WO2020206904A1 - 文件传输方法、系统和存储介质 - Google Patents

文件传输方法、系统和存储介质 Download PDF

Info

Publication number
WO2020206904A1
WO2020206904A1 PCT/CN2019/102534 CN2019102534W WO2020206904A1 WO 2020206904 A1 WO2020206904 A1 WO 2020206904A1 CN 2019102534 W CN2019102534 W CN 2019102534W WO 2020206904 A1 WO2020206904 A1 WO 2020206904A1
Authority
WO
WIPO (PCT)
Prior art keywords
file
target
server
target file
information
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Ceased
Application number
PCT/CN2019/102534
Other languages
English (en)
French (fr)
Inventor
石先江
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Ping An Technology Shenzhen Co Ltd
Original Assignee
Ping An Technology Shenzhen Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Ping An Technology Shenzhen Co Ltd filed Critical Ping An Technology Shenzhen Co Ltd
Publication of WO2020206904A1 publication Critical patent/WO2020206904A1/zh
Anticipated expiration legal-status Critical
Ceased legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/06Protocols specially adapted for file transfer, e.g. file transfer protocol [FTP]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/1097Protocols in which an application is distributed across nodes in the network for distributed storage of data in networks, e.g. transport arrangements for network file system [NFS], storage area networks [SAN] or network attached storage [NAS]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/60Scheduling or organising the servicing of application requests, e.g. requests for application data transmissions using the analysis and optimisation of the required network resources

