首页> 外国专利> PROXY-BASED SECURITY SYSTEM FOR GUARANTEEING AVAILABILITY

PROXY-BASED SECURITY SYSTEM FOR GUARANTEEING AVAILABILITY

机译:基于代理的安全性保证系统

摘要

The present invention relates to a proxy-based security system for guaranteeing availability. The proxy-based security system according to the present invention comprises: a reception queue unit which receives, from the computer of a user, a data packet containing information designed to be transmitted to a database management system server serving as a final destination, and transmits the received data packet to a transmission control unit and a proxy ACL unit; said proxy ACL unit, which receives the data packet from the reception queue unit, sets the database management system server as a destination address of the data packet, and transmits the data packet to a transmission queue unit; said transmission control unit which determines, using a prestored security system policy program, whether or not to transmit the data packet transmitted from the reception queue unit, generates command data having a transmission permission signal or a transmission cutoff signal, and transmits the command data to the transmission queue unit; and said transmission queue unit which receives the data packet from the proxy ACL unit, receives the command data from the transmission control unit, transmits, if the command data has a transmission permission signal, the data packet received from the proxy ACL unit to the database management system server, changes, if the command data has a transmission cutoff signal, an information data portion, excluding a header portion of the data packet transmitted from the proxy ACL unit, to a cutoff message data portion, and transmits the data packet to the database management system server, and further transmits, if no command data is transmitted from the transmission control unit for a set period of time from the point in time when the reception queue unit receives the data packet, said data packet received from the proxy ACL unit to the database management system server. According to the above-described present invention, both the connected session and a new session may not be affected by failures occurring in the transmission control unit, thus guaranteeing the availability of the security system.
机译:本发明涉及用于保证可用性的基于代理的安全系统。根据本发明的基于代理的安全系统包括:接收队列单元,该接收队列单元从用户的计算机接收数据分组,该数据分组包含被设计为要发送到用作最终目的地的数据库管理系统服务器的信息,并且进行发送。接收到的数据包到传输控制单元和代理ACL单元;所述代理ACL单元,其从接收队列单元接收数据包,将数据库管理系统服务器设置为所述数据包的目的地址,并将所述数据包发送至发送队列单元;所述发送控制单元,使用预先存储的安全系统策略程序来确定是否发送从接收队列单元发送的数据分组,生成具有发送许可信号或发送切断信号的命令数据,并将该命令数据发送至传输队列单元;所述传输队列单元从代理ACL单元接收数据分组,从传输控制单元接收命令数据,如果命令数据具有传输许可信号,则将从代理ACL单元接收的数据分组传输到数据库如果命令数据具有发送切断信号,则管理系统服务器将除从代理ACL单元发送的数据分组的报头部分之外的信息数据部分改变为切断消息数据部分,并将该数据分组发送给服务器。数据库管理系统服务器,并且如果在从接收队列单元接收到数据分组的时间点起的设定时间段内没有从发送控制单元发送命令数据,则进一步发送从代理ACL单元接收的所述数据分组到数据库管理系统服务器。根据上述本发明,连接的会话和新的会话都可以不受传输控制单元中发生的故障的影响,从而保证安全系统的可用性。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号