基于Restful接口的网络间安全实时通信方法

Tao Chuan, Bo Wu, Yao Lv, Zhenfei Qi, Wei Guo
{"title":"基于Restful接口的网络间安全实时通信方法","authors":"Tao Chuan, Bo Wu, Yao Lv, Zhenfei Qi, Wei Guo","doi":"10.1109/ISCEIC51027.2020.00048","DOIUrl":null,"url":null,"abstract":"For different security domains, generally low-level security domains (such as bank office networks) need to access high-level security domains (such as banking business systems). This problem can be achieved with the help of gatekeepers, but there are great security risks. High-level security domain networks are vulnerable to be attacked. So it needs a secure communication method to ensure the security of high-level security domains. This article proposes a restful information exchange system and method for different levels of secure networks, which can realize the data exchange of different levels of security networks and can protect high-level security networks. The secure data exchange method proposed in the article realizes data exchange between security domains with different security requirements and has broad application prospects. The combined security detection method adopted can maximize the protection of advanced security domains, and enable the enterprise entities to perform necessary information exchanges while ensuring network security. The resource white-list and token checking based on the restful architecture not only reduces network attacks, but also minimizes the pressure on advanced security domain servers. The web attack detection proposed in the scheme is put on the front-end to minimize the security pressure of the advanced security domain server.","PeriodicalId":249521,"journal":{"name":"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)","volume":"3 12 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"A Secure Real-time Communication Method Between Networks Based on Restful Interface\",\"authors\":\"Tao Chuan, Bo Wu, Yao Lv, Zhenfei Qi, Wei Guo\",\"doi\":\"10.1109/ISCEIC51027.2020.00048\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"For different security domains, generally low-level security domains (such as bank office networks) need to access high-level security domains (such as banking business systems). This problem can be achieved with the help of gatekeepers, but there are great security risks. High-level security domain networks are vulnerable to be attacked. So it needs a secure communication method to ensure the security of high-level security domains. This article proposes a restful information exchange system and method for different levels of secure networks, which can realize the data exchange of different levels of security networks and can protect high-level security networks. The secure data exchange method proposed in the article realizes data exchange between security domains with different security requirements and has broad application prospects. The combined security detection method adopted can maximize the protection of advanced security domains, and enable the enterprise entities to perform necessary information exchanges while ensuring network security. The resource white-list and token checking based on the restful architecture not only reduces network attacks, but also minimizes the pressure on advanced security domain servers. The web attack detection proposed in the scheme is put on the front-end to minimize the security pressure of the advanced security domain server.\",\"PeriodicalId\":249521,\"journal\":{\"name\":\"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)\",\"volume\":\"3 12 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2020-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ISCEIC51027.2020.00048\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISCEIC51027.2020.00048","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

对于不同的安全域,一般低级别安全域(如银行办公网络)需要访问高级别安全域(如银行业务系统)。这个问题可以在看门人的帮助下实现,但存在很大的安全风险。高级别安全域网络容易受到攻击。因此需要一种安全的通信方式来保证高安全域的安全性。本文提出了一种针对不同安全级别网络的rest式信息交换系统和方法,可以实现不同安全级别网络的数据交换,保护高级别安全网络。本文提出的安全数据交换方法实现了不同安全要求的安全域之间的数据交换,具有广阔的应用前景。采用组合安全检测方法,可以最大限度地保护高级安全域,使企业实体在保证网络安全的同时进行必要的信息交换。基于rest架构的资源白名单和令牌检测,既减少了网络攻击,又将高级安全域服务器的压力降至最低。方案中提出的web攻击检测放在前端,最大限度地减少了高级安全域服务器的安全压力。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
A Secure Real-time Communication Method Between Networks Based on Restful Interface
For different security domains, generally low-level security domains (such as bank office networks) need to access high-level security domains (such as banking business systems). This problem can be achieved with the help of gatekeepers, but there are great security risks. High-level security domain networks are vulnerable to be attacked. So it needs a secure communication method to ensure the security of high-level security domains. This article proposes a restful information exchange system and method for different levels of secure networks, which can realize the data exchange of different levels of security networks and can protect high-level security networks. The secure data exchange method proposed in the article realizes data exchange between security domains with different security requirements and has broad application prospects. The combined security detection method adopted can maximize the protection of advanced security domains, and enable the enterprise entities to perform necessary information exchanges while ensuring network security. The resource white-list and token checking based on the restful architecture not only reduces network attacks, but also minimizes the pressure on advanced security domain servers. The web attack detection proposed in the scheme is put on the front-end to minimize the security pressure of the advanced security domain server.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信