Definitions

  • This application relates to a file transmission method, system and storage medium.
  • a file transmission method, system and storage medium are provided.
  • a file transfer method including:
  • the file interface server receives the file transfer request and the file stream to be transferred transmitted by the service server through the unified file calling interface, where the file transfer request carries file storage information and first related party transmission information;
  • the unified file calling interface converts the file stream to be transmitted into a target file according to the file transfer request, and sends the target file to a cloud storage server in the intranet area for storage according to the file storage information;
  • the file proxy server receives a file transfer instruction sent by the business server, the file transfer instruction carries a target file identifier, and obtains the target file identifier corresponding to the cloud storage server in the intranet area according to the file transfer instruction Target file stream;
  • the file proxy server obtains the transmission information of the first related party, determines a first target transmission mode according to the transmission information of the first related party, and converts the target file stream corresponding to the target file identifier to the first target transmission mode Push to the target related party.
  • a file transmission system includes:
  • the file transfer module is configured to receive, through the file interface server, the file transfer request and the file stream to be transferred transmitted by the business server through the unified file calling interface, where the file transfer request carries file storage information and first related party transmission information;
  • the file storage module in the intranet area is used to convert the file stream to be transmitted into a target file according to the file transfer request through the unified file calling interface, and send the target file to the internal file according to the file storage information Network cloud storage server for storage;
  • the target file stream acquisition module is configured to receive a file transfer instruction sent by the business server through a file proxy server, the file transfer instruction carries a target file identifier, and the file transfer instruction is sent from the cloud in the intranet area according to the file transfer instruction
  • the storage server obtains the target file stream corresponding to the target file identifier
  • the file transmission module is configured to obtain the transmission information of the first related party through the file proxy server, determine the first target transmission mode according to the transmission information of the first related party, and assign the target file stream corresponding to the target file identifier to The first target transmission method is pushed to the target related party.
  • a file transmission system includes a file interface server, a business server, a file proxy server, and a cloud storage server in the intranet area;
  • the file interface server is configured to receive the file transfer request and the file stream to be transferred transmitted by the service server through the unified file calling interface, and the file transfer request carries file storage information and first related party transmission information,
  • the unified file calling interface converts the file stream to be transferred into a target file according to the file transfer request, and sends the target file to the cloud storage server in the intranet area for storage according to the file storage information;
  • the file proxy server is configured to receive a file transfer instruction sent by the business server, the file transfer instruction carries a target file identifier, and the file transfer instruction is used to obtain the file from the cloud storage server in the intranet area according to the file transfer instruction.
  • the target file stream corresponding to the target file identifier;
  • the file proxy server is further configured to obtain the transmission information of the first related party, determine the first target transmission mode according to the transmission information of the first related party, and convert the target file stream corresponding to the target file identifier to the first The target transmission method is pushed to the target related party.
  • One or more non-volatile storage media storing computer-readable instructions.
  • the computer-readable instructions When executed by one or more processors, the one or more processors perform the following steps:
  • the file interface server receives the file transfer request and the file stream to be transferred transmitted by the service server through the unified file calling interface, where the file transfer request carries file storage information and first related party transmission information;
  • the unified file calling interface converts the file stream to be transmitted into a target file according to the file transfer request, and sends the target file to a cloud storage server in the intranet area for storage according to the file storage information;
  • the file proxy server receives a file transfer instruction sent by the business server, the file transfer instruction carries a target file identifier, and obtains the target file identifier corresponding to the cloud storage server in the intranet area according to the file transfer instruction Target file stream;
  • the file proxy server obtains the transmission information of the first related party, determines a first target transmission mode according to the transmission information of the first related party, and converts the target file stream corresponding to the target file identifier to the first target transmission mode Push to the target related party.
  • Fig. 1 is an application scenario diagram of a file transmission method according to one or more embodiments.
  • Fig. 2 is a schematic flowchart of a file transmission method according to one or more embodiments.
  • Fig. 3 is a schematic flowchart of a file transmission method in another embodiment.
  • Fig. 4 is a schematic flowchart of a file transmission method according to one or more embodiments.
  • Fig. 5 is a schematic flowchart of a file transmission method in another embodiment.
  • Fig. 6 is a schematic flowchart of a file transmission method in still another embodiment.
  • Figure 7 is a block diagram of a file transfer system according to one or more embodiments.
  • FIG. 1 is a diagram of an application environment in which a file transmission method runs in an embodiment.
  • the application environment includes an intranet area A, an extranet area B, and an associated party area C.
  • the intranet area A includes: a business server 110, a file interface server 120, an intranet cloud storage server 130, and a file intermediate Server 140
  • external network area B includes external network area cloud storage server 150
  • file proxy server 160
  • related party area C includes: business servers 171-174
  • business server 110 corresponds to the caller
  • business servers 171-174 correspond to related parties.
  • Each server communicates through a network, and the communication network may be a wireless or wired communication network, such as an IP network, a cellular mobile communication network, and the like.
  • the server can be implemented as an independent server or a server cluster composed of multiple servers, and the server can also be understood as a system.
  • the file interface server 120 receives the file transfer request and the file stream to be transferred transmitted by the service server 110 through the unified file calling interface.
  • the file transfer request carries file storage information and the first related party transmission information.
  • the unified file calling interface is based on The file transfer request converts the file stream to be transferred into a target file, and sends the target file to the cloud storage server 130 in the intranet area for storage according to the file storage information, and the file proxy server 160 receives the file transfer instruction sent by the business server 110 ,
  • the file transfer instruction carries the target file identifier.
  • the target file stream corresponding to the target file identifier is obtained from the cloud storage server 130 in the intranet area.
  • the file proxy server 160 obtains the transmission information of the first associated party, and according to the first association
  • the party transmission information determines the first target transmission mode, and pushes the target file stream corresponding to the target file identifier to the target related party in the first target transmission mode.
  • a file transmission method is provided. Taking the method applied to the file interface server and the service server in FIG. 1 as an example for description, the method includes the following steps:
  • Step 210 The file interface server receives the file outgoing request and the file stream to be transmitted transmitted by the service server through the unified file calling interface.
  • the file outgoing request carries file storage information and first related party transmission information.
  • the file interface server refers to a server used for unified logical processing of the file stream to be transmitted
  • the business server exposes a simple and unified unified file calling interface
  • the business server refers to a server used for business processing.
  • the first related party transmission information is used to describe the corresponding transmission related information when the file is transferred to the related party, including, for example, file transmission methods such as SFTP/FTP/stream/interface, etc.
  • file transmission methods such as SFTP/FTP/stream/interface, etc.
  • the corresponding transmission methods may be different for different related parties.
  • Step 220 The unified file calling interface converts the file stream to be transmitted into a target file according to the file transfer request, and sends the target file to a cloud storage server in the intranet area for storage according to the file storage information.
  • the unified file calling interface converts the file stream into a target file according to the file transfer request, and stores the target file in the target location of the cloud storage system in the intranet area according to the file storage information, that is, IOBS-SF, where IOBS-SF is used to provide
  • the cloud storage service in the safe zone can be understood as a distributed file management system, and the target file is identified by the target file identifier.
  • the business server in the intranet area and the cloud storage server in the intranet area are in the intranet (SF area).
  • the SF area is a safe intranet area. Files can be transferred from the external network to the inside, but files cannot be directly transferred from the SF area to the To the outside network, it can be transmitted to the outside in the form of streaming.
