A (en) 2023-06-27

Family

ID=86875709

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202310268759.7A Pending CN116339777A (en) 2023-03-15 2023-03-15 System patch processing method, device, computer equipment and storage medium

Country Status (1)

Country Link
CN (1) CN116339777A (en)

Similar Documents

Publication Publication Date Title
CN109032824B (en) Database verification method, database verification device, computer equipment and storage medium
US11063983B2 (en) Componentized security policy generation
US20210352099A1 (en) System for automatically discovering, enriching and remediating entities interacting in a computer network
US10911447B2 (en) Application error fingerprinting
US10268574B2 (en) Deployment testing for infrastructure delivery automation
CN107016480B (en) Task scheduling method, device and system
US11290483B1 (en) Platform for developing high efficacy detection content
US8938648B2 (en) Multi-entity test case execution workflow
US11706084B2 (en) Self-monitoring
US11461691B2 (en) Performance manager to autonomously evaluate replacement algorithms
US11693371B2 (en) Potential replacement algorithm selection based on algorithm execution context information
US20230039566A1 (en) Automated system and method for detection and remediation of anomalies in robotic process automation environment
CN110555150B (en) Data monitoring method, device, equipment and storage medium
CN109634802B (en) Process monitoring method and terminal equipment
CN110990233A (en) Method and system for displaying SOAR by using Gantt chart
CN116339777A (en) System patch processing method, device, computer equipment and storage medium
CN115373822A (en) Task scheduling method, task processing method, device, electronic equipment and medium
CN108566293B (en) Electronic device, zk node information notification method, and storage medium
US20230231865A1 (en) Automated compliance-related processing of cloud native applications
CN117591260A (en) Task execution method, device, equipment, storage medium and program product
CN113849291A (en) Container cluster-based task processing method, device, equipment, medium and product
CN116346671A (en) Platform connection testing method, device, computer equipment and storage medium
CN116483566A (en) Resource processing method and device for server, electronic equipment and storage medium
CN114579464A (en) Dynamic information verification method and device based on tangent plane programming and computer equipment
CN117035731A (en) Equipment operation and maintenance method, device, computer equipment and storage medium

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination