Safe socket character layer protocol message forwarding method, device, system and exchange

A secure socket layer and message forwarding technology, which is applied in digital transmission systems, data exchange through path configuration, transmission systems, etc., can solve problems affecting network performance, improve performance, and reduce encryption and decryption operations. , the effect of increased speed

Active Publication Date: 2009-08-26
CHENGDU HUAWEI TECH
View PDF0 Cites 19 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0003] In the process of realizing the present invention, the inventor found that there are at least the following problems in the prior art: with the acceleration of network technology updates, messages are forwarded between networks through more and more intermediate nodes, and the messages are transmitted at each node An encryption and decryption operation is required for the transmission between
It can be seen that since the message transmission is carried out between multi-layer nodes in the network, these frequent encryption and decryption operations will seriously affect the performance of the network

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safe socket character layer protocol message forwarding method, device, system and exchange
  • Safe socket character layer protocol message forwarding method, device, system and exchange
  • Safe socket character layer protocol message forwarding method, device, system and exchange

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0029] like figure 1 As shown, it is a flow chart of a secure socket layer protocol SSL message forwarding method in an embodiment of the present invention, and the method includes:

[0030] Step 101, receiving a resource request message sent by a user.

[0031] The resource request message is a secure socket layer protocol SSL message of a virtual private network. Before receiving the resource request message sent by the user, session key sharing may also be performed between the source site and the destination site. The session key sharing may specifically include: dynamically generating a key by a switching node, and the generated key may pass through the source / destination site and the switching node, and / or the secure socket layer protocol between the switching node and the switching node The channel synchronizes the generated keys to all stations and exchange nodes. Through the above session key sharing, when transparently transmitting the following resource request m...

Embodiment 2

[0041] like figure 2 As shown, it is a block structure diagram of an SSL message forwarding device according to an embodiment of the present invention, and the device 20 includes:

[0042] A message receiving unit 201, configured to receive a resource request message sent by a user;

[0043] The resource request message is a secure socket layer protocol SSL message of the virtual private network.

[0044] An information adding unit 202, configured to determine that the resource requested by the resource request message is a foreign resource, and add transparent transmission information in the resource request message in which the requested resource is a foreign resource;

[0045] If the resource requested by the resource request message is a foreign resource, transparent transmission information is added in the header of the resource request message. The way of adding transparent transmission information may include adding a transparent transmission label, adding a transpar...

Embodiment 3

[0060] Corresponding to the message forwarding device in the above embodiment, such as Figure 4 As shown, it is a block diagram of a switch according to an embodiment of the present invention, and the switch 40 includes:

[0061] A message receiving unit 401, configured to receive a resource request message sent by the sender;

[0062] The resource request message is a secure socket layer protocol SSL message of the virtual private network.

[0063] The message forwarding unit 402 is configured to determine that the resource request message contains transparent transmission information, and forward the resource request message containing the transparent transmission information.

[0064] The transparent transmission information is used to inform each switch in the middle of transmitting the resource request message. It is not necessary to perform an SSL encryption and decryption operation on the resource request message when transmitting between each switch, but directly use...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a safe socket character layer protocol message forwarding method, device and system. The method includes steps of receiving resource request message which is transmitted by user and is safe socket character layer protocol SSL message, adopting SSL to encrypt; adding transparent transmission information in the resource request message if the resource requested by the resource request message is ecdemic resource, wherein the transparent transmission information is used for informing each exchange node for transmitting the resource request message, the transmission control protocol TCP protocol is directly used for transmitting the resource request message while not needing to carry out encryption decryption operation of SSL to the resource request message when transmitted between each exchange node; and forwarding the resource request message containing the transparent transmission information. The invention employs message transparent transmission technology, thereby reducing encryption and decryption operation when transmitting the message and increasing network performance.

Description

technical field [0001] The invention relates to the field of message forwarding, in particular to a secure socket layer protocol message forwarding method, device, system and switch. Background technique [0002] In network technology, messages are forwarded between nodes in the network. For example, Secure Sockets Layer (SSL) virtual private network (VPN), as a new VPN technology, is different from the traditional secure IP transmission protocol ( Compared with IPSec) VPN technology, there are many advantages: 1) mobile users of SSL VPN can access the internal network through the SSL VPN tunnel without installing a client program by using a standard browser; while mobile users of IPSec VPN need to install a special IPSec client software. 2) SSL VPN users are not restricted by the way of accessing the Internet, and the SSL VPN tunnel can penetrate the firewall (Firewall); while the IPSec client needs to support the "Network Address Translation (NAT) Penetration" function to...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L12/56H04L29/06H04L12/46H04L12/70
Inventor 陈实李滨江胡振兴
Owner CHENGDU HUAWEI TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products