  • Step 230 The file proxy server receives the file transfer instruction sent by the business server, the file transfer instruction carries the target file identifier, and obtains the target file stream corresponding to the target file identifier from the cloud storage server in the intranet area according to the file transfer instruction.
  • the file proxy server is a server that is used to unify processing permissions and interaction methods, and unified into a common interface mode to shield the differences in interaction methods such as FTP/SFTP/SOCKET/file streaming, and unify the file streaming mode internally.
  • the file proxy server belongs to the external network zone (DMZ/PTR) zone.
  • the DMZ zone refers to the external gateway zone. Because it needs to face a complex network environment, it is a relatively dangerous zone. Here, files need to be scanned for security before they can be transferred into the SF zone.
  • the PTR zone is similar to the DMZ zone, but because it takes a dedicated line and faces a specific related party, the risk factor is larger than that of the SF zone but smaller than that of the DMZ zone.
  • the DMZ and PTR areas cannot be directly connected, and need to be transferred through the SF area.
  • the caller is the business server in the SF area, and sends a file transfer instruction to the file proxy server to upload the file.
  • the file transfer instruction carries the ID of the file that the system needs to upload, that is, the target identifier.
  • the target file corresponding to the target file identifier can be obtained in the form of a file stream from the secure zone cloud storage system through the file intermediate server.
  • Step 240 The file proxy server obtains the transmission information of the first related party, determines the first target transmission mode according to the transmission information of the first related party, and pushes the target file stream corresponding to the target file identifier to the target related party in the first target transmission mode.
  • the file proxy server After the file proxy server obtains the target file stream, it converts the file transfer interaction mode (SFTP/FTP/stream/interface, etc.) configured in the file proxy server into an interactive mode supported by the related party to complete the final interaction and push the file to the other party .
  • the related party refers to one or more of the business servers in the extranet area.
  • the file transfer request and the file stream to be transferred transmitted by the business server through the unified file calling interface are received through the file interface server.
  • the file transfer request carries file storage information and first related party transfer information, and unified file calling
  • the interface converts the file stream to be transferred into the target file according to the file transfer request, and sends the target file to the cloud storage server in the intranet area according to the file storage information for storage.
  • the file proxy server receives the file transfer instruction sent by the business server, and the file transfer The output instruction carries the target file identifier. According to the file output instruction, the target file stream corresponding to the target file identifier is obtained from the cloud storage server in the intranet area.
  • the file proxy server obtains the transmission information of the first related party, and determines the first related party according to the transmission information of the first related party.
  • a target transmission mode which pushes the target file stream corresponding to the target file identifier to the target related party in the first target transmission mode.
  • step 230 includes:
  • Step 231 The file proxy server sends a file stream acquisition notification to the file intermediate server according to the file transfer instruction, and the file stream acquisition notification carries the target file identifier.
  • Step 232 The file intermediate server reads the target file corresponding to the target file identifier in the form of a file stream from the cloud storage server in the intranet area according to the target file identifier to obtain the target file stream, and push the target file stream to the file proxy server.
  • the file proxy server sends a notification message to the file intermediate server, and then the notification message carries the ID of the file to be uploaded.
  • the file intermediate server finds the target file from the cloud storage system in the intranet area according to the target file identifier, and reads the target file in the form of a file stream.
  • File the file intermediate server sends the file stream to the file proxy server.
  • the file intermediate server is a server belonging to the SF area. In this embodiment, the file stream is obtained through the file intermediate server in the intranet area, and then pushed to the file proxy server in the outer network area, so as to realize cross-regional file stream interaction.
  • step 220 further includes:
  • Step 221 The unified file calling interface sends a login request to the cloud storage server in the intranet area, and the login request carries the identity information of the service server.
  • the cloud storage server in the intranet area provides services to everyone and charges a fee. Every time a call is requested, the identity of the caller needs to be verified, that is, when a call is requested, the identity server of the business server in the intranet area needs to be verified.
  • the identity information of the service server in the intranet area may be the ID of the server, account information, and so on.
  • Step 222 The cloud storage server in the intranet area verifies the login authority of the business server according to the identity information, and completes the login operation according to the login authority.
  • the business server After successfully completing the login operation, the business server can upload and store files to the cloud storage server in the intranet area.
  • Step 223 The unified file calling interface obtains the encryption key corresponding to the business server, encrypts the target file according to the encryption key, and sends a storage request to the cloud storage server in the intranet area, and the storage request carries the encrypted target file;
  • the target file of the business server must be uploaded to the cloud storage server in the intranet area through the unified file calling interface for storage, and the unified file calling interface will encrypt the target file before uploading it to ensure the information security of the target file.
  • Step 224 The cloud storage server in the intranet area obtains the corresponding decryption key according to the channel information corresponding to the business server, decrypts the target file according to the decryption key, and stores the successfully decrypted target file in the target location of the cloud storage server in the intranet area .
  • the cloud storage server in the intranet area When the cloud storage server in the intranet area receives the unified file calling interface to upload the encrypted target file, it also needs verification, and decrypts the encrypted target file that is successfully verified. Verification is performed by determining the channel corresponding to the business server, and obtaining the corresponding decryption key according to different channel information corresponding to different business servers. The successfully decrypted target file is stored in the target location of the cloud storage server in the intranet area, and the storage process is completed to ensure the effectiveness and security of the storage service.
  • the file transmission method further includes the following steps:
  • Step 310 The file proxy server receives a file transfer instruction sent by the service server, where the file transfer instruction includes the second related party transmission information and target file information.
  • the file transfer instruction refers to an instruction for the business server in the intranet area to receive a file transferred from the external network area to the intranet area.
  • the second related party transmission information is used to describe the corresponding transmission related information when the file is to be transmitted with the related party.
  • the target file information refers to the information used to find the target file later.
  • Step 320 Determine the second target transmission mode according to the second related party transmission information, and obtain the target file corresponding to the target file information from the target related party according to the second target transmission mode.
  • the transmission information of the second related party includes, for example, file transmission methods, such as SFTP/FTP/stream/interface, etc.
  • file transmission methods such as SFTP/FTP/stream/interface
  • the transmission methods corresponding to different related parties may be different.
  • the target file information may be target file identification, target file location information, etc., which are used for subsequent search for the target file.
  • Step 330 The file proxy server uploads the target file corresponding to the target file information to the cloud storage server in the external network area.
  • Step 340 The business server obtains the target file from the cloud storage server in the external network area through the unified file calling interface.
  • the file proxy server uploads the target file to the cloud storage system in the external network area and sends the target file information to the business server.
  • the target file information can be the target file identifier, target file location information, etc., for subsequent search for the target file.
  • the unified file calling interface encapsulates a unified format to obtain target files from the cloud storage system in the external network area.
  • the file proxy server in the external network area obtains the target file from the related party, that is, the business server in the external network area, uploads the target file to the cloud storage system in the external network area, and sends the target file information of the target file To the business server in the intranet area, the business server in the intranet area obtains the target file from the cloud storage system in the extranet area through the unified file calling interface, so as to realize the file transfer from the extranet to the intranet.
  • step 340 further includes:
  • Step 341 The file interface server receives the file transfer request transmitted by the service server through the unified file calling interface, where the file transfer request includes the file name and the second related party transmission information.
  • Step 342 The unified file calling interface obtains the target file in the cloud storage server in the external network area and outputs the storage address of the target file and target file parameter information.
  • the file name refers to the name of the file that needs to be transferred from the external network to the internal network.
  • the second related party transmission information is used to describe the corresponding transmission related information when the file is to be transmitted with the related party, such as file channel configuration information.
