{"title":"基于Restful接口的网络间安全实时通信方法","authors":"Tao Chuan, Bo Wu, Yao Lv, Zhenfei Qi, Wei Guo","doi":"10.1109/ISCEIC51027.2020.00048","DOIUrl":null,"url":null,"abstract":"For different security domains, generally low-level security domains (such as bank office networks) need to access high-level security domains (such as banking business systems). This problem can be achieved with the help of gatekeepers, but there are great security risks. High-level security domain networks are vulnerable to be attacked. So it needs a secure communication method to ensure the security of high-level security domains. This article proposes a restful information exchange system and method for different levels of secure networks, which can realize the data exchange of different levels of security networks and can protect high-level security networks. The secure data exchange method proposed in the article realizes data exchange between security domains with different security requirements and has broad application prospects. The combined security detection method adopted can maximize the protection of advanced security domains, and enable the enterprise entities to perform necessary information exchanges while ensuring network security. The resource white-list and token checking based on the restful architecture not only reduces network attacks, but also minimizes the pressure on advanced security domain servers. The web attack detection proposed in the scheme is put on the front-end to minimize the security pressure of the advanced security domain server.","PeriodicalId":249521,"journal":{"name":"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)","volume":"3 12 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2020-08-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"A Secure Real-time Communication Method Between Networks Based on Restful Interface\",\"authors\":\"Tao Chuan, Bo Wu, Yao Lv, Zhenfei Qi, Wei Guo\",\"doi\":\"10.1109/ISCEIC51027.2020.00048\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"For different security domains, generally low-level security domains (such as bank office networks) need to access high-level security domains (such as banking business systems). This problem can be achieved with the help of gatekeepers, but there are great security risks. High-level security domain networks are vulnerable to be attacked. So it needs a secure communication method to ensure the security of high-level security domains. This article proposes a restful information exchange system and method for different levels of secure networks, which can realize the data exchange of different levels of security networks and can protect high-level security networks. The secure data exchange method proposed in the article realizes data exchange between security domains with different security requirements and has broad application prospects. The combined security detection method adopted can maximize the protection of advanced security domains, and enable the enterprise entities to perform necessary information exchanges while ensuring network security. The resource white-list and token checking based on the restful architecture not only reduces network attacks, but also minimizes the pressure on advanced security domain servers. The web attack detection proposed in the scheme is put on the front-end to minimize the security pressure of the advanced security domain server.\",\"PeriodicalId\":249521,\"journal\":{\"name\":\"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)\",\"volume\":\"3 12 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2020-08-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ISCEIC51027.2020.00048\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2020 International Symposium on Computer Engineering and Intelligent Communications (ISCEIC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISCEIC51027.2020.00048","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
A Secure Real-time Communication Method Between Networks Based on Restful Interface
For different security domains, generally low-level security domains (such as bank office networks) need to access high-level security domains (such as banking business systems). This problem can be achieved with the help of gatekeepers, but there are great security risks. High-level security domain networks are vulnerable to be attacked. So it needs a secure communication method to ensure the security of high-level security domains. This article proposes a restful information exchange system and method for different levels of secure networks, which can realize the data exchange of different levels of security networks and can protect high-level security networks. The secure data exchange method proposed in the article realizes data exchange between security domains with different security requirements and has broad application prospects. The combined security detection method adopted can maximize the protection of advanced security domains, and enable the enterprise entities to perform necessary information exchanges while ensuring network security. The resource white-list and token checking based on the restful architecture not only reduces network attacks, but also minimizes the pressure on advanced security domain servers. The web attack detection proposed in the scheme is put on the front-end to minimize the security pressure of the advanced security domain server.