Access link overwriting method of SSL VPN

An intranet and resource technology, applied in the field of network security, can solve problems such as low security and easy exposure of WEB resources, and achieve the effect of avoiding additional burden

Inactive Publication Date: 2011-03-23
西安交大捷普网络科技有限公司
View PDF3 Cites 23 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] The main purpose of the present invention is to provide a link rewriting method for SSL VPN access to intranet WEB resources, which solv

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Access link overwriting method of SSL VPN
  • Access link overwriting method of SSL VPN

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0012] The following will describe in detail by implementing the present invention in an SSL VPN device. During implementation, the SSL VPN link rewriting module needs to be deployed in the SSL VPN device, and this module completes the rewriting function of the SSL VPN access connection.

[0013] A method for rewriting an access link of an SSL VPN, which is implemented through the following steps:

[0014] (1) The administrator configures the internal WEB resources provided by the SSL VPN, and each internal WEB resource generates a unique resource identifier corresponding to it and stores it in the resource identifier table.

[0015] (2) The URL request path for the user to access the internal WEB resource is the virtual gateway path containing the resource identifier. When a user accesses the WEB resource provided by the SSL VPN, the link rewriting module monitors the user's HTTP or HTTPS request, and if it finds that the request packet contains a resource identifier existin...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to the technical field of network safety, in particular to an access link overwriting method of a security socket layer virtual private network (SSL VPN), which aims to solve the problem that it is easy for the WEB resources of an intranet to be exposed and the problem that the safety is not high when a user accesses the WEB resources in the prior art. The access link overwriting method of SSL VPN is implemented by the following steps that: 1, an administrator configures the WEB resources to be accessed, wherein each WEB resource has a unique identifier for marking the identity and the identifier comprises a resource identifier and an intranet uniform resource locator (URL) address; 2, the user accesses the WEB resources through virtual URL path with a resource identifier; and 3, an SSL VPN gateway inspects the URL path of a hypertext transfer protocol (HTTP) or HTTPS request of the user and substitutes the URL path with a corresponding intranet URL address so as to normally access the intranet resources. Compared with the prior art, the method has the advantage of high safety.

Description

technical field [0001] The invention relates to the technical field of network security, in particular to an SSL VPN access link rewriting method. Background technique [0002] SSL VPN is a VPN (Virtual Private Network, virtual private network) technology that uses SSL (Security Socket Layer, Secure Socket Layer) encrypted connection to realize remote access. [0003] One of the main functions of SSL VPN is to realize remote access control to intranet WEB applications. The specific implementation is: the remote host establishes an SSL connection with the SSL VPN gateway through HTTPS access, and transmits the message on the Internet in an encrypted manner; Incoming request, and the server's response is sent to the remote host through the SSL connection. At present, there are two main reasons for the installation and deployment of SSL VPN: 1. The client does not need to install software or configuration, and it is flexible and convenient to use. 2. The user access control a...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L9/00H04L12/56H04L29/06
Inventor 孙选安刘亚轩
Owner 西安交大捷普网络科技有限公司
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products