  • the storage address of the target file refers to address information indicating the storage location of the target file, such as the storage unit number of the target file in the cloud storage server in the external network area.
  • the target file parameter information is information that can determine the status of the target file, such as information indicating whether the target file is successfully obtained.
  • a file transmission system including: a file transfer module 710, an intranet area file storage module 720, a target file stream acquisition module 730, and a file transmission module 740, wherein:
  • the file transfer module 710 is configured to receive, through the file interface server, the file transfer request and the file stream to be transferred transmitted by the service server through the unified file calling interface.
  • the file transfer request carries file storage information and first related party transmission information.
  • the intranet area file storage module 720 is used to convert the file stream to be transmitted into a target file according to the file transfer request through the unified file calling interface, and send the target file to the intranet area cloud storage server for storage according to the file storage information.
  • the target file stream acquisition module 730 is configured to receive the file transfer instruction sent by the business server through the file proxy server, the file transfer instruction carries the target file identifier, and the target file identifier corresponding to the cloud storage server in the intranet area is obtained according to the file transfer instruction The target file stream.
  • the file transmission module 740 is configured to obtain the transmission information of the first related party through the file proxy server, determine the first target transmission mode according to the transmission information of the first related party, and use the target file stream corresponding to the target file identifier in the first target transmission mode Push to the target related party.
  • the target file stream obtaining module 730 is further configured to send a file stream obtaining notification to the file intermediate server through the file proxy server according to the file transfer instruction, and the file stream obtaining notification carries the target file identifier and is also used for
  • the file intermediate server reads the target file corresponding to the target file identifier in the form of a file stream from the cloud storage server in the intranet area according to the target file identifier to obtain the target file stream, and push the target file stream to the file proxy server.
  • the intranet area file storage module 720 includes:
  • the login unit is configured to send a login request to the cloud storage server in the intranet area through the unified file calling interface, where the login request carries the identity information of the business server;
  • the verification unit is used to verify the login authority of the business server according to the identity information through the cloud storage server in the intranet area, and complete the login operation according to the login authority;
  • the encryption unit is configured to obtain the encryption key corresponding to the service server through the unified file calling interface, encrypt the target file according to the encryption key, and send a storage request to the cloud storage server in the intranet area, and the storage request carries The encrypted target file;
  • the decryption unit is used to obtain the corresponding decryption key according to the channel information corresponding to the service server through the cloud storage server in the intranet area, decrypt the target file according to the decryption key, and store the successfully decrypted target file into the cloud storage server in the intranet area The target location.
  • Each module in the above-mentioned file transfer system can be implemented in whole or in part by software, hardware, and a combination thereof.
  • the foregoing modules may be embedded in the form of hardware or independent of the processor in the computer device, or may be stored in the memory of the computer device in the form of software, so that the processor can call and execute the operations corresponding to the foregoing modules.
  • a file transmission system includes a file interface server, a business server, a file proxy server, and an intranet cloud storage server.
  • the file interface server is used to receive the file transfer request and the file stream to be transferred transmitted by the business server through the unified file calling interface.
  • the file transfer request carries file storage information and the first related party transmission information, and the unified file calling interface sends out according to the file Request to convert the file stream to be transmitted into a target file, and send the target file to the cloud storage server in the intranet area for storage according to the file storage information.
  • the file proxy server is used to receive the file transfer instruction sent by the business server, the file transfer instruction carries the target file identifier, and the target file stream corresponding to the target file identifier is obtained from the cloud storage server in the intranet area according to the file transfer instruction.
  • the file proxy server is also used to obtain the transmission information of the first related party, determine the first target transmission mode according to the transmission information of the first related party, and push the target file stream corresponding to the target file identifier to the target related party in the first target transmission mode.
  • system further includes a file intermediate server
  • file proxy server is further configured to send a file stream acquisition notification to the file intermediate server according to the file transfer instruction, and the file stream acquisition notification carries the target file identifier.
  • the file intermediate server reads the target file corresponding to the target file identifier in the form of a file stream from the cloud storage server in the intranet area according to the target file identifier, obtains the target file stream, and pushes the target file stream to the file proxy server.
  • the file interface server is further configured to send a login request to the cloud storage server in the intranet area through the unified file calling interface, and the login request carries the identity information of the service server.
  • the cloud storage server in the intranet area is also used to verify the login authority of the business server according to the identity information, and complete the login operation according to the login authority.
  • the file interface server is also used to obtain the encryption key corresponding to the business server through the unified file call interface, encrypt the target file according to the encryption key, and send a storage request to the cloud storage server in the intranet area.
  • the storage request carries the encrypted target file .
  • the cloud storage server in the intranet area is also used to obtain the corresponding decryption key according to the channel information corresponding to the business server, decrypt the target file according to the decryption key, and store the successfully decrypted target file in the target location of the cloud storage server in the intranet area .
  • the system further includes a cloud storage server in the external network area.
  • the file proxy server is also used to receive the file transfer instruction sent by the business server.
  • the file transfer instruction includes the transmission information of the second related party and the target file information.
  • the second target transmission method is determined according to the second related party transmission information, and the second target transmission method is determined according to the second target The transmission method obtains the target file corresponding to the target file information from the target related party.
  • the file proxy server is also used to upload the target file corresponding to the target file information to the cloud storage server in the external network area.
  • the business server is also used to obtain the target file from the cloud storage server in the external network area through the unified file calling interface.
  • the file interface server is further configured to receive a file incoming request transmitted by the business server through the unified file calling interface, the file incoming request including the file name and the second related party transmission information.
  • the unified file calling interface is also used to obtain the target file in the cloud storage server in the external network area and output the storage address of the target file and the target file parameter information.
  • One or more non-volatile computer-readable storage media storing computer-readable instructions.
  • the one or more processors perform the following steps: the file interface server receives The service server transmits the file transfer request and the file stream to be transferred through the unified file calling interface, and the file transfer request carries file storage information and first related party transmission information.
  • the unified file calling interface converts the file stream to be transmitted into the target file according to the file transfer request, and sends the target file to the cloud storage server in the intranet area for storage according to the file storage information.
  • the file proxy server receives the file transfer instruction sent by the business server, the file transfer instruction carries the target file identifier, and the target file stream corresponding to the target file identifier from the cloud storage server in the intranet area according to the file transfer instruction.
  • the file proxy server obtains the transmission information of the first related party, determines the first target transmission mode according to the transmission information of the first related party, and pushes the target file stream corresponding to the target file identifier to the target related party in the first target transmission mode.
  • Non-volatile memory may include read only memory (ROM), programmable ROM (PROM), electrically programmable ROM (EPROM), electrically erasable programmable ROM (EEPROM), or flash memory.
  • ROM read only memory
  • PROM programmable ROM
  • EPROM electrically programmable ROM
  • EEPROM electrically erasable programmable ROM
  • Volatile memory may include random access memory (RAM) or external cache memory.
  • RAM is available in many forms, such as static RAM (SRAM), dynamic RAM (DRAM), synchronous DRAM (SDRAM), double data rate SDRAM (DDRSDRAM), enhanced SDRAM (ESDRAM), synchronous chain Road (Synchlink), DRAM (SLDRAM), memory bus (Rambus) direct RAM (RDRAM), direct memory bus dynamic RAM (DRDRAM), and memory bus dynamic RAM (RDRAM), etc.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Information Retrieval, Db Structures And Fs Structures Therefor (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

一种文件传输方法,包括:通过文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,统一文件调用接口根据文件传出请求将待传输文件流转化为目标文件,并将目标文件发送至内网区云存储服务器进行存储,文件代理服务器接收业务服务器发送的文件传出指令,根据文件传出指令从内网区云存储服务器获取目标文件标识对应的目标文件流,将目标文件标识对应的目标文件流推送至目标关联方。

Description

文件传输方法、系统和存储介质
本申请要求于2019年04月12日提交中国专利局,申请号为2019102956845,申请名称为“文件传输方法、系统和存储介质”的中国专利申请的优先权,其全部内容通过引用结合在本申请中。
技术领域
本申请涉及一种文件传输方法、系统和存储介质。
背景技术
随着计算机多媒体技术的飞速发展,对网络大数据资源的控制管理显得尤为重要。目前,通过针对一些专有资源单独构建私有云(Private Clouds),提高对数据、安全性和服务质量的有效控制,将私有云部署在企业数据中心的防火墙内,或者部署在一个安全的主机托管场所,来保证数据的安全性。然而,在私有云上,不同的网络区域之间有严格的权限控制,文件传输的效率低下,并且每次文件传输都需要单独开发,后期的维护成本也因为实现方式的不同,导致维护方式复杂,运行成本高。
发明内容
根据本申请公开的各种实施例,提供一种文件传输方法、系统和存储介质。
一种文件传输方法,包括:
文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息;
所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储;
文件代理服务器接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
所述文件代理服务器获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
一种文件传输系统,所述系统包括:
文件传出模块,用于通过文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息;
内网区文件存储模块,用于通过所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储;
目标文件流获取模块,用于通过文件代理服务器接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
文件传输模块,用于通过所述文件代理服务器获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
一种文件传输系统,系统包括文件接口服务器、业务服务器、文件代理服务器、内网区云存储服务器;
所述文件接口服务器用于接收所述业务服务器通过所述统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息,统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至所述内网区云存储服务器进行存储;
所述文件代理服务器用于接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
所述文件代理服务器还用于获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输 方式推送至目标关联方。
一个或多个存储有计算机可读指令的非易失性存储介质,计算机可读指令被一个或多个处理器执行时,使得一个或多个处理器执行以下步骤:
文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息;
所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储;
文件代理服务器接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
所述文件代理服务器获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
本申请的一个或多个实施例的细节在下面的附图和描述中提出。本申请的其它特征和优点将从说明书、附图以及权利要求书变得明显。
附图说明
为了更清楚地说明本申请实施例中的技术方案,下面将对实施例中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本申请的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动的前提下,还可以根据这些附图获得其它的附图。
图1为根据一个或多个实施例文件传输方法的应用场景图。
图2为根据一个或多个实施例中文件传输方法的流程示意图。
图3为另一个实施例中文件传输方法的流程示意图。
图4为根据一个或多个实施例中文件传输方法的流程示意图。
图5为又一个实施例中文件传输方法的流程示意图。
图6为再一个实施例中文件传输方法的流程示意图。
图7为根据一个或多个实施例中文件传输系统的框图。
具体实施方式
为了使本申请的技术方案及优点更加清楚明白,以下结合附图及实施例,对本申请进行进一步详细说明。应当理解,此处描述的具体实施例仅仅用以解释本申请,并不用于限定本申请。
本申请提供的文件传输方法,可以应用于如图1所示的应用环境中。图1为一个实施例中文件传输方法运行的应用环境图。如图1所示,该应用环境包括内网区域A、外网区域B、关联方区域C,内网区域A包括:业务服务器110、文件接口服务器120、内网区云存储服务器130、文件中间服务器140,外网区域B包括外网区云储存服务器150、文件代理服务器160,关联方区域C包括:业务服务器171-174,业务服务器110对应调用方,业务服务器171-174对应关联方,实现调用方和关联方之间的文件传输。各个服务器之间通过网络进行通信,通信网络可以是无线或者有线通信网络,例如IP网络、蜂窝移动通信网络等。
服务器可以用独立的服务器或者是多个服务器组成的服务器集群来实现,服务器也可以理解为一个系统。通过文件接口服务器120接收业务服务器110通过统一文件调用接口传递的文件传出请求和待传输文件流,文件传出请求携带有文件存储信息和第一关联方传输信息,所述统一文件调用接口根据文件传出请求将所述待传输文件流转化为目标文件,并根据文件存储信息将目标文件发送至内网区云存储服务器130进行存储,文件代理服务器160接收业务服务器110发送的文件传出指令,文件传出指令携带有目标文件标识,根据文件传出指令从内网区云存储服务器130获取目标文件标识对应的目标文件流,文件代理服务器160获取第一关联方传输信息,根据第一关联方传输信息确定第一目标传输方式,将目标文件标识对应的目标文件流以第一目标传输方式推送至目标关联方。通过统一文件传输逻辑和处理方式,在不同区域网络之间通过文件流的形式实现文件传输,能够在保证数据安全性的前提下,更高效更便捷地实现文件传输。
在其中一个实施例中,如图2所示,提供了一种文件传输方法,以该方法应用于图1中的文件接口服务器、业务服务器为例进行说明,包括以下步骤:
步骤210,文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请 求和待传输文件流,文件传出请求携带有文件存储信息和第一关联方传输信息。
文件接口服务器是指用于对待传输文件流做统一的逻辑处理的服务器,业务服务器暴露简单和统一的统一文件调用接口,业务服务器是指用于业务处理的服务器。当内网区域的业务服务器需要将文件从内网传到外网时,会调用统一文件调用接口将需要传递的文件用文件流的形式传递给文件接口系统,并在文件传出请求中携带文件存储信息和关联方传输信息。
第一关联方传输信息用于描述将文件传递给关联方时对应的传输相关信息,包括如文件传输方式,如SFTP/FTP/流/接口等,不同的关联方对应的传输方式可能不同。
步骤220,所述统一文件调用接口根据文件传出请求将待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储。
统一文件调用接口根据文件传出请求将文件流转化为目标文件,并根据文件存储信息将目标文件存储至内网区云存储系统的目标位置,即IOBS-SF中,其中IOBS-SF用于提供安全区的云存储服务,可以理解为是一个分布式的文件管理系统,并通过目标文件标识标识目标文件。
内网区域的业务服务器和内网区云存储服务器处于内网(SF区)中,SF区是安全的内网区域,文件可以从外网传入内部,但是不能直接将文件从SF区传到外网去,可以通过流的形式往外传递。
步骤230,文件代理服务器接收业务服务器发送的文件传出指令,文件传出指令携带有目标文件标识,根据文件传出指令从内网区云存储服务器获取目标文件标识对应的目标文件流。
文件代理服务器是用于统一处理权限和交互方式,并统一成一种共同的接口模式,来屏蔽FTP/SFTP/SOCKET/文件流等交互方式的差异,对内统一文件流的模式的服务器。文件代理服务器属于对外的网络分区(DMZ/PTR)区。DMZ区是指对外的网关区,因为需要面对复杂的网络环境,是比较危险的区域,在这里文件需要进行安全扫描,才能将文件传递进SF区。PTR区和DMZ区相似,但是因为走的是专线,面对的是特定的关联方,危险系数比SF区大,但是比DMZ区小。DMZ和PTR区不能直接连通,需要通过SF区中转。
调用方即SF区的业务服务器,发送文件传出指令给文件代理服务器来进行文件上传, 文件传出指令里面携带系统需要上传的文件的ID,即目标标识。可通过文件中间服务器从安全区云存储系统以文件流的形式获取目标文件标识对应的目标文件。
步骤240,文件代理服务器获取第一关联方传输信息,根据第一关联方传输信息确定第一目标传输方式,将目标文件标识对应的目标文件流以第一目标传输方式推送至目标关联方。
文件代理服务器获取目标文件流之后,根据文件代理服务器里面配置的文件传输交互方式(SFTP/FTP/流/接口等),转化成关联方支持的交互方式,来完成最终交互,将文件推送给对方。关联方是指外网区域的业务服务器中的一个或者多个。
在本实施例中,通过文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,文件传出请求携带有文件存储信息和第一关联方传输信息,统一文件调用接口根据文件传出请求将待传输文件流转化为目标文件,并根据文件存储信息将目标文件发送至内网区云存储服务器进行存储,文件代理服务器接收业务服务器发送的文件传出指令,文件传出指令携带有目标文件标识,根据文件传出指令从内网区云存储服务器获取目标文件标识对应的目标文件流,文件代理服务器获取第一关联方传输信息,根据第一关联方传输信息确定第一目标传输方式,将目标文件标识对应的目标文件流以第一目标传输方式推送至目标关联方。通过统一的文件调用接口,提供统一的权限和文件处理,在不同区域网络之间通过文件流的形式实现文件传输,能够在保证数据安全性的前提下,更高效更便捷地实现文件传输,降低文件传输的成本。
在其中一个实施例中,如图3所示,步骤230包括:
步骤231,文件代理服务器根据文件传出指令向文件中间服务器发送获取文件流通知,获取文件流通知携带有目标文件标识。
步骤232,文件中间服务器根据目标文件标识从内网区云存储服务器以以文件流的形式读取目标文件标识对应的目标文件,得到目标文件流,并将目标文件流推送至文件代理服务器。
文件代理服务器发送通知消息给文件中间服务器,然后通知消息里面携带需要上传的文件的ID,文件中间服务器根据目标文件标识从内网区云存储系统找到该目标文件,以文件流的形式读取该文件,文件中间服务器将文件流发送至至文件代理服务器。其中文件 中间服务器是属于SF区的服务器。在本实施例中,通过内网区的文件中间服务器来获取文件流,再推送至外网区的文件代理服务器,实现了跨区域的文件流的交互。
在其中一个实施例中,如图4所示,步骤220还包括:
步骤221,统一文件调用接口向内网区云存储服务器发送登录请求,登录请求携带有业务服务器的身份信息。
内网区云存储服务器是给所有人提供服务的,而且收费,每次请求调用,都需要验证调用者的身份,即在请求调用时,需要对内网区业务服务器的身份服务器进行验证。内网区业务服务器的身份信息可以是服务器的ID标识、账号信息等等。
步骤222,内网区云存储服务器根据身份信息验证业务服务器的登录权限,根据登录权限完成登录操作。
成功完成登录操作后,业务服务器就可以在内网区云存储服务器进行文件的上传存储。
步骤223,统一文件调用接口获取业务服务器对应的加密秘钥,根据加密秘钥对目标文件加密,并向内网区云存储服务器发送存储请求,存储请求携带有加密后的目标文件;
业务服务器的目标文件要通过统一文件调用接口上传至内网区云存储服务器进行存储,并且统一文件调用接口会对目标文件进行加密后再上传,保证目标文件的信息安全性。
步骤224,内网区云存储服务器根据业务服务器对应的渠道信息获取对应的解密秘钥,根据解密秘钥对目标文件进行解密,将解密成功的目标文件存入内网区云存储服务器的目标位置。
内网区云存储服务器在接收统一文件调用接口上传已加密的目标文件时,同样需要验证,将验证成功的已加密的目标文件进行解密。验证是通过确定业务服务器对应的渠道,根据不同业务服务器对应的不同的渠道信息获取到对应的解密秘钥来进行验证。将解密成功的目标文件存入内网区云存储服务器的目标位置,完成存储过程,保证了存储服务的有效性、安全性。
在其中一个实施例中,如图5所示,文件传输方法还包括以下步骤:
步骤310,文件代理服务器接收业务服务器发送的文件传入指令,文件传入指令包括第二关联方传输信息和目标文件信息。
文件传入指令是指内网区的业务服务器接收从外网区传入内网区的文件的指令。第二关联方传输信息用于描述将与关联方传递文件时对应的传输相关信息。目标文件信息是指用于后续查找目标文件的信息。
步骤320,根据第二关联方传输信息确定第二目标传输方式,根据第二目标传输方式从目标关联方获取目标文件信息对应的目标文件。
第二关联方传输信息包括如文件传输方式,如SFTP/FTP/流/接口等,不同的关联方对应的传输方式可能不同。目标文件信息可以是目标文件标识、目标文件位置信息等,用于后续查找目标文件。
步骤330,文件代理服务器将目标文件信息对应的目标文件上传至外网区云存储服务器。
步骤340,业务服务器通过统一文件调用接口从外网区云存储服务器获取目标文件。
文件代理服务器将目标文件上传至外网区云存储系统并将目标文件信息发送至业务服务器,目标文件信息可以是目标文件标识、目标文件位置信息等,用于后续查找目标文件。统一文件调用接口封装了统一的格式从外网区云存储系统获取目标文件。
在本实施例中,通过外网区的文件代理服务器从关联方即外网区域的业务服务器中获取目标文件,并将目标文件上传至外网区云存储系统,将目标文件的目标文件信息发送至内网区的业务服务器,内网区的业务服务器载通过统一文件调用接口从外网区云存储系统获取目标文件,实现外网到内网的文件传输。
在其中一个实施例中,如图6示,步骤340还包括:
步骤341,文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传入请求,文件传入请求包括文件名称和第二关联方传输信息。
步骤342,统一文件调用接口获取外网区云存储服务器中的目标文件并输出目标文件的存储地址和目标文件参数信息。
文件名称是指需要从外网传入内网的文件的名称。第二关联方传输信息用于描述将与关联方传递文件时对应的传输相关信息,比如文件通道配置信息等。
目标文件的存储地址是指表示目标文件的存储位置的地址信息,比如目标文件在外网区云存储服务器中的存储单元编号。目标文件参数信息是能够判断目标文件状态的信息, 比如表示目标文件是否获取成功的信息。
应该理解的是,虽然图2-6的流程图中的各个步骤按照箭头的指示依次显示,但是这些步骤并不是必然按照箭头指示的顺序依次执行。除非本文中有明确的说明,这些步骤的执行并没有严格的顺序限制,这些步骤可以以其它的顺序执行。而且,图2-6中的至少一部分步骤可以包括多个子步骤或者多个阶段,这些子步骤或者阶段并不必然是在同一时刻执行完成,而是可以在不同的时刻执行,这些子步骤或者阶段的执行顺序也不必然是依次进行,而是可以与其它步骤或者其它步骤的子步骤或者阶段的至少一部分轮流或者交替地执行。
在一个实施例中,如图7所示,提供了一种文件传输系统,包括:文件传出模块710、内网区文件存储模块720、目标文件流获取模块730和文件传输模块740,其中:
文件传出模块710,用于通过文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,文件传出请求携带有文件存储信息和第一关联方传输信息。
内网区文件存储模块720,用于通过统一文件调用接口根据文件传出请求将待传输文件流转化为目标文件,并根据文件存储信息将目标文件发送至内网区云存储服务器进行存储。
目标文件流获取模块730,用于通过文件代理服务器接收业务服务器发送的文件传出指令,文件传出指令携带有目标文件标识,根据文件传出指令从内网区云存储服务器获取目标文件标识对应的目标文件流。
文件传输模块740,用于通过文件代理服务器获取第一关联方传输信息,根据第一关联方传输信息确定第一目标传输方式,将目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
在一个实施例中,目标文件流获取模块730,还用于通过文件代理服务器根据文件传出指令向文件中间服务器发送获取文件流通知,获取文件流通知携带有所述目标文件标识,还用于通过文件中间服务器根据目标文件标识从内网区云存储服务器以以文件流的形式读取目标文件标识对应的目标文件,得到目标文件流,并将目标文件流推送至文件代理服务器。
在一个实施例中,所述内网区文件存储模块720包括:
登录单元,用于通过统一文件调用接口向内网区云存储服务器发送登录请求,所述登录请求携带有业务服务器的身份信息;
验证单元,用于通过内网区云存储服务器根据身份信息验证业务服务器的登录权限,根据登录权限完成登录操作;
加密单元,用于通过所述统一文件调用接口获取业务服务器对应的加密秘钥,根据加密秘钥对所述目标文件加密,并向内网区云存储服务器发送存储请求,所述存储请求携带有加密后的目标文件;
解密单元,用于通过内网区云存储服务器根据业务服务器对应的渠道信息获取对应的解密秘钥,根据解密秘钥对目标文件进行解密,将解密成功的目标文件存入内网区云存储服务器的目标位置。
关于文件传输系统的具体限定可以参见上文中对于文件传输方法的限定,在此不再赘述。上述文件传输系统中的各个模块可全部或部分通过软件、硬件及其组合来实现。上述各模块可以硬件形式内嵌于或独立于计算机设备中的处理器中,也可以以软件形式存储于计算机设备中的存储器中,以便于处理器调用执行以上各个模块对应的操作。
在一个实施例中,提供了一种文件传输系统,系统包括文件接口服务器、业务服务器、文件代理服务器、内网区云存储服务器。
文件接口服务器用于接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,文件传出请求携带有文件存储信息和第一关联方传输信息,统一文件调用接口根据文件传出请求将待传输文件流转化为目标文件,并根据文件存储信息将目标文件发送至内网区云存储服务器进行存储。
文件代理服务器用于接收业务服务器发送的文件传出指令,文件传出指令携带有目标文件标识,根据文件传出指令从内网区云存储服务器获取目标文件标识对应的目标文件流。
文件代理服务器还用于获取第一关联方传输信息,根据第一关联方传输信息确定第一目标传输方式,将目标文件标识对应的目标文件流以第一目标传输方式推送至目标关联方。
在一个实施例中,所述系统还包括文件中间服务器,文件代理服务器还用于根据文件传出指令向文件中间服务器发送获取文件流通知,获取文件流通知携带有所述目标文件标识。
文件中间服务器根据目标文件标识从内网区云存储服务器以文件流的形式读取目标文件标识对应的目标文件,得到目标文件流,并将目标文件流推送至所述文件代理服务器。
在一个实施例中,文件接口服务器还用于通过统一文件调用接口向内网区云存储服务器发送登录请求,登录请求携带有业务服务器的身份信息。
内网区云存储服务器还用于根据身份信息验证业务服务器的登录权限,根据登录权限完成登录操作。
文件接口服务器还用于通过统一文件调用接口获取业务服务器对应的加密秘钥,根据加密秘钥对目标文件加密,并向内网区云存储服务器发送存储请求,存储请求携带有加密后的目标文件。
内网区云存储服务器还用于根据业务服务器对应的渠道信息获取对应的解密秘钥,根据解密秘钥对目标文件进行解密,将解密成功的目标文件存入内网区云存储服务器的目标位置。
在一个实施例中,系统还包括外网区云存储服务器。文件代理服务器还用于接收业务服务器发送的文件传入指令,文件传入指令包括第二关联方传输信息和目标文件信息,根据第二关联方传输信息确定第二目标传输方式,根据第二目标传输方式从目标关联方获取目标文件信息对应的目标文件。
文件代理服务器还用于将目标文件信息对应的目标文件上传至外网区云存储服务器。
业务服务器还用于通过统一文件调用接口从外网区云存储服务器获取目标文件。
在一个实施例中,文件接口服务器还用于接收业务服务器通过统一文件调用接口传递的文件传入请求,文件传入请求包括文件名称和第二关联方传输信息。
统一文件调用接口还用于获取外网区云存储服务器中的目标文件并输出目标文件的存储地址和所述目标文件参数信息。
一个或多个存储有计算机可读指令的非易失性计算机可读存储介质,计算机可读指令被一个或多个处理器执行时,使得一个或多个处理器执行以下步骤:文件接口服务器接收 业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,文件传出请求携带有文件存储信息和第一关联方传输信息。统一文件调用接口根据文件传出请求将待传输文件流转化为目标文件,并根据文件存储信息将目标文件发送至内网区云存储服务器进行存储。文件代理服务器接收业务服务器发送的文件传出指令,文件传出指令携带有目标文件标识,根据文件传出指令从内网区云存储服务器所述目标文件标识对应的目标文件流。文件代理服务器获取第一关联方传输信息,根据第一关联方传输信息确定第一目标传输方式,将目标文件标识对应的目标文件流以第一目标传输方式推送至目标关联方。
本领域普通技术人员可以理解实现上述实施例方法中的全部或部分流程,是可以通过计算机可读指令来指令相关的硬件来完成,所述的计算机可读指令可存储于一非易失性计算机可读取存储介质中,该计算机可读指令在执行时,可包括如上述各方法的实施例的流程。其中,本申请所提供的各实施例中所使用的对存储器、存储、数据库或其它介质的任何引用,均可包括非易失性和/或易失性存储器。非易失性存储器可包括只读存储器(ROM)、可编程ROM(PROM)、电可编程ROM(EPROM)、电可擦除可编程ROM(EEPROM)或闪存。易失性存储器可包括随机存取存储器(RAM)或者外部高速缓冲存储器。作为说明而非局限,RAM以多种形式可得,诸如静态RAM(SRAM)、动态RAM(DRAM)、同步DRAM(SDRAM)、双数据率SDRAM(DDRSDRAM)、增强型SDRAM(ESDRAM)、同步链路(Synchlink)、DRAM(SLDRAM)、存储器总线(Rambus)直接RAM(RDRAM)、直接存储器总线动态RAM(DRDRAM)、以及存储器总线动态RAM(RDRAM)等。
以上实施例的各技术特征可以进行任意的组合,为使描述简洁,未对上述实施例中的各个技术特征所有可能的组合都进行描述,然而,只要这些技术特征的组合不存在矛盾,都应当认为是本说明书记载的范围。
以上所述实施例仅表达了本申请的几种实施方式,其描述较为具体和详细,但并不能因此而理解为对发明专利范围的限制。应当指出的是,对于本领域的普通技术人员来说,在不脱离本申请构思的前提下,还可以做出若干变形和改进,这些都属于本申请的保护范围。因此,本申请专利的保护范围应以所附权利要求为准。

Claims (20)

  1. 一种文件传输方法,所述方法包括:
    文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息;
    所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储;
    文件代理服务器接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
    所述文件代理服务器获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
  2. 根据权利要求1所述的方法,其特征在于,所述文件代理服务器根据所述文件传出指令从所述内网区存储服务器获取所述目标文件标识对应的目标文件流,还包括:
    所述文件代理服务器根据所述文件传出指令向文件中间服务器发送获取文件流通知,所述获取文件流通知携带有所述目标文件标识;及
    所述文件中间服务器根据所述目标文件标识从所述内网区云存储服务器以文件流的形式读取所述目标文件标识对应的目标文件,得到所述目标文件流,并将所述目标文件流推送至所述文件代理服务器。
  3. 根据权利要求1所述的方法,其特征在于,所述根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储,还包括:
    所述统一文件调用接口向所述内网区云存储服务器发送登录请求,所述登录请求携带有所述业务服务器的身份信息;
    所述内网区云存储服务器根据所述身份信息验证所述业务服务器的登录权限,根据所述登录权限完成登录操作;
    所述统一文件调用接口获取所述业务服务器对应的加密秘钥,根据所述加密秘钥对所述目标文件加密,并向所述内网区云存储服务器发送存储请求,所述存储请求携带有加密 后的目标文件;及
    所述内网区云存储服务器根据所述业务服务器对应的渠道信息获取对应的解密秘钥,根据所述解密秘钥对所述目标文件进行解密,将解密成功的目标文件存入所述内网区云存储服务器的目标位置。
  4. 根据权利要求1所述的方法,其特征在于,所述方法还包括:
    所述文件代理服务器接收所述业务服务器发送的文件传入指令,所述文件传入指令包括第二关联方传输信息和目标文件信息;
    根据所述第二关联方传输信息确定第二目标传输方式,根据所述第二目标传输方式从所述目标关联方获取所述目标文件信息对应的目标文件;
    所述文件代理服务器将所述目标文件信息对应的目标文件上传至外网区云存储服务器;及
    所述业务服务器通过所述统一文件调用接口从所述外网区云存储服务器获取所述目标文件。
  5. 根据权利要求4所述的方法,其特征在于,所述业务服务器通过所述统一文件调用接口从所述外网区云存储服务器获取所述目标文件,还包括:
    所述文件接口服务器接收所述业务服务器通过所述统一文件调用接口传递的文件传入请求,所述文件传入请求包括文件名称和第二关联方传输信息;及
    所述统一文件调用接口获取所述外网区云存储服务器中的目标文件并输出所述目标文件的存储地址和所述目标文件参数信息。
  6. 一种文件传输系统,其特征在于,所述系统包括:
    文件传出模块,用于通过文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息;
    内网区文件存储模块,用于通过所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储;
    目标文件流获取模块,用于通过文件代理服务器接收所述业务服务器发送的文件传 出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
    文件传输模块,用于通过所述文件代理服务器获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
  7. 根据权利要求6所述的系统,其特征在于,所述目标文件流获取模块还用于通过所述文件代理服务器根据所述文件传出指令向文件中间服务器发送获取文件流通知,所述获取文件流通知携带有所述目标文件标识,还用于通过所述文件中间服务器根据所述目标文件标识从所述内网区云存储服务器以文件流的形式读取所述目标文件标识对应的目标文件,得到所述目标文件流,并将所述目标文件流推送至所述文件代理服务器。
  8. 根据权利要求6所述的系统,其特征在于,所述内网区文件存储模块还包括:
    登录单元,用于通过所述统一文件调用接口向所述内网区云存储服务器发送登录请求,所述登录请求携带有所述业务服务器的身份信息;
    验证单元,用于通过所述内网区云存储服务器根据所述身份信息验证所述业务服务器的登录权限,根据所述登录权限完成登录操作;
    加密单元,用于通过所述统一文件调用接口获取所述业务服务器对应的加密秘钥,根据所述加密秘钥对所述目标文件加密,并向所述内网区云存储服务器发送存储请求,所述存储请求携带有加密后的目标文件;及
    解密单元,用于通过所述内网区云存储服务器根据所述业务服务器对应的渠道信息获取对应的解密秘钥,根据所述解密秘钥对所述目标文件进行解密,将解密成功的目标文件存入所述内网区云存储服务器的目标位置。
  9. 根据权利要求6所述的系统,其特征在于,所述系统还包括:
    文件传入模块,用于通过所述文件代理服务器接收所述业务服务器发送的文件传入指令,所述文件传入指令包括第二关联方传输信息和目标文件信息;
    传输方式确定模块,用于根据所述第二关联方传输信息确定第二目标传输方式,根据所述第二目标传输方式从所述目标关联方获取所述目标文件信息对应的目标文件;
    目标文件上传模块,用于通过所述文件代理服务器将所述目标文件信息对应的目标 文件上传至外网区云存储服务器;及
    目标文件获取模块,用于通过所述业务服务器通过所述统一文件调用接口从所述外网区云存储服务器获取所述目标文件。
  10. 根据权利要求9所述的系统,其特征在于,所述目标文件获取模块还用于通过所述文件接口服务器接收所述业务服务器通过所述统一文件调用接口传递的文件传入请求,所述文件传入请求包括文件名称和第二关联方传输信息;还用于通过所述统一文件调用接口获取所述外网区云存储服务器中的目标文件并输出所述目标文件的存储地址和所述目标文件参数信息。
  11. 一种文件传输系统,其特征在于,所述系统包括文件接口服务器、业务服务器、文件代理服务器、内网区云存储服务器;
    所述文件接口服务器用于接收所述业务服务器通过所述统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息,所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至所述内网区云存储服务器进行存储;
    所述文件代理服务器用于接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
    所述文件代理服务器还用于获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
  12. 根据权利要求11所述的系统,其特征在于,所述系统还包括文件中间服务器;
    所述文件代理服务器还用于根据所述文件传出指令向所述文件中间服务器发送获取文件流通知,所述获取文件流通知携带有所述目标文件标识;及
    所述文件中间服务器用于根据所述目标文件标识从所述内网区云存储服务器以文件流的形式读取所述目标文件标识对应的目标文件,得到所述目标文件流,并将所述目标文件流推送至所述文件代理服务器。
  13. 根据权利要求11所述的系统,其特征在于,所述文件接口服务器还用于通过所 述统一文件调用接口向所述内网区云存储服务器发送登录请求,所述登录请求携带有所述业务服务器的身份信息;
    所述内网区云存储服务器还用于根据所述身份信息验证所述业务服务器的登录权限,根据所述登录权限完成登录操作;
    所述文件接口服务器还用于通过所述统一文件调用接口获取所述业务服务器对应的加密秘钥,根据所述加密秘钥对所述目标文件加密,并向所述内网区云存储服务器发送存储请求,所述存储请求携带有加密后的目标文件;及
    所述内网区云存储服务器还用于根据所述业务服务器对应的渠道信息获取对应的解密秘钥,根据所述解密秘钥对所述目标文件进行解密,将解密成功的目标文件存入所述内网区云存储服务器的目标位置。
  14. 根据权利要求11所述的系统,其特征在于,所述系统还包括外网区云存储服务器;
    所述文件代理服务器还用于接收所述业务服务器发送的文件传入指令,所述文件传入指令包括第二关联方传输信息和目标文件信息,根据所述第二关联方传输信息确定第二目标传输方式,根据所述第二目标传输方式从所述目标关联方获取所述目标文件信息对应的目标文件;
    所述文件代理服务器还用于将所述目标文件信息对应的目标文件上传至所述外网区云存储服务器;及
    所述业务服务器还用于通过所述统一文件调用接口从所述外网区云存储服务器获取目标文件。
  15. 根据权利要求14所述的系统,其特征在于,所述文件接口服务器还用于接收所述业务服务器通过所述统一文件调用接口传递的文件传入请求,所述文件传入请求包括文件名称和第二关联方传输信息;及
    所述统一文件调用接口还用于获取所述外网区云存储服务器中的目标文件并输出所述目标文件的存储地址和所述目标文件参数信息。
  16. 一个或多个存储有计算机可读指令的非易失性计算机可读存储介质,所述计算机可读指令被一个或多个处理器执行时,使得所述一个或多个处理器执行以下步骤:
    文件接口服务器接收业务服务器通过统一文件调用接口传递的文件传出请求和待传输文件流,所述文件传出请求携带有文件存储信息和第一关联方传输信息;
    所述统一文件调用接口根据所述文件传出请求将所述待传输文件流转化为目标文件,并根据所述文件存储信息将所述目标文件发送至内网区云存储服务器进行存储;
    文件代理服务器接收所述业务服务器发送的文件传出指令,所述文件传出指令携带有目标文件标识,根据所述文件传出指令从所述内网区云存储服务器获取所述目标文件标识对应的目标文件流;及
    所述文件代理服务器获取所述第一关联方传输信息,根据所述第一关联方传输信息确定第一目标传输方式,将所述目标文件标识对应的目标文件流以所述第一目标传输方式推送至目标关联方。
  17. 根据权利要求16所述的存储介质,其特征在于,所述计算机可读指令被所述处理器执行时还执行以下步骤:
    所述文件代理服务器根据所述文件传出指令向文件中间服务器发送获取文件流通知,所述获取文件流通知携带有所述目标文件标识;及
    所述文件中间服务器根据所述目标文件标识从所述内网区云存储服务器以文件流的形式读取所述目标文件标识对应的目标文件,得到所述目标文件流,并将所述目标文件流推送至所述文件代理服务器。
  18. 根据权利要求16所述的存储介质,其特征在于,所述计算机可读指令被所述处理器执行时还执行以下步骤:
    所述统一文件调用接口向所述内网区云存储服务器发送登录请求,所述登录请求携带有所述业务服务器的身份信息;
    所述内网区云存储服务器根据所述身份信息验证所述业务服务器的登录权限,根据所述登录权限完成登录操作;
    所述统一文件调用接口获取所述业务服务器对应的加密秘钥,根据所述加密秘钥对所述目标文件加密,并向所述内网区云存储服务器发送存储请求,所述存储请求携带有加密后的目标文件;及
    所述内网区云存储服务器根据所述业务服务器对应的渠道信息获取对应的解密秘钥, 根据所述解密秘钥对所述目标文件进行解密,将解密成功的目标文件存入所述内网区云存储服务器的目标位置。
  19. 根据权利要求16所述的存储介质,其特征在于,所述计算机可读指令被所述处理器执行时还执行以下步骤:
    所述文件代理服务器接收所述业务服务器发送的文件传入指令,所述文件传入指令包括第二关联方传输信息和目标文件信息;
    根据所述第二关联方传输信息确定第二目标传输方式,根据所述第二目标传输方式从所述目标关联方获取所述目标文件信息对应的目标文件;
    所述文件代理服务器将所述目标文件信息对应的目标文件上传至外网区云存储服务器;及
    所述业务服务器通过所述统一文件调用接口从所述外网区云存储服务器获取所述目标文件。
  20. 根据权利要求19所述的存储介质,其特征在于,所述计算机可读指令被所述处理器执行时还执行以下步骤:
    所述文件接口服务器接收所述业务服务器通过所述统一文件调用接口传递的文件传入请求,所述文件传入请求包括文件名称和第二关联方传输信息;及
    所述统一文件调用接口获取所述外网区云存储服务器中的目标文件并输出所述目标文件的存储地址和所述目标文件参数信息。
PCT/CN2019/102534 2019-04-12 2019-08-26 文件传输方法、系统和存储介质 Ceased WO2020206904A1 (zh)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201910295684.5 2019-04-12
CN201910295684.5A CN110099104B (zh) 2019-04-12 2019-04-12 文件传输方法、系统和存储介质

Publications (1)

Publication Number Publication Date
WO2020206904A1 true WO2020206904A1 (zh) 2020-10-15

Family

ID=67444835

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2019/102534 Ceased WO2020206904A1 (zh) 2019-04-12 2019-08-26 文件传输方法、系统和存储介质

Country Status (2)

Country Link
CN (1) CN110099104B (zh)
WO (1) WO2020206904A1 (zh)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114124976A (zh) * 2021-11-30 2022-03-01 北京中电普华信息技术有限公司 一种实现内外网穿透的业务请求处理系统及方法
CN114338650A (zh) * 2021-12-23 2022-04-12 中电金信软件有限公司 文件传输方法、装置、电子设备及可读存储介质
CN114448723A (zh) * 2022-03-16 2022-05-06 成都思鸿维科技有限责任公司 网络访问方法及相关装置
CN116192830A (zh) * 2022-08-02 2023-05-30 天津联想协同科技有限公司 网盘摆渡文件的发送方法及装置

Families Citing this family (17)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN110099104B (zh) * 2019-04-12 2021-04-27 平安科技(深圳)有限公司 文件传输方法、系统和存储介质
CN110580244A (zh) * 2019-09-12 2019-12-17 深圳乐信软件技术有限公司 一种文件处理方法、装置、服务器及存储介质
CN110535977B (zh) * 2019-09-29 2022-04-01 深圳市网心科技有限公司 文件分发方法及装置、计算机装置及存储介质
CN111031139A (zh) * 2019-12-20 2020-04-17 深圳前海环融联易信息科技服务有限公司 跨域文件上传方法、其装置、电子设备及计算机存储介质
CN111866087A (zh) * 2020-06-29 2020-10-30 深圳壹账通智能科技有限公司 文件处理方法、装置、存储介质及计算机设备
CN111818145B (zh) * 2020-06-29 2021-03-23 苏州好玩友网络科技有限公司 一种文件传输方法、装置、系统、设备及存储介质
CN112671855B (zh) * 2020-12-15 2023-08-25 中国建设银行股份有限公司 文件传输方法及系统
CN112653760B (zh) * 2020-12-22 2023-03-24 平安银行股份有限公司 跨服务器的文件传输方法、装置、电子设备及存储介质
CN113472781B (zh) * 2021-06-30 2023-11-03 平安证券股份有限公司 一种服务获取方法、服务器及计算机可读存储介质
CN113542282A (zh) * 2021-07-15 2021-10-22 曙光信息产业(北京)有限公司 一种跨计算中心文件传输方法、装置、设备及存储介质
CN114006755B (zh) * 2021-10-29 2023-07-18 中国平安财产保险股份有限公司 接口调用权限的鉴别方法、系统、装置、设备和存储介质
CN114238873B (zh) * 2021-11-15 2025-12-09 上海浦东发展银行股份有限公司 文件中转方法、装置、计算机设备、存储介质和程序产品
CN114448974B (zh) * 2022-01-13 2024-04-02 骤雨湾(武汉)技术服务有限公司 远程文件传输方法、装置、设备及存储介质
CN114745367B (zh) * 2022-03-25 2024-04-19 中国建设银行股份有限公司 数据传输方法、装置、电子设备和存储介质
CN115348258B (zh) * 2022-08-17 2024-10-11 中国建设银行股份有限公司贵州省分行 一种文件传输方法、装置、系统及电子设备
CN115550362B (zh) * 2022-09-26 2025-11-14 中国建设银行股份有限公司 跨公有云的报文获取方法、装置、设备、系统及介质
CN117082049B (zh) * 2023-07-19 2024-06-11 中电金信软件有限公司 文件转移方法及装置

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN107800713A (zh) * 2017-11-10 2018-03-13 北京明朝万达科技股份有限公司 一种网间数据的安全交换方法及系统
CN108881158A (zh) * 2018-05-04 2018-11-23 北京明朝万达科技股份有限公司 数据交互系统和方法
CN108897884A (zh) * 2018-07-06 2018-11-27 郑州云海信息技术有限公司 一种基于云平台的数据管理方法和装置
US20180373558A1 (en) * 2015-10-06 2018-12-27 Cisco Technology, Inc. Performance-based public cloud selection for a hybrid cloud environment
CN110099104A (zh) * 2019-04-12 2019-08-06 平安科技(深圳)有限公司 文件传输方法、系统和存储介质

Family Cites Families (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8510267B2 (en) * 2011-03-08 2013-08-13 Rackspace Us, Inc. Synchronization of structured information repositories
CN102843352B (zh) * 2012-05-15 2015-04-22 广东电网公司茂名供电局 在内网和外网之间跨物理隔离透明传输数据的系统和方法
CN105530254B (zh) * 2015-12-17 2018-11-30 浙江工业大学 一种内外网之间的数据通信方法
CN106936907B (zh) * 2017-03-09 2020-07-03 腾讯科技(深圳)有限公司 一种文件处理方法、逻辑服务器、接入服务器及系统
CN109189826A (zh) * 2018-08-14 2019-01-11 北京新广视通科技有限公司 一种基于大数据的政务服务系统

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20180373558A1 (en) * 2015-10-06 2018-12-27 Cisco Technology, Inc. Performance-based public cloud selection for a hybrid cloud environment
CN107800713A (zh) * 2017-11-10 2018-03-13 北京明朝万达科技股份有限公司 一种网间数据的安全交换方法及系统
CN108881158A (zh) * 2018-05-04 2018-11-23 北京明朝万达科技股份有限公司 数据交互系统和方法
CN108897884A (zh) * 2018-07-06 2018-11-27 郑州云海信息技术有限公司 一种基于云平台的数据管理方法和装置
CN110099104A (zh) * 2019-04-12 2019-08-06 平安科技(深圳)有限公司 文件传输方法、系统和存储介质

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114124976A (zh) * 2021-11-30 2022-03-01 北京中电普华信息技术有限公司 一种实现内外网穿透的业务请求处理系统及方法
CN114338650A (zh) * 2021-12-23 2022-04-12 中电金信软件有限公司 文件传输方法、装置、电子设备及可读存储介质
CN114448723A (zh) * 2022-03-16 2022-05-06 成都思鸿维科技有限责任公司 网络访问方法及相关装置
CN116192830A (zh) * 2022-08-02 2023-05-30 天津联想协同科技有限公司 网盘摆渡文件的发送方法及装置

Also Published As

Publication number Publication date
CN110099104A (zh) 2019-08-06
CN110099104B (zh) 2021-04-27

Similar Documents

Publication Publication Date Title
WO2020206904A1 (zh) 文件传输方法、系统和存储介质
US10069800B2 (en) Scalable intermediate network device leveraging SSL session ticket extension
US11303431B2 (en) Method and system for performing SSL handshake
CN106549933B (zh) 区块链的数据传输系统及方法
CN115706977B (zh) 一种数据传输方法及相关设备
US20180063095A1 (en) Data encipherment prior to recipient selection
CN114119021B (zh) 图像文件安全多方计算方法及系统
US20120324090A1 (en) Resource control method, apparatus, and system in peer-to-peer network
WO2011131093A1 (zh) 加密通信方法、装置及系统
KR20180130203A (ko) 사물인터넷 디바이스 인증 장치 및 방법
CN107070931B (zh) 云应用数据上传/访问方法、系统及云代理服务器
CN115396153A (zh) 一种数据通信方法、计算机设备及存储介质
KR102219018B1 (ko) 블록체인 기반의 사물인터넷 데이터 전송 방법
CN113364781A (zh) 请求处理方法及系统
WO2023046177A1 (zh) 无人机数据加密传输方法、装置、设备及存储介质
CN109660568B (zh) 基于srtp实现网络对讲安全机制的方法、设备及系统
CN111770494A (zh) 一种基于手机号的北斗rdss用户身份认证和火线注册方法及装置
CN116546532A (zh) 通信测试方法、设备及存储介质
EP2713576B1 (en) Method and device for processing streaming media content
CN114500064A (zh) 一种通信安全验证方法、装置、存储介质及电子设备
KR20200045648A (ko) Sip 기반 통화 서비스에서 암호키 생성을 위한 장치 및 방법
CN114969724B (zh) 一种外部数据源数据可信上链方法及系统
CN110505221A (zh) 服务器检测方法、装置、计算机设备和存储介质
CN116155573A (zh) 数据共享方法、装置、设备和存储介质
CN109788249B (zh) 基于工业互联网操作系统的视频监控控制方法

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 19923923

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 19923923

Country of ref document: EP

Kind code of ref document